RHSA-2023:4378: Important: kernel-rt security and bug fix update
Important: kernel-rt security and bug fix update
Other sources
The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements.Security Fix(es): kernel: ipvlan: out-of-bounds write caused by unclear skb->cb (CVE-2023-3090) kernel: clsflower: out-of-bounds write in flsetgeneveopt() (CVE-2023-35788) kernel: KVM: x86/mmu: race condition in directpagefault() (CVE-2022-45869) kernel: speculative pointer dereference in doprlimit() in kernel/sys.c (CVE-2023-0458) kernel: Spectre v2 SMT mitigations problem (CVE-2023-1998) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.Bug Fix(es): RHEL9 rt: blktests block/024 failed (BZ#2209920) Backport pinned timers RT specific behavior for FIFO tasks (BZ#2210071) kernel-rt: update RT source tree to the RHEL-9.2z2 source tree (BZ#2215122) kernel-rt: update RT source tree to the RHEL-9.2z2b source tree (BZ#2222796)
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2023:4378?
The severity of RHSA-2023:4378 is high with a severity value of 7.
What software is affected by RHSA-2023:4378?
Red Hat Enterprise Linux for Real Time for NFV with kernel-rt version 5.14.0-284.25.1.rt14.310.el9_2 and related packages are affected by RHSA-2023:4378.
How can I fix RHSA-2023:4378?
To fix RHSA-2023:4378, update your Red Hat Enterprise Linux for Real Time for NFV installation to kernel-rt version 5.14.0-284.25.1.rt14.310.el9_2 or later.
Where can I find more information about RHSA-2023:4378?
You can find more information about RHSA-2023:4378 at the following references: - [Red Hat Security Advisory RHSA-2023:4378](https://access.redhat.com/errata/RHSA-2023:4378) - [Red Hat Bugzilla Bug 2151317](https://bugzilla.redhat.com/show_bug.cgi?id=2151317) - [Red Hat Bugzilla Bug 2187257](https://bugzilla.redhat.com/show_bug.cgi?id=2187257)
What is the Common Weakness Enumeration (CWE) associated with RHSA-2023:4378?
The Common Weakness Enumeration (CWE) associated with RHSA-2023:4378 is CWE-362.