First published: Tue May 25 2021(Updated: )
This is a kernel live patch module which is automatically loaded by the RPM post-install script to modify the code of a running kernel.<br>Security Fix(es):<br><li> kernel: use after free in eventpoll.c may lead to escalation of privilege (CVE-2020-0466)</li> <li> kernel: SCSI target (LIO) write to any block on ILO backstore (CVE-2020-28374)</li> <li> kernel: Use after free via PI futex state (CVE-2021-3347)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/kpatch-patch | <4_18_0-147_20_1-1-11.el8_1 | 4_18_0-147_20_1-1-11.el8_1 |
redhat/kpatch-patch | <4_18_0-147_24_2-1-9.el8_1 | 4_18_0-147_24_2-1-9.el8_1 |
redhat/kpatch-patch | <4_18_0-147_27_1-1-9.el8_1 | 4_18_0-147_27_1-1-9.el8_1 |
redhat/kpatch-patch | <4_18_0-147_32_1-1-7.el8_1 | 4_18_0-147_32_1-1-7.el8_1 |
redhat/kpatch-patch | <4_18_0-147_34_1-1-7.el8_1 | 4_18_0-147_34_1-1-7.el8_1 |
redhat/kpatch-patch | <4_18_0-147_38_1-1-6.el8_1 | 4_18_0-147_38_1-1-6.el8_1 |
redhat/kpatch-patch | <4_18_0-147_43_1-1-4.el8_1 | 4_18_0-147_43_1-1-4.el8_1 |
redhat/kpatch-patch | <4_18_0-147_44_1-1-3.el8_1 | 4_18_0-147_44_1-1-3.el8_1 |
redhat/kpatch-patch | <4_18_0-147_20_1-1-11.el8_1 | 4_18_0-147_20_1-1-11.el8_1 |
redhat/kpatch-patch | <4_18_0-147_20_1-debuginfo-1-11.el8_1 | 4_18_0-147_20_1-debuginfo-1-11.el8_1 |
redhat/kpatch-patch | <4_18_0-147_20_1-debugsource-1-11.el8_1 | 4_18_0-147_20_1-debugsource-1-11.el8_1 |
redhat/kpatch-patch | <4_18_0-147_24_2-1-9.el8_1 | 4_18_0-147_24_2-1-9.el8_1 |
redhat/kpatch-patch | <4_18_0-147_24_2-debuginfo-1-9.el8_1 | 4_18_0-147_24_2-debuginfo-1-9.el8_1 |
redhat/kpatch-patch | <4_18_0-147_24_2-debugsource-1-9.el8_1 | 4_18_0-147_24_2-debugsource-1-9.el8_1 |
redhat/kpatch-patch | <4_18_0-147_27_1-1-9.el8_1 | 4_18_0-147_27_1-1-9.el8_1 |
redhat/kpatch-patch | <4_18_0-147_27_1-debuginfo-1-9.el8_1 | 4_18_0-147_27_1-debuginfo-1-9.el8_1 |
redhat/kpatch-patch | <4_18_0-147_27_1-debugsource-1-9.el8_1 | 4_18_0-147_27_1-debugsource-1-9.el8_1 |
redhat/kpatch-patch | <4_18_0-147_32_1-1-7.el8_1 | 4_18_0-147_32_1-1-7.el8_1 |
redhat/kpatch-patch | <4_18_0-147_32_1-debuginfo-1-7.el8_1 | 4_18_0-147_32_1-debuginfo-1-7.el8_1 |
redhat/kpatch-patch | <4_18_0-147_32_1-debugsource-1-7.el8_1 | 4_18_0-147_32_1-debugsource-1-7.el8_1 |
redhat/kpatch-patch | <4_18_0-147_34_1-1-7.el8_1 | 4_18_0-147_34_1-1-7.el8_1 |
redhat/kpatch-patch | <4_18_0-147_34_1-debuginfo-1-7.el8_1 | 4_18_0-147_34_1-debuginfo-1-7.el8_1 |
redhat/kpatch-patch | <4_18_0-147_34_1-debugsource-1-7.el8_1 | 4_18_0-147_34_1-debugsource-1-7.el8_1 |
redhat/kpatch-patch | <4_18_0-147_38_1-1-6.el8_1 | 4_18_0-147_38_1-1-6.el8_1 |
redhat/kpatch-patch | <4_18_0-147_38_1-debuginfo-1-6.el8_1 | 4_18_0-147_38_1-debuginfo-1-6.el8_1 |
redhat/kpatch-patch | <4_18_0-147_38_1-debugsource-1-6.el8_1 | 4_18_0-147_38_1-debugsource-1-6.el8_1 |
redhat/kpatch-patch | <4_18_0-147_43_1-1-4.el8_1 | 4_18_0-147_43_1-1-4.el8_1 |
redhat/kpatch-patch | <4_18_0-147_43_1-debuginfo-1-4.el8_1 | 4_18_0-147_43_1-debuginfo-1-4.el8_1 |
redhat/kpatch-patch | <4_18_0-147_43_1-debugsource-1-4.el8_1 | 4_18_0-147_43_1-debugsource-1-4.el8_1 |
redhat/kpatch-patch | <4_18_0-147_44_1-1-3.el8_1 | 4_18_0-147_44_1-1-3.el8_1 |
