First published: Tue Nov 08 2022(Updated: )
The kernel packages contain the Linux kernel, the core of any Linux operating system.<br>Security Fix(es):<br><li> off-path attacker may inject data or terminate victim's TCP session (CVE-2020-36516)</li> <li> race condition in VT_RESIZEX ioctl when vc_cons[i].d is already NULL leading to NULL pointer dereference (CVE-2020-36558)</li> <li> use-after-free vulnerability in function sco_sock_sendmsg() (CVE-2021-3640)</li> <li> memory leak for large arguments in video_usercopy function in drivers/media/v4l2-core/v4l2-ioctl.c (CVE-2021-30002)</li> <li> smb2_ioctl_query_info NULL Pointer Dereference (CVE-2022-0168)</li> <li> NULL pointer dereference in udf_expand_file_adinicbdue() during writeback (CVE-2022-0617)</li> <li> swiotlb information leak with DMA_FROM_DEVICE (CVE-2022-0854)</li> <li> uninitialized registers on stack in nft_do_chain can cause kernel pointer leakage to UM (CVE-2022-1016)</li> <li> race condition in snd_pcm_hw_free leading to use-after-free (CVE-2022-1048)</li> <li> use-after-free in tc_new_tfilter() in net/sched/cls_api.c (CVE-2022-1055)</li> <li> use-after-free and memory errors in ext4 when mounting and operating on a corrupted image (CVE-2022-1184)</li> <li> NULL pointer dereference in x86_emulate_insn may lead to DoS (CVE-2022-1852)</li> <li> buffer overflow in nft_set_desc_concat_parse() (CVE-2022-2078)</li> <li> nf_tables cross-table potential use-after-free may lead to local privilege escalation (CVE-2022-2586)</li> <li> openvswitch: integer underflow leads to out-of-bounds write in reserve_sfa_size() (CVE-2022-2639)</li> <li> use-after-free when psi trigger is destroyed while being polled (CVE-2022-2938)</li> <li> net/packet: slab-out-of-bounds access in packet_recvmsg() (CVE-2022-20368)</li> <li> possible to use the debugger to write zero into a location of choice (CVE-2022-21499)</li> <li> Spectre-BHB (CVE-2022-23960)</li> <li> Post-barrier Return Stack Buffer Predictions (CVE-2022-26373)</li> <li> memory leak in drivers/hid/hid-elo.c (CVE-2022-27950)</li> <li> double free in ems_usb_start_xmit in drivers/net/can/usb/ems_usb.c (CVE-2022-28390)</li> <li> use after free in SUNRPC subsystem (CVE-2022-28893)</li> <li> use-after-free due to improper update of reference count in net/sched/cls_u32.c (CVE-2022-29581)</li> <li> DoS in nfqnl_mangle in net/netfilter/nfnetlink_queue.c (CVE-2022-36946)</li> <li> nfs_atomic_open() returns uninitialized data instead of ENOTDIR (CVE-2022-24448)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.<br>Additional Changes:<br>For detailed information on changes in this release, see the Red Hat Enterprise Linux 8.7 Release Notes linked from the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/kernel | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/bpftool | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/bpftool-debuginfo | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-abi-stablelists | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-core | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-cross-headers | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-debug | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-debug-core | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-debug-debuginfo | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-debug-devel | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-debug-modules | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-debug-modules-extra | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-debuginfo | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-devel | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-doc | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-headers | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-modules | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-modules-extra | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-tools | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-tools-debuginfo | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-tools-libs | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/perf | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/perf-debuginfo | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/python3-perf | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/python3-perf-debuginfo | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/bpftool | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/bpftool-debuginfo | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-core | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-cross-headers | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-debug | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-debug-core | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-debug-debuginfo | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-debug-devel | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-debug-modules | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-debug-modules-extra | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-debuginfo | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-debuginfo-common-s390x | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-devel | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-headers | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-modules | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-modules-extra | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-tools | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-tools-debuginfo | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-zfcpdump | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-zfcpdump-core | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-zfcpdump-debuginfo | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-zfcpdump-devel | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-zfcpdump-modules | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-zfcpdump-modules-extra | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/perf | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/perf-debuginfo | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/python3-perf | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/python3-perf-debuginfo | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/bpftool | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/bpftool-debuginfo | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-core | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-cross-headers | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-debug | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-debug-core | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-debug-debuginfo | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-debug-devel | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-debug-modules | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-debug-modules-extra | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-debuginfo | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-debuginfo-common-ppc64le | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-devel | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-headers | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-modules | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-modules-extra | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-tools | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-tools-debuginfo | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-tools-libs | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/perf | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/perf-debuginfo | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/python3-perf | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/python3-perf-debuginfo | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/bpftool | <4.18.0-425.3.1.el8.aa | 4.18.0-425.3.1.el8.aa |
redhat/bpftool-debuginfo | <4.18.0-425.3.1.el8.aa | 4.18.0-425.3.1.el8.aa |
redhat/kernel | <4.18.0-425.3.1.el8.aa | 4.18.0-425.3.1.el8.aa |
redhat/kernel-core | <4.18.0-425.3.1.el8.aa | 4.18.0-425.3.1.el8.aa |
redhat/kernel-cross-headers | <4.18.0-425.3.1.el8.aa | 4.18.0-425.3.1.el8.aa |
redhat/kernel-debug | <4.18.0-425.3.1.el8.aa | 4.18.0-425.3.1.el8.aa |
redhat/kernel-debug-core | <4.18.0-425.3.1.el8.aa | 4.18.0-425.3.1.el8.aa |
redhat/kernel-debug-debuginfo | <4.18.0-425.3.1.el8.aa | 4.18.0-425.3.1.el8.aa |
redhat/kernel-debug-devel | <4.18.0-425.3.1.el8.aa | 4.18.0-425.3.1.el8.aa |
redhat/kernel-debug-modules | <4.18.0-425.3.1.el8.aa | 4.18.0-425.3.1.el8.aa |
redhat/kernel-debug-modules-extra | <4.18.0-425.3.1.el8.aa | 4.18.0-425.3.1.el8.aa |
redhat/kernel-debuginfo | <4.18.0-425.3.1.el8.aa | 4.18.0-425.3.1.el8.aa |
redhat/kernel-debuginfo-common-aarch64 | <4.18.0-425.3.1.el8.aa | 4.18.0-425.3.1.el8.aa |
redhat/kernel-devel | <4.18.0-425.3.1.el8.aa | 4.18.0-425.3.1.el8.aa |
redhat/kernel-headers | <4.18.0-425.3.1.el8.aa | 4.18.0-425.3.1.el8.aa |
redhat/kernel-modules | <4.18.0-425.3.1.el8.aa | 4.18.0-425.3.1.el8.aa |
redhat/kernel-modules-extra | <4.18.0-425.3.1.el8.aa | 4.18.0-425.3.1.el8.aa |
redhat/kernel-tools | <4.18.0-425.3.1.el8.aa | 4.18.0-425.3.1.el8.aa |
redhat/kernel-tools-debuginfo | <4.18.0-425.3.1.el8.aa | 4.18.0-425.3.1.el8.aa |
redhat/kernel-tools-libs | <4.18.0-425.3.1.el8.aa | 4.18.0-425.3.1.el8.aa |
redhat/perf | <4.18.0-425.3.1.el8.aa | 4.18.0-425.3.1.el8.aa |
redhat/perf-debuginfo | <4.18.0-425.3.1.el8.aa | 4.18.0-425.3.1.el8.aa |
redhat/python3-perf | <4.18.0-425.3.1.el8.aa | 4.18.0-425.3.1.el8.aa |
redhat/python3-perf-debuginfo | <4.18.0-425.3.1.el8.aa | 4.18.0-425.3.1.el8.aa |
redhat/kernel-tools-libs-devel | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-tools-libs-devel | <4.18.0-425.3.1.el8 | 4.18.0-425.3.1.el8 |
redhat/kernel-tools-libs-devel | <4.18.0-425.3.1.el8.aa | 4.18.0-425.3.1.el8.aa |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.