RHSA-2022:7137: Important: kpatch-patch security update
This is a kernel live patch module which is automatically loaded by the RPM post-install script to modify the code of a running kernel.Security Fix(es): a use-after-free in clsroute filter implementation may lead to privilege escalation (CVE-2022-2588) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2022:7137?
RHSA-2022:7137 is rated as important due to a use-after-free vulnerability in the cls_route filter implementation that may lead to privilege escalation.
How do I fix RHSA-2022:7137?
To fix RHSA-2022:7137, update to the latest version of the kpatch-patch package as specified in the advisory.
What systems are affected by RHSA-2022:7137?
RHSA-2022:7137 affects certain versions of the kpatch-patch package on systems running Red Hat Enterprise Linux.
Is there a risk associated with the vulnerability in RHSA-2022:7137?
Yes, the vulnerability in RHSA-2022:7137 poses a risk of privilege escalation, allowing attackers to potentially gain elevated permissions.
What is the CVE associated with RHSA-2022:7137?
The CVE associated with RHSA-2022:7137 is CVE-2022-2588, which describes the use-after-free vulnerability.