RHSA-2022:6002: Moderate: kernel-rt security and bug fix update
The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements.Security Fix(es): information leak in scsiioctl() (CVE-2022-0494) use-after-free in tcnewtfilter() in net/sched/clsapi.c (CVE-2022-1055) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.Bug Fix(es): update RT source tree to the latest RHEL-9.0.z2 Batch (BZ#2105450)
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2022:6002?
The severity of RHSA-2022:6002 is categorized as moderate.
How do I fix RHSA-2022:6002?
To fix RHSA-2022:6002, update the affected kernel-rt packages to version 5.14.0-70.22.1.rt21.94.el9_0.
Which vulnerabilities does RHSA-2022:6002 address?
RHSA-2022:6002 addresses an information leak in scsi_ioctl() and a use-after-free in tc_new_tfilter().
What are the affected packages in RHSA-2022:6002?
The affected packages include kernel-rt, kernel-rt-core, kernel-rt-debug, and several others related to kernel-rt.
Is there a specific version I need to upgrade to for RHSA-2022:6002?
Yes, you need to upgrade to version 5.14.0-70.22.1.rt21.94.el9_0 for the fix to be applied.