RHSA-2023:7424: Important: kernel-rt security update
Important: kernel-rt security update
Other sources
The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements.Security Fix(es): kernel: net/sched: schqfq component can be exploited if in qfqchangeagg function happens qfqenqueue overhead (CVE-2023-3611) kernel: net/sched: clsfw component can be exploited as result of failure in tcfchangeindev function (CVE-2023-3776) kernel: net/sched: Use-after-free vulnerabilities in the net/sched classifiers: clsfw, clsu32 and clsroute (CVE-2023-4128, CVE-2023-4206, CVE-2023-4207, CVE-2023-4208) hw: Intel: Gather Data Sampling (GDS) side channel vulnerability (CVE-2022-40982) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2023:7424?
The severity of RHSA-2023:7424 is high, with a severity value of 7.
Which software packages are affected by RHSA-2023:7424?
The following software packages are affected: kernel-rt, kernel-rt-debug, kernel-rt-debug-debuginfo, kernel-rt-debug-devel, kernel-rt-debuginfo, kernel-rt-devel, kernel-rt-doc, kernel-rt-trace, kernel-rt-trace-debuginfo, kernel-rt-trace-devel, kernel-rt-debug-kvm, kernel-rt-debug-kvm-debuginfo, kernel-rt-kvm, kernel-rt-kvm-debuginfo, kernel-rt-trace-kvm, kernel-rt-trace-kvm-debuginfo.
How can I fix the vulnerability in RHSA-2023:7424?
To fix the vulnerability in RHSA-2023:7424, update the affected software packages to version 3.10.0-1160.105.1.rt56.1256.el7 or higher.
Where can I find more information about RHSA-2023:7424?
You can find more information about RHSA-2023:7424 in the Red Hat Bugzilla reports: [link1](https://bugzilla.redhat.com/show_bug.cgi?id=2223949), [link2](https://bugzilla.redhat.com/show_bug.cgi?id=2225097), [link3](https://bugzilla.redhat.com/show_bug.cgi?id=2225191).
What is the CWE ID for RHSA-2023:7424?
The CWE ID for RHSA-2023:7424 is 416.