RHSA-2022:5344: Important: kernel-rt security and bug fix update
The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements.Security Fix(es): kernel: buffer overflow in IPsec ESP transformation code (CVE-2022-27666) kernel: out-of-bounds read in fbcongetfont function (CVE-2020-28915) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.Bug Fix(es): kernel-rt: update RT source tree to the latest RHEL-8.6.z0 Batch (BZ#2081704)
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2022:5344?
RHSA-2022:5344 has been classified with an important severity level.
How do I fix RHSA-2022:5344?
To fix RHSA-2022:5344, update the affected kernel-rt packages to version 4.18.0-372.13.1.rt7.170.el8_6.
What vulnerabilities are addressed in RHSA-2022:5344?
RHSA-2022:5344 addresses a buffer overflow in the IPsec ESP transformation code (CVE-2022-27666) and an out-of-bounds read vulnerability.
Which packages are affected by RHSA-2022:5344?
Affected packages include kernel-rt, kernel-rt-core, and several other kernel-rt related packages.
Is RHSA-2022:5344 applicable for all Red Hat systems?
RHSA-2022:5344 is specifically applicable to systems using the Real Time Linux Kernel provided by Red Hat Enterprise Linux.