RHSA-2022:0718: Important: kpatch-patch security update
This is a kernel live patch module which is automatically loaded by the RPM post-install script to modify the code of a running kernel.<br>Security Fix(es):<br><li> kernel: use after free in eventpoll.c may lead to escalation of privilege (CVE-2020-0466)</li> <li> kernel: xfs: raw block device data leak in XFSIOCALLOCSP IOCTL (CVE-2021-4155)</li> <li> kernel: possible privileges escalation due to missing TLB flush (CVE-2022-0330)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2022:0718?
The severity of RHSA-2022:0718 is categorized as important due to a potential escalation of privilege caused by a use-after-free vulnerability.
How do I fix RHSA-2022:0718?
To fix RHSA-2022:0718, ensure that you update the kpatch-patch package to the latest version as specified in the advisory.
What systems are affected by RHSA-2022:0718?
RHSA-2022:0718 affects specific versions of the kpatch-patch package on Red Hat Enterprise Linux systems.
What vulnerabilities are addressed in RHSA-2022:0718?
RHSA-2022:0718 addresses vulnerabilities including CVE-2020-0466, which is a use-after-free vulnerability.
Is there a workaround for RHSA-2022:0718?
There are no specific workarounds mentioned for RHSA-2022:0718, thus applying the update is the recommended course of action.