RHSA-2022:5316: Important: kernel security and bug fix update

Published Jun 28, 2022
·
Updated

The kernel packages contain the Linux kernel, the core of any Linux operating system.Security Fix(es): kernel: buffer overflow in IPsec ESP transformation code (CVE-2022-27666) kernel: out-of-bounds read in fbcongetfont function (CVE-2020-28915) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.Bug Fix(es): weird port mapping with asymmetric traffic (BZ#2065266) HBR3 is malfunction via MST HUB against Intel ADL-HX CPU (BZ#2066644) openvswitch connection tracking sends incorrect flow key for some upcalls (BZ#2068476) sctp connection abort unexpected. (BZ#2070959) soft quota cannot exceed more the 5 warns which breaks timer functionality (BZ#2071713) VirtIO Throughput for VM on host with OVS HW-Offload is very low (BZ#2074221) SR-IOV performance > 50% degradation (BZ#2074829) Call trace with parallel rules insertion and deletion (BZ#2075553) Enable nested virtualization (BZ#2079069) iscsittx (iSERT) completions hung while waiting for mlx5ibdrainsq (BZ#2079433) WARNING: CPU: 2 PID: 969 at kernel/locking/lockdep.c:895 registerlockclass+0x234/0x1640 (BZ#2079856) mlx5: Some rule are not offloaded to HW in OVN K8s Pod 2 External use case (BZ#2079918) OCP node kernel crash due to cephfsync - unsaferequestwait+0x143 (BZ#2080071) TCP doesn't retransmit if in reorder state and waits for RTO (BZ#2080972) pnfs NFSv4.1 IO causes a soft lockup (after a server reboot) and an unresponsive client (BZ#2080998) BlueField2: DPU can't switch to switchdev mode (BZ#2081011) Important ice bug fixes (BZ#2081794) For isolated CPUs (with nohzfull enabled for isolated CPUs) CPU utilization statistics are not getting reflected continuously (BZ#2084138) Host is getting crash/abrupt reboot while the guest has been assigned with more than 128 GB RAM while it is using NVIDIA proprietary module. (BZ#2085572) spf0vf2: hw csum failure for mlx5 (BZ#2086549) kernel memory leak while freeing nested actions (BZ#2086590) Regression: Bluetooth will not activate after 8.5 update (BZ#2087641) mlx5,Internal port - traffic not offloaded on tunnel interface rules on chain > 0 when internal port is the vtep device. (BZ#2088610) rule not offloaded on server side with syndrome(0x389e56) when direction is in (BZ#2088611) TTL decrease only on the first packet (BZ#2088638) TC HWOL of inbound traffic over geneve with ovs bridge as VTEP is not working (BZ#2088639) Audio No Function on Orchid Bay(Mini Config) (BZ#2090423)

