RHSA-2024:4073: Important: kpatch-patch security update
Important: kpatch-patch security update
Other sources
This is a kernel live patch module which is automatically loaded by the RPM post-install script to modify the code of a running kernel.Security Fix(es): kernel: nftables: use-after-free vulnerability in the nftverdictinit() function (CVE-2024-1086) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:4073?
The severity of RHSA-2024:4073 is classified as Important.
How do I fix RHSA-2024:4073?
To fix RHSA-2024:4073, update to the latest kpatch-patch version as specified in the advisory.
What products are affected by RHSA-2024:4073?
RHSA-2024:4073 affects multiple versions of Red Hat Enterprise Linux Server and its Extended Life Cycle Support for various architectures.
What security issue does RHSA-2024:4073 address?
RHSA-2024:4073 addresses a use-after-free vulnerability in the nft_verdict_init() function within the kernel.
Is there a workaround for RHSA-2024:4073?
No specific workaround is provided for RHSA-2024:4073, the recommended action is to apply the security update.