redhat/kpatch-patch | <4_18_0-147_44_1-debuginfo-1-3.el8_1 | 4_18_0-147_44_1-debuginfo-1-3.el8_1 |
redhat/kpatch-patch | <4_18_0-147_44_1-debugsource-1-3.el8_1 | 4_18_0-147_44_1-debugsource-1-3.el8_1 |
redhat/kpatch-patch | <4_18_0-147_20_1-1-11.el8_1 | 4_18_0-147_20_1-1-11.el8_1 |
redhat/kpatch-patch | <4_18_0-147_20_1-debuginfo-1-11.el8_1 | 4_18_0-147_20_1-debuginfo-1-11.el8_1 |
redhat/kpatch-patch | <4_18_0-147_20_1-debugsource-1-11.el8_1 | 4_18_0-147_20_1-debugsource-1-11.el8_1 |
redhat/kpatch-patch | <4_18_0-147_24_2-1-9.el8_1 | 4_18_0-147_24_2-1-9.el8_1 |
redhat/kpatch-patch | <4_18_0-147_24_2-debuginfo-1-9.el8_1 | 4_18_0-147_24_2-debuginfo-1-9.el8_1 |
redhat/kpatch-patch | <4_18_0-147_24_2-debugsource-1-9.el8_1 | 4_18_0-147_24_2-debugsource-1-9.el8_1 |
redhat/kpatch-patch | <4_18_0-147_27_1-1-9.el8_1 | 4_18_0-147_27_1-1-9.el8_1 |
redhat/kpatch-patch | <4_18_0-147_27_1-debuginfo-1-9.el8_1 | 4_18_0-147_27_1-debuginfo-1-9.el8_1 |
redhat/kpatch-patch | <4_18_0-147_27_1-debugsource-1-9.el8_1 | 4_18_0-147_27_1-debugsource-1-9.el8_1 |
redhat/kpatch-patch | <4_18_0-147_32_1-1-7.el8_1 | 4_18_0-147_32_1-1-7.el8_1 |
redhat/kpatch-patch | <4_18_0-147_32_1-debuginfo-1-7.el8_1 | 4_18_0-147_32_1-debuginfo-1-7.el8_1 |
redhat/kpatch-patch | <4_18_0-147_32_1-debugsource-1-7.el8_1 | 4_18_0-147_32_1-debugsource-1-7.el8_1 |
redhat/kpatch-patch | <4_18_0-147_34_1-1-7.el8_1 | 4_18_0-147_34_1-1-7.el8_1 |
redhat/kpatch-patch | <4_18_0-147_34_1-debuginfo-1-7.el8_1 | 4_18_0-147_34_1-debuginfo-1-7.el8_1 |
redhat/kpatch-patch | <4_18_0-147_34_1-debugsource-1-7.el8_1 | 4_18_0-147_34_1-debugsource-1-7.el8_1 |
redhat/kpatch-patch | <4_18_0-147_38_1-1-6.el8_1 | 4_18_0-147_38_1-1-6.el8_1 |
redhat/kpatch-patch | <4_18_0-147_38_1-debuginfo-1-6.el8_1 | 4_18_0-147_38_1-debuginfo-1-6.el8_1 |
redhat/kpatch-patch | <4_18_0-147_38_1-debugsource-1-6.el8_1 | 4_18_0-147_38_1-debugsource-1-6.el8_1 |
redhat/kpatch-patch | <4_18_0-147_43_1-1-4.el8_1 | 4_18_0-147_43_1-1-4.el8_1 |
redhat/kpatch-patch | <4_18_0-147_43_1-debuginfo-1-4.el8_1 | 4_18_0-147_43_1-debuginfo-1-4.el8_1 |
redhat/kpatch-patch | <4_18_0-147_43_1-debugsource-1-4.el8_1 | 4_18_0-147_43_1-debugsource-1-4.el8_1 |
redhat/kpatch-patch | <4_18_0-147_44_1-1-3.el8_1 | 4_18_0-147_44_1-1-3.el8_1 |
redhat/kpatch-patch | <4_18_0-147_44_1-debuginfo-1-3.el8_1 | 4_18_0-147_44_1-debuginfo-1-3.el8_1 |
redhat/kpatch-patch | <4_18_0-147_44_1-debugsource-1-3.el8_1 | 4_18_0-147_44_1-debugsource-1-3.el8_1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2021:2099 is classified as important due to a use-after-free vulnerability that may lead to privilege escalation.
To fix RHSA-2021:2099, you should update the kpatch-patch package to the latest recommended version as specified in the advisory.
The RHSA-2021:2099 vulnerability affects the kernel live patch module used in the Red Hat Enterprise Linux operating system.
The RHSA-2021:2099 vulnerability is not remote; it requires local access to exploit the use-after-free condition.
CVE-2020-0466 is the identifier for the specific vulnerability exploited under RHSA-2021:2099, which allows for potential privilege escalation.