RHSA-2024:1188: Moderate: kernel security, bug fix, and enhancement update
Moderate: kernel security, bug fix, and enhancement update
Other sources
The kernel packages contain the Linux kernel, the core of any Linux operating system.Security Fix(es): kernel: out-of-bounds write in hwatlutilsfwrpcwait() in drivers/net/ethernet/aquantia/atlantic/hwatl/hwatlutils.c (CVE-2021-43975) kernel: memory leak in drivers/hid/hid-elo.c (CVE-2022-27950) kernel: use-after-free in tcnewtfilter() in net/sched/clsapi.c (CVE-2022-1055) kernel: use-after-free when psi trigger is destroyed while being polled (CVE-2022-2938) kernel: u8 overflow problem in cfg80211updatenotlistednontrans() (CVE-2022-41674) kernel: use-after-free in bssrefget in net/wireless/scan.c (CVE-2022-42720) kernel: BSS list corruption in cfg80211addnontranslist in net/wireless/scan.c (CVE-2022-42721) kernel: Denial of service in beacon protection for P2P-device (CVE-2022-42722) kernel: KVM: x86/mmu: race condition in directpagefault() (CVE-2022-45869) kernel: x86/mm: Randomize per-cpu entry area (CVE-2023-0597) kernel: Out-Of-Bounds Read vulnerability in smbCalcSize (CVE-2023-6606) kernel: refcount leak in ctnetlinkcreateconntrack() (CVE-2023-7192) kernel: CIFS Filesystem Decryption Improper Input Validation Remote Code Execution Vulnerability in function receiveencryptedstandard of client (CVE-2024-0565) kernel: use-after-free during a race condition between a nonblocking atomic commit and a driver unload in drivers/gpu/drm/drmatomic.c (CVE-2023-51043) Bug Fix(es): kernel: u8 overflow problem in cfg80211updatenotlistednontrans() (JIRA:RHEL-18732) kernel: use-after-free in bssrefget in net/wireless/scan.c (JIRA:RHEL-18733) kernel: BSS list corruption in cfg80211addnontranslist in net/wireless/scan.c (JIRA:RHEL-18734) kernel: Denial of service in beacon protection for P2P-device (JIRA:RHEL-18735) kernel: x86/mm: Randomize per-cpu entry area (JIRA:RHEL-18817) kernel: KVM: x86/mmu: race condition in directpagefault() (JIRA:RHEL-18829) kernel: refcount leak in ctnetlinkcreateconntrack() (JIRA:RHEL-20297) kernel: use-after-free in tcnewtfilter() in net/sched/clsapi.c (JIRA:RHEL-20363) kernel: Out-Of-Bounds Read vulnerability in smbCalcSize (JIRA:RHEL-21660) kernel: CIFS Filesystem Decryption Improper Input Validation Remote Code Execution Vulnerability in function receiveencryptedstandard of client (JIRA:RHEL-22075) kernel: use-after-free during a race condition between a nonblocking atomic commit and a driver unload in drivers/gpu/drm/drmatomic.c (JIRA:RHEL-23475) kernel: memory leak in drivers/hid/hid-elo.c (JIRA:RHEL-18557) kernel: out-of-bounds write in hwatlutilsfwrpcwait() in drivers/net/ethernet/aquantia/atlantic/hwatl/hwatlutils.c (JIRA:RHEL-18798) kernel: use-after-free when psi trigger is destroyed while being polled (JIRA:RHEL-21919) [RHVH] Migration hangs between RHVH release bellow 4.5.1 and RHVH over or equal 4.5.2 release (JIRA:RHEL-23061) backport smartpqi: fix disablemanagedinterrupts (JIRA:RHEL-26137) Enhancement(s): [MCHP 8.7 FEAT] Update smartpqi driver to latest upstream Second Set of Patches (JIRA:RHEL-21592) [IBM 8.10 FEAT] Upgrade the qeth driver to latest from upstream, e.g. kernel 6.4 (JIRA:RHEL-25809)
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:1188?
The severity of RHSA-2024:1188 is classified as moderate.
How do I fix RHSA-2024:1188?
To fix RHSA-2024:1188, you should upgrade to the kernel version 4.18.0-372.95.1.el8_6.
What applications are affected by RHSA-2024:1188?
RHSA-2024:1188 affects several kernel and related packages on Red Hat systems.
When was RHSA-2024:1188 released?
RHSA-2024:1188 was officially released on February 6, 2024.
Does RHSA-2024:1188 require a system restart?
Yes, applying the updates from RHSA-2024:1188 typically requires a system restart to fully take effect.