RHSA-2024:1250: Important: kernel security and bug fix update
Important: kernel security and bug fix update
Other sources
Security Fix(es): kernel: use-after-free in smb2isstatusiotimeout() (CVE-2023-1192) kernel: nfp: use-after-free in areacacheget() (CVE-2022-3545) kernel: NULL pointer dereference in canrcvfilter (CVE-2023-2166) kernel: Slab-out-of-bound read in comparenetdevandip (CVE-2023-2176) kernel: UAF in nftables when nftsetlookupglobal triggered after handling named and anonymous sets in batch requests (CVE-2023-3390) kernel: out-of-bounds access in relayfileread (CVE-2023-3268) kernel: vmxnet3: NULL pointer dereference in vmxnet3rqcleanup() (CVE-2023-4459) hw: Intel: Gather Data Sampling (GDS) side channel vulnerability (CVE-2022-40982,Downfall) kernel: net/sched: clsu32 component reference counter leak if tcfchangeindev() fails (CVE-2023-3609) kernel: fbcon: out-of-sync arrays in fbconmodedeleted due to wrong con2fbmap assignment (CVE-2023-38409) kernel: Race Condition leading to UAF in Unix Socket could happen in skreceivequeue () kernel: use-after-free in l2capsockrelease in net/bluetooth/l2capsock.c (CVE-2023-40283) kernel: use after free in unixstreamsendpage (CVE-2023-4622) kernel: bpf: Incorrect verifier pruning leads to unsafe code paths being incorrectly marked as safe (CVE-2023-2163) kernel: A heap out-of-bounds write when function perfreadgroup is called and siblinglist is smaller than its child's siblinglist (CVE-2023-5717) kernel: ktls overwrites readonly memory pages when using function splice with a ktls socket as destination (CVE-2024-0646) kernel: use-after-free in IPv4 IGMP (CVE-2023-6932) kernel: refcount leak in ctnetlinkcreateconntrack() (CVE-2023-7192) Bug Fix(es): kernel: fbcon: out-of-sync arrays in fbconmodedeleted due to wrong con2fbmap assignment (JIRA:RHEL-1104) [SanityOnly][kernel]BUG: sleeping function called from invalid context at kernel/locking/spinlockrt.c:35 at: sockmapupdateelemsys+0x85/0x2a0 (JIRA:RHEL-17572) kernel: vmxnet3: NULL pointer dereference in vmxnet3rqcleanup() (JIRA:RHEL-18084) kernel: NULL pointer dereference in canrcvfilter (JIRA:RHEL-19463) kernel: hw: Intel: Gather Data Sampling (GDS) side channel vulnerability (JIRA:RHEL-8592) kernel: A heap out-of-bounds write (JIRA:RHEL-18008) kernel: Slab-out-of-bound read in comparenetdevandip (JIRA:RHEL-19356) kernel: A flaw leading to a use-after-free in areacacheget() (JIRA:RHEL-19454) kernel: bpf: Incorrect verifier pruning leads to unsafe code paths being incorrectly marked as safe (JIRA:RHEL-8978) kernel: use-after-free in smb2isstatusiotimeout() (JIRA:RHEL-15167) kernel: various flaws (JIRA:RHEL-16148) kernel: use-after-free in l2capsockrelease in net/bluetooth/l2capsock.c (JIRA:RHEL-19001) kernel: refcount leak in ctnetlinkcreateconntrack() (JIRA:RHEL-20307) RHEL9.0 - s390/qeth: recovery and set offline lose routes and IPv6 addr (JIRA:RHEL-17885) kernel: ktls overwrites readonly memory pages when using function splice with a ktls socket as destination (JIRA:RHEL-22092) dm multipath device suspend deadlocks waiting on a flush request (JIRA:RHEL-19103) 5.14.0-70.87.1.el90: aarch64 BUG: arch topology borken / the CLS domain not a subset of the MC domain (JIRA:RHEL-22501) RHEL-9.0 TEST-17-Setup-struct-perf-event-attr / bz1308907 test failure on Ice Lake (JIRA:RHEL-23085) Unbounded memory usage by TCP for receive buffers (JIRA:RHEL-16127) kernel: use-after-free in IPv4 IGMP (JIRA:RHEL-21648) rbd: don't move requests to the running list on errors (JIRA:RHEL-23861) kernel: memcg does not limit the number of POSIX file locks allowing memory exhaustion (CVE-2022-0480) kernel: GSM multiplexing race condition leads to privilege escalation (CVE-2023-6546) kernel: vmxgfx: NULL pointer dereference in vmwcmddxdefinequery (CVE-2022-38096) kernel: sched/membarrier: reduce the ability to hammer on sysmembarrier (CVE-2024-26602)
— Red Hat
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/bpftoolto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/bpftool-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-abi-stableliststo a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-coreto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-debugto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-debug-coreto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-debug-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-debug-develto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-debug-devel-matchedto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-debug-modulesto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-debug-modules-extrato a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-develto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-devel-matchedto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-docto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-headersto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-modulesto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-modules-extrato