RHSA-2023:4789: Important: kernel security, bug fix, and enhancement update
Important: kernel security, bug fix, and enhancement update
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/bpftoolto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/bpftool-debuginfoto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/kernel-abi-stableliststo a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/kernel-coreto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/kernel-cross-headersto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/kernel-debugto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/kernel-debug-coreto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/kernel-debug-debuginfoto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/kernel-debug-develto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/kernel-debug-modulesto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/kernel-debug-modules-extrato a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/kernel-debuginfoto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/kernel-develto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/kernel-docto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/kernel-headersto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/kernel-modulesto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/kernel-modules-extrato a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/kernel-toolsto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/kernel-tools-debuginfoto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/kernel-tools-libsto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/perfto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/perf-debuginfoto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/python3-perfto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/python3-perf-debuginfoto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/kernel-debuginfo-common-ppc64leto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/kernel-debuginfo-common-s390xto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/kernel-zfcpdumpto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/kernel-zfcpdump-coreto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/kernel-zfcpdump-debuginfoto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/kernel-zfcpdump-develto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/kernel-zfcpdump-modulesto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/kernel-zfcpdump-modules-extrato a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/bpftoolto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6.aa - Upgrade
Upgrade
redhat/bpftool-debuginfoto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6.aa - Upgrade
Upgrade
redhat/kernel-coreto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6.aa - Upgrade
Upgrade
redhat/kernel-cross-headersto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6.aa - Upgrade
Upgrade
redhat/kernel-debugto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6.aa - Upgrade
Upgrade
redhat/kernel-debug-coreto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6.aa - Upgrade
Upgrade
redhat/kernel-debug-debuginfoto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6.aa - Upgrade
Upgrade
redhat/kernel-debug-develto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6.aa - Upgrade
Upgrade
redhat/kernel-debug-modulesto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6.aa - Upgrade
Upgrade
redhat/kernel-debug-modules-extrato a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6.aa - Upgrade
Upgrade
redhat/kernel-debuginfoto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6.aa - Upgrade
Upgrade
redhat/kernel-debuginfo-common-aarch64to a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6.aa - Upgrade
Upgrade
redhat/kernel-develto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6.aa - Upgrade
Upgrade
redhat/kernel-headersto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6.aa - Upgrade
Upgrade
redhat/kernel-modulesto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6.aa - Upgrade
Upgrade
redhat/kernel-modules-extrato a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6.aa - Upgrade
Upgrade
redhat/kernel-toolsto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6.aa - Upgrade
Upgrade
redhat/kernel-tools-debuginfoto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6.aa - Upgrade
Upgrade
redhat/kernel-tools-libsto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6.aa - Upgrade
Upgrade
redhat/perfto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6.aa - Upgrade
Upgrade
redhat/perf-debuginfoto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6.aa - Upgrade
Upgrade
redhat/python3-perfto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6.aa - Upgrade
Upgrade
redhat/python3-perf-debuginfoto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6.aa - Upgrade
Upgrade
redhat/kernel-tools-libs-develto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6 - Upgrade
Upgrade
redhat/kernel-tools-libs-develto a version that resolves this vulnerability.Fixed in 4.18.0-372.70.1.el8_6.aa - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch BZ#2216499 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch BZ#2223543 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch BZ#2225335 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch BZ#2219262 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch BZ#2225514 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch BZ#2208286 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch BZ#2226580 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch CVE-2023-2002 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch BZ#2208542 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch BZ#2215334 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch BZ#2218273 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch BZ#2222247 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch BZ#2220811 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch BZ#2221304 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch BZ#2211663 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch CVE-2023-20593 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch CVE-2023-2124 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch CVE-2023-3390 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch CVE-2023-1829 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch CVE-2023-35788 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch CVE-2023-1637 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch CVE-2023-28466 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch CVE-2021-33656 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch BZ#2227074 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch BZ#2216770 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch BZ#2221011 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch BZ#2219908 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch BZ#2165585 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch BZ#2184103 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch CVE-2022-42896 - Operational
Reboot the system for this kernel update to take effect.
Event History
Frequently Asked Questions
What is the severity of RHSA-2023:4789?
RHSA-2023:4789 is classified as an important security update addressing vulnerabilities in the Linux kernel.
How do I fix RHSA-2023:4789?
To address RHSA-2023:4789, update the kernel packages to version 4.18.0-372.70.1.el8_6 or later.
What vulnerabilities are addressed in RHSA-2023:4789?
RHSA-2023:4789 addresses a use-after-free vulnerability in l2cap_connect and l2cap_le_connect_req in the Bluetooth subsystem.
Which systems are affected by RHSA-2023:4789?
Affected systems include various Red Hat Enterprise Linux products and their Extended Update Support variants.
What are the recommended actions for users of affected systems from RHSA-2023:4789?
Users of affected systems should promptly apply the kernel updates listed in RHSA-2023:4789 to mitigate potential security risks.