RHSA-2022:5232: Important: kernel security and bug fix update
The kernel packages contain the Linux kernel, the core of any Linux operating system.Security Fix(es): kernel: race condition in perfeventopen leads to privilege escalation (CVE-2022-1729) kernel: a use-after-free write in the netfilter subsystem can lead to privilege escalation to root (CVE-2022-1966) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.Bug Fix(es): XFS inode cluster corruption (BZ#2050464) sock: sockdequeueerrskb() needs hard irq safety (BZ#2070408) libceph: fix potential use-after-free on linger ping and resends (BZ#2088025)
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2022:5232?
RHSA-2022:5232 addresses critical vulnerabilities in the Linux kernel that could lead to privilege escalation.
How do I fix RHSA-2022:5232?
To fix RHSA-2022:5232, you should update the affected kernel packages to version 3.10.0-1160.71.1.el7 or later.
What vulnerabilities are addressed in RHSA-2022:5232?
RHSA-2022:5232 addresses a race condition in perf_event_open and a use-after-free write in the netfilter subsystem.
Which Linux distributions are affected by RHSA-2022:5232?
RHSA-2022:5232 affects Red Hat Enterprise Linux 7 systems using the specified kernel versions.
What impact could RHSA-2022:5232 have if not addressed?
If not addressed, the vulnerabilities in RHSA-2022:5232 could be exploited to gain unauthorized elevated privileges on the system.