RHSA-2022:1198: Important: kernel security, bug fix, and enhancement update
The kernel packages contain the Linux kernel, the core of any Linux operating system.Security Fix(es): kernel: use-after-free in RDMA listen() (CVE-2021-4028) kernel: fget: check that the fd still exists after getting a ref to it (CVE-2021-4083) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.Bug Fix(es): Adding new kernel entry in grub configuration file only after generation of new initramfs (BZ#1893756) Cannot mount DFS shares on RHEL7 (BZ#1937304) RHEL7.9 - zcrypt DD: Toleration for new IBM Z Crypto Hardware (BZ#1997156) kernel panic at skbfreedatagramlocked on 3.10.0-1160.45.1.el7 (BZ#2028740) Lots of tasks are getting stuck in I/O wait waiting on the bufferhead locked by the task that is busy shrinking slab for freeing pages - 3 patches to fs/buffer.c (BZ#2030609) [RHEL 7.9 Bug] x86/platform/uv: Add more to secondary CPU kdump info (BZ#2042462) REGRESSION System panicking in kmalloc+0x94 from a freelist issue introduced by a block patch. (BZ#2054743) Enhancement(s): RHEL7.9 - kernel: Add support for CPU-MF counter second version 7 (BZ#2048920)
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2022:1198?
RHSA-2022:1198 has been classified as an important security fix.
How do I fix RHSA-2022:1198?
To fix RHSA-2022:1198, you should update your kernel packages to version 3.10.0-1160.62.1.el7 or later.
What vulnerabilities are addressed in RHSA-2022:1198?
RHSA-2022:1198 addresses a use-after-free vulnerability in RDMA listen() (CVE-2021-4028) and an fget vulnerability (CVE-2021-4083).
Which packages are affected by RHSA-2022:1198?
Affected packages include kernel, bpftool, kernel-devel, and several related debug and development packages.
Can I check for RHSA-2022:1198 updates on my system?
Yes, you can check for updates related to RHSA-2022:1198 using your package manager or by running system update commands.