RHSA-2023:4022: Important: kernel security and bug fix update
Important: kernel security and bug fix update
Other sources
The kernel packages contain the Linux kernel, the core of any Linux operating system.Security Fix(es): kernel: a use-after-free in clsroute filter implementation may lead to privilege escalation (CVE-2022-2588) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.Bug Fix(es): The iscsi target deadlocks when the same host acts as an initiator to itself (i.e. connects via 127.0.0.1) (BZ#2183540) Double free issue in filelayoutalloccommitinfo (BZ#2212868) RHEL 7.2: XFS inode cluster corruption (BZ#2213360)
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2023:4022?
The severity of RHSA-2023:4022 is classified as important.
How do I fix RHSA-2023:4022?
To fix RHSA-2023:4022, update the kernel package to version 3.10.0-1062.76.1.el7 or later.
What vulnerability is addressed in RHSA-2023:4022?
RHSA-2023:4022 addresses a use-after-free vulnerability in the cls_route filter implementation that may lead to privilege escalation (CVE-2022-2588).
Which systems are affected by RHSA-2023:4022?
RHSA-2023:4022 affects various versions of the Red Hat Enterprise Linux Server across different architectures.
Is the fix for RHSA-2023:4022 available in the repositories?
Yes, the fix for RHSA-2023:4022 is available in the Red Hat repositories.