First published: Tue Oct 25 2022(Updated: )
The kernel packages contain the Linux kernel, the core of any Linux operating system.<br>Security Fix(es):<br><li> a use-after-free in cls_route filter implementation may lead to privilege escalation (CVE-2022-2588)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/kernel | <3.10.0-693.106.1.el7 | 3.10.0-693.106.1.el7 |
redhat/kernel | <3.10.0-693.106.1.el7 | 3.10.0-693.106.1.el7 |
redhat/kernel-abi-whitelists | <3.10.0-693.106.1.el7 | 3.10.0-693.106.1.el7 |
redhat/kernel-debug | <3.10.0-693.106.1.el7 | 3.10.0-693.106.1.el7 |
redhat/kernel-debug-debuginfo | <3.10.0-693.106.1.el7 | 3.10.0-693.106.1.el7 |
redhat/kernel-debug-devel | <3.10.0-693.106.1.el7 | 3.10.0-693.106.1.el7 |
redhat/kernel-debuginfo | <3.10.0-693.106.1.el7 | 3.10.0-693.106.1.el7 |
redhat/kernel-devel | <3.10.0-693.106.1.el7 | 3.10.0-693.106.1.el7 |
redhat/kernel-doc | <3.10.0-693.106.1.el7 | 3.10.0-693.106.1.el7 |
redhat/kernel-headers | <3.10.0-693.106.1.el7 | 3.10.0-693.106.1.el7 |
redhat/kernel-tools | <3.10.0-693.106.1.el7 | 3.10.0-693.106.1.el7 |
redhat/kernel-tools-debuginfo | <3.10.0-693.106.1.el7 | 3.10.0-693.106.1.el7 |
redhat/kernel-tools-libs | <3.10.0-693.106.1.el7 | 3.10.0-693.106.1.el7 |
redhat/kernel-tools-libs-devel | <3.10.0-693.106.1.el7 | 3.10.0-693.106.1.el7 |
redhat/perf | <3.10.0-693.106.1.el7 | 3.10.0-693.106.1.el7 |
redhat/perf-debuginfo | <3.10.0-693.106.1.el7 | 3.10.0-693.106.1.el7 |
redhat/python-perf | <3.10.0-693.106.1.el7 | 3.10.0-693.106.1.el7 |
redhat/python-perf-debuginfo | <3.10.0-693.106.1.el7 | 3.10.0-693.106.1.el7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2022:7146 is classified as important.
To fix RHSA-2022:7146, upgrade the affected kernel packages to version 3.10.0-693.106.1.el7 or later.
RHSA-2022:7146 addresses a use-after-free vulnerability in the cls_route filter implementation that may lead to privilege escalation (CVE-2022-2588).
RHSA-2022:7146 affects systems running specific versions of the Linux kernel package on Red Hat Enterprise Linux 7.
As of now, there is no public knowledge of an exploit specifically targeting the vulnerability identified in RHSA-2022:7146.