RHSA-2023:1556: Important: kernel-rt security and bug fix update
The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements.Security Fix(es): ALSA: pcm: Move rwsem lock inside sndctlelemread to prevent UAF (CVE-2023-0266) kernel: net/ulp: use-after-free in listening ULP sockets (CVE-2023-0461) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.Bug Fix(es): kernel-rt RHEL-8.4: disable KASAN, KCSAN and UBSAN for kernel-rt (BZ#2165124) kernel-rt: update RT source tree to the RHEL-8.4.z16 source tree (async) (BZ#2183403)
Affected Software
Remediation
Event History
Frequently Asked Questions
What security vulnerabilities are addressed in RHSA-2023:1556?
RHSA-2023:1556 addresses a security vulnerability related to the ALSA pcm, specifically CVE-2023-0266.
What is the severity of RHSA-2023:1556?
RHSA-2023:1556 is classified as an important security update.
How do I fix RHSA-2023:1556?
To fix RHSA-2023:1556, upgrade to kernel-rt package version 4.18.0-305.86.2.rt7.160.el8_4 or later.
Which systems are affected by RHSA-2023:1556?
RHSA-2023:1556 affects systems running the kernel-rt packages specifically for el8_4 systems.
Is there a specific kernel package version to upgrade to for RHSA-2023:1556?
Yes, you should upgrade to kernel-rt version 4.18.0-305.86.2.rt7.160.el8_4 or higher to ensure security.