RHSA-2024:5259: Important: kernel security update
Important: kernel security update
Other sources
The kernel packages contain the Linux kernel, the core of any Linux operating<br>system.<br>Security Fix(es):<br><li> kernel: FUSE allows UAF reads of write() buffers, allowing theft of (partial) /etc/shadow hashes (CVE-2022-1011)</li> <li> net: fix dstnegativeadvice() race (CVE-2024-36971)</li> Bug Fix(es):<br><li> kernel.spec: run initramfs generation in %post (not only in %posttrans)</li> (RHEL-3292)<br><li> tcp: fix zero cwnd in tcpcwndreduction (RHEL-43212)</li> <li> epoll: fix use-after-free in eventpollreleasefile (RHEL-39665)</li> <li> RHEL 7.9: include [net] netfilter: ipset: fix ipsetlist allocation failure (RHEL-6204)</li> <li> gfs2: The gfs2logd process to hang or stall which causes a performance degradation on the gfs2 filesystem (RHEL-8427)</li> <li> [rhel7] gfs2: quotachange%u corruption (RHEL-37473)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:5259?
The severity of RHSA-2024:5259 is categorized as Important.
How do I fix RHSA-2024:5259?
You can fix RHSA-2024:5259 by updating to kernel version 3.10.0-1160.123.1.el7 or newer.
What vulnerabilities are addressed by RHSA-2024:5259?
RHSA-2024:5259 addresses the CVE-2022-1011 vulnerability which allows use-after-free reads of write() buffers.
Which systems are affected by RHSA-2024:5259?
RHSA-2024:5259 affects multiple versions of Red Hat Enterprise Linux Server, including those for IBM Power and IBM z Systems.
Is a reboot required after applying the fix for RHSA-2024:5259?
Yes, a reboot is typically required to fully apply the kernel updates after fixing RHSA-2024:5259.