a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-toolsto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-tools-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-tools-libsto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/perfto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/perf-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/python3-perfto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/python3-perf-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-debuginfo-common-s390xto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-zfcpdumpto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-zfcpdump-coreto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-zfcpdump-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-zfcpdump-develto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-zfcpdump-devel-matchedto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-zfcpdump-modulesto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-zfcpdump-modules-extrato a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-debuginfo-common-ppc64leto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/bpftoolto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0.aa - Upgrade
Upgrade
redhat/bpftool-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0.aa - Upgrade
Upgrade
redhat/kernel-coreto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0.aa - Upgrade
Upgrade
redhat/kernel-debugto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0.aa - Upgrade
Upgrade
redhat/kernel-debug-coreto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0.aa - Upgrade
Upgrade
redhat/kernel-debug-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0.aa - Upgrade
Upgrade
redhat/kernel-debug-develto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0.aa - Upgrade
Upgrade
redhat/kernel-debug-devel-matchedto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0.aa - Upgrade
Upgrade
redhat/kernel-debug-modulesto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0.aa - Upgrade
Upgrade
redhat/kernel-debug-modules-extrato a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0.aa - Upgrade
Upgrade
redhat/kernel-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0.aa - Upgrade
Upgrade
redhat/kernel-debuginfo-common-aarch64to a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0.aa - Upgrade
Upgrade
redhat/kernel-develto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0.aa - Upgrade
Upgrade
redhat/kernel-devel-matchedto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0.aa - Upgrade
Upgrade
redhat/kernel-headersto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0.aa - Upgrade
Upgrade
redhat/kernel-modulesto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0.aa - Upgrade
Upgrade
redhat/kernel-modules-extrato a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0.aa - Upgrade
Upgrade
redhat/kernel-toolsto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0.aa - Upgrade
Upgrade
redhat/kernel-tools-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0.aa - Upgrade
Upgrade
redhat/kernel-tools-libsto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0.aa - Upgrade
Upgrade
redhat/perfto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0.aa - Upgrade
Upgrade
redhat/perf-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0.aa - Upgrade
Upgrade
redhat/python3-perfto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0.aa - Upgrade
Upgrade
redhat/python3-perf-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0.aa - Upgrade
Upgrade
redhat/kernel-cross-headersto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-tools-libs-develto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
redhat/kernel-cross-headersto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0.aa - Upgrade
Upgrade
redhat/kernel-tools-libs-develto a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0.aa - Upgrade
Upgrade
kernel (Red Hat Enterprise Linux 9.0)to a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
bpftool (Red Hat Enterprise Linux 9.0)to a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
perf (Red Hat Enterprise Linux 9.0)to a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0 - Upgrade
Upgrade
python3-perf (Red Hat Enterprise Linux 9.0)to a version that resolves this vulnerability.Fixed in 5.14.0-70.93.2.el9_0
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:1250?
The severity of RHSA-2024:1250 is categorized as important, indicating it addresses security and bug fixes requiring prompt attention.
How do I fix RHSA-2024:1250?
To fix RHSA-2024:1250, you should update the affected packages to the specified version 5.14.0-70.93.2.el9_0.
Which packages are affected by RHSA-2024:1250?
The affected packages include kernel, bpftool, kernel-core, kernel-debug, and several associated debuginfo and development packages.
Is RHSA-2024:1250 applicable to all architectures?
No, RHSA-2024:1250 is applicable to specific architectures such as x86_64 and ppc64le, among others.
What is the release date for RHSA-2024:1250?
RHSA-2024:1250 was released on a date that is available through the official Red Hat channels, generally aligned with their quarterly updates.