RHSA-2022:0777: Important: kernel security, bug fix, and enhancement update
The kernel packages contain the Linux kernel, the core of any Linux operating system.Security Fix(es): kernel: Use After Free in unixgc() which could result in a local privilege escalation (CVE-2021-0920) kernel: use-after-free in RDMA listen() (CVE-2021-4028) kernel: possible privileges escalation due to missing TLB flush (CVE-2022-0330) kernel: remote stack overflow via kernel panic on systems using TIPC may lead to DoS (CVE-2022-0435) kernel: missing check in ioctl allows kernel memory read/write (CVE-2022-0516) kernel: failing usercopy allows for use-after-free exploitation (CVE-2022-22942) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.Bug Fix(es): Intel QAT Kernel power up fix (BZ#2016436) RHEL8: DFS provided SMB shares are not accessible following unprivileged access (BZ#2017176) xfs: IDONTCACHE flag is ignored [xfstests: xfs/177] (BZ#2028533) spec: Support separate tools build (BZ#2031052) block: update to upstream v5.14 (BZ#2034395) Double free of kmalloc-64 cache struct ibport->pkeygroup from module ibcore . (BZ#2038723) RHEL8 - kvm: floating interrupts may get stuck (BZ#2040768) Data corruption on small files served by httpd, which is backed by cifs-mount (BZ#2041528) Add a net/mlx5 patch for Hardware Offload Fix (BZ#2042662) DNS lookup failures when run two times in a row (BZ#2043547) net/sched: Fix ct zone matching for invalid conntrack state (BZ#2043549) Windows guest random Bsod when 'hv-tlbflush' enlightenment is enabled (BZ#2048342) OCP node XFS metadata corruption after numerous reboots (BZ#2049291) ice: bug fix series for 8.6 (BZ#2051950) SNO 4.9: NO-CARRIER on pod interface using VF on intel E810-C NIC; IAVFERRADMINQUEUEERROR (BZ#2052984) ceph omnibus backport for RHEL-8.6.0 (BZ#2053724) SCTP peel-off with SELinux and containers in OCP (BZ#2054111) Selinux is not allowing SCTP connection setup between inter pod communication in enforcing mode (BZ#2054116) Enhancement(s): [Mellanox 8.5 FEAT] mlx5: drivers update upto Linux v5.12 [8.4.0.z] (BZ#2037730) [MCHP 8.5 FEAT] Update smartpqi driver to latest upstream [None8.4.0.z] (BZ#2042498)
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2022:0777?
The severity of RHSA-2022:0777 is categorized as moderate due to local privilege escalation vulnerabilities.
How do I fix RHSA-2022:0777?
To fix RHSA-2022:0777, update your kernel to version 4.18.0-305.40.1.el8_4 or later.
What vulnerabilities are addressed by RHSA-2022:0777?
RHSA-2022:0777 addresses vulnerabilities including CVE-2021-0920 and CVE-2021-4028, which involve use-after-free issues.
What packages are affected by RHSA-2022:0777?
Packages affected by RHSA-2022:0777 include the kernel, bpftool, kernel-core, and several kernel-debug packages.
Is RHSA-2022:0777 applicable to all Linux distributions?
No, RHSA-2022:0777 specifically applies to the Red Hat Enterprise Linux distribution.