RHSA-2022:0186: Important: kernel security, bug fix, and enhancement update
The kernel packages contain the Linux kernel, the core of any Linux operating system.Security Fix(es): kernel: local privilege escalation by exploiting the fsconfig syscall parameter leads to container breakout (CVE-2021-4154) kernel: xfs: raw block device data leak in XFSIOCALLOCSP IOCTL (CVE-2021-4155) kernel: fscontext: heap overflow in legacy parameter handling (CVE-2022-0185) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.Bug Fix(es): ionic upstream bug fix - linearize skb with too many frags (BZ#1952077) kernel show “ BUG: scheduling while atomic:xxx“ and reboot when an uncorrectable memory error injection on RHEL8.4 beta and GA (BZ#2003993) [RHEL 8.3] Discard request from mkfs.xfs takes too much time on raid10 (BZ#2020418) CNB: Rebase/update TC subsystem for RHEL 8.5 (BZ#2021644) Proactively Backport MM fixes for el8.5 - 2nd round (BZ#2023923) [RHEL-8.6][SanityOnly] Backport leftover migratedisable BPF related change (BZ#2027688) Backport kernel audit enhancements and fixes from v5.10 to v5.13-rc1 (BZ#2028871) Proactively Backport MM fixes for el8.5 (BZ#2029383) iommu/amd: Fix unable to handle page fault due to AVIC (BZ#2030853) RCU stall WARNING: at kernel/rcu/tree.c:1392 rcuadvancecbsnowake+0x51/0x60 (BZ#2032578) PTP "clock jumped backward or running slower than expected!" in OpenShift 4.8 environment with Intel E810 (BZ#2037834) Enhancement(s): [Mellanox 8.5 FEAT] mlx5: drivers update upto Linux v5.12 (BZ#2023918)
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2022:0186?
The severity of RHSA-2022:0186 is categorized as important due to the local privilege escalation vulnerability.
How do I fix RHSA-2022:0186?
To fix RHSA-2022:0186, update your kernel to version 4.18.0-305.34.2.el8_4 or higher.
What vulnerabilities are addressed in RHSA-2022:0186?
RHSA-2022:0186 addresses a local privilege escalation vulnerability related to the fsconfig syscall parameter (CVE-2021-4154).
Which systems are affected by RHSA-2022:0186?
RHSA-2022:0186 affects systems running the kernel versions below 4.18.0-305.34.2.el8_4.
Is there a workaround for RHSA-2022:0186?
There are no known workarounds for RHSA-2022:0186; upgrading is the recommended mitigation.