Affected Software

105 affected componentsFixes available
redhat/kernel<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/bpftool<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/bpftool-debuginfo<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-abi-stablelists<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-core<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-cross-headers<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-debug<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-debug-core<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-debug-debuginfo<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-debug-devel<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-debug-modules<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-debug-modules-extra<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-debuginfo<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-devel<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-doc<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-headers<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-modules<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-modules-extra<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-tools<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-tools-debuginfo<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-tools-libs<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/perf<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/perf-debuginfo<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/python3-perf<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/python3-perf-debuginfo<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/bpftool<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/bpftool-debuginfo<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-core<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-cross-headers<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-debug<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-debug-core<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-debug-debuginfo<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-debug-devel<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-debug-modules<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-debug-modules-extra<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-debuginfo<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-debuginfo-common-s390x<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-devel<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-headers<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-modules<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-modules-extra<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-tools<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-tools-debuginfo<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-zfcpdump<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-zfcpdump-core<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-zfcpdump-debuginfo<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-zfcpdump-devel<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-zfcpdump-modules<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-zfcpdump-modules-extra<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/perf<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/perf-debuginfo<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/python3-perf<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/python3-perf-debuginfo<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/bpftool<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/bpftool-debuginfo<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-core<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-cross-headers<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-debug<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-debug-core<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-debug-debuginfo<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-debug-devel<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-debug-modules<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-debug-modules-extra<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-debuginfo<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-debuginfo-common-ppc64le<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-devel<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-headers<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-modules<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-modules-extra<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-tools<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-tools-debuginfo<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-tools-libs<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/perf<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/perf-debuginfo<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/python3-perf<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/python3-perf-debuginfo<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/bpftool<4.18.0-372.13.1.el8_6.aa
4.18.0-372.13.1.el8_6.aa
redhat/bpftool-debuginfo<4.18.0-372.13.1.el8_6.aa
4.18.0-372.13.1.el8_6.aa
redhat/kernel<4.18.0-372.13.1.el8_6.aa
4.18.0-372.13.1.el8_6.aa
redhat/kernel-core<4.18.0-372.13.1.el8_6.aa
4.18.0-372.13.1.el8_6.aa
redhat/kernel-cross-headers<4.18.0-372.13.1.el8_6.aa
4.18.0-372.13.1.el8_6.aa
redhat/kernel-debug<4.18.0-372.13.1.el8_6.aa
4.18.0-372.13.1.el8_6.aa
redhat/kernel-debug-core<4.18.0-372.13.1.el8_6.aa
4.18.0-372.13.1.el8_6.aa
redhat/kernel-debug-debuginfo<4.18.0-372.13.1.el8_6.aa
4.18.0-372.13.1.el8_6.aa
redhat/kernel-debug-devel<4.18.0-372.13.1.el8_6.aa
4.18.0-372.13.1.el8_6.aa
redhat/kernel-debug-modules<4.18.0-372.13.1.el8_6.aa
4.18.0-372.13.1.el8_6.aa
redhat/kernel-debug-modules-extra<4.18.0-372.13.1.el8_6.aa
4.18.0-372.13.1.el8_6.aa
redhat/kernel-debuginfo<4.18.0-372.13.1.el8_6.aa
4.18.0-372.13.1.el8_6.aa
redhat/kernel-debuginfo-common-aarch64<4.18.0-372.13.1.el8_6.aa
4.18.0-372.13.1.el8_6.aa
redhat/kernel-devel<4.18.0-372.13.1.el8_6.aa
4.18.0-372.13.1.el8_6.aa
redhat/kernel-headers<4.18.0-372.13.1.el8_6.aa
4.18.0-372.13.1.el8_6.aa
redhat/kernel-modules<4.18.0-372.13.1.el8_6.aa
4.18.0-372.13.1.el8_6.aa
redhat/kernel-modules-extra<4.18.0-372.13.1.el8_6.aa
4.18.0-372.13.1.el8_6.aa
redhat/kernel-tools<4.18.0-372.13.1.el8_6.aa
4.18.0-372.13.1.el8_6.aa
redhat/kernel-tools-debuginfo<4.18.0-372.13.1.el8_6.aa
4.18.0-372.13.1.el8_6.aa
redhat/kernel-tools-libs<4.18.0-372.13.1.el8_6.aa
4.18.0-372.13.1.el8_6.aa
redhat/perf<4.18.0-372.13.1.el8_6.aa
4.18.0-372.13.1.el8_6.aa
redhat/perf-debuginfo<4.18.0-372.13.1.el8_6.aa
4.18.0-372.13.1.el8_6.aa
redhat/python3-perf<4.18.0-372.13.1.el8_6.aa
4.18.0-372.13.1.el8_6.aa
redhat/python3-perf-debuginfo<4.18.0-372.13.1.el8_6.aa
4.18.0-372.13.1.el8_6.aa
redhat/kernel-tools-libs-devel<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-tools-libs-devel<4.18.0-372.13.1.el8_6
4.18.0-372.13.1.el8_6
redhat/kernel-tools-libs-devel<4.18.0-372.13.1.el8_6.aa
4.18.0-372.13.1.el8_6.aa

Remediation

Event History

May 24, 2026
Advisory Published
via Red Hat·06:52 PM
Data Sourced
via Red Hat·06:52 PM
RemedyDescriptionAffected Software
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What are the vulnerabilities addressed in RHSA-2022:5316?

RHSA-2022:5316 addresses a buffer overflow in IPsec ESP transformation code (CVE-2022-27666) and an out-of-bounds read in the fbcon_get_font function (CVE-2020-28915).

2

What is the severity level of RHSA-2022:5316?

The severity level of RHSA-2022:5316 is categorized as important due to the potential impact on system security and stability.

3

How do I fix RHSA-2022:5316?

To fix RHSA-2022:5316, update the affected packages to version 4.18.0-372.13.1.el8_6 or later.

4

Which packages are affected in RHSA-2022:5316?

The affected packages in RHSA-2022:5316 include kernel, bpftool, and other related kernel components.

5

Is a system reboot required after applying RHSA-2022:5316?

Yes, a system reboot is typically required after updating kernel packages to ensure the changes take effect.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203