RHSA-2023:4146: Important: kpatch-patch security update
Important: kpatch-patch security update
Other sources
This is a kernel live patch module which is automatically loaded by the RPM post-install script to modify the code of a running kernel.Security Fix(es): kernel: net/ulp: use-after-free in listening ULP sockets (CVE-2023-0461) kernel: tcindex: use-after-free vulnerability in traffic control index filter allows privilege escalation (CVE-2023-1281) kernel: remote DoS in TIPC kernel module (CVE-2023-1390) kernel: netfilter: use-after-free in nftables when processing batch requests can lead to privilege escalation (CVE-2023-32233) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2023:4146?
The severity of RHSA-2023:4146 is high.
What is the affected software for RHSA-2023:4146?
The affected software for RHSA-2023:4146 includes Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions, Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions, and the kpatch-patch package with specific versions.
How do I fix RHSA-2023:4146?
To fix RHSA-2023:4146, update the kpatch-patch package to the recommended versions provided by Red Hat.
Where can I find more information about RHSA-2023:4146?
You can find more information about RHSA-2023:4146 on the Red Hat Customer Portal at the provided reference link.
What is the Common Weakness Enumeration (CWE) for RHSA-2023:4146?
The Common Weakness Enumeration (CWE) for RHSA-2023:4146 is CWE-416.