RHSA-2024:6990: Important: kernel-rt security update

Published Sep 24, 2024
·
Updated

Important: kernel-rt security update

Other sources

The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements.Security Fix(es): kernel: mm/sparsemem: fix race in accessing memorysection->usage (CVE-2023-52489) kernel: hwmon: (mlxreg-fan) Return non-zero value when fan current state is enforced from sysfs (CVE-2021-47393) kernel: net/smc: Fix NULL pointer dereferencing in smcvlanbytcpsk() (CVE-2021-47559) kernel: ACPICA: Revert "ACPICA: avoid Info: mapping multiple BARs. Your kernel is fine." (CVE-2024-40984) kernel: net/sched: actapi: fix possible infinite loop in tcfidrcheckalloc() (CVE-2024-40995) kernel: xprtrdma: fix pointer derefs in error cases of rpcrdmaepcreate (CVE-2022-48773) kernel: vsock: remove vsock from connected table when connect is interrupted by a signal (CVE-2022-48786) kernel: perf: Fix list corruption in perfcgroupswitch() (CVE-2022-48799) kernel: SUNRPC: lock against ->sock changing during sysfs read (CVE-2022-48816) kernel: mm: prevent derefencing NULL ptr in pfnsectionvalid() (CVE-2024-41055) kernel: wifi: mac80211: Avoid address calculations via out of bounds array indexing (CVE-2024-41071) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

— Red Hat

Affected Software

17 affected componentsFixes available
Red Hat Red Hat Enterprise Linux for Real Time for x86_64 - 4 years of updates
Red Hat Red Hat Enterprise Linux for Real Time for NFV for x86_64 - 4 years of updates
redhat/kernel-rt<5.14.0-70.117.1.rt21.189.el9_0
5.14.0-70.117.1.rt21.189.el9_0
redhat/kernel-rt<5.14.0-70.117.1.rt21.189.el9_0
5.14.0-70.117.1.rt21.189.el9_0
redhat/kernel-rt-core<5.14.0-70.117.1.rt21.189.el9_0
5.14.0-70.117.1.rt21.189.el9_0
redhat/kernel-rt-debug<5.14.0-70.117.1.rt21.189.el9_0
5.14.0-70.117.1.rt21.189.el9_0
redhat/kernel-rt-debug-core<5.14.0-70.117.1.rt21.189.el9_0
5.14.0-70.117.1.rt21.189.el9_0
redhat/kernel-rt-debug-debuginfo<5.14.0-70.117.1.rt21.189.el9_0
5.14.0-70.117.1.rt21.189.el9_0
redhat/kernel-rt-debug-devel<5.14.0-70.117.1.rt21.189.el9_0
5.14.0-70.117.1.rt21.189.el9_0
redhat/kernel-rt-debug-kvm<5.14.0-70.117.1.rt21.189.el9_0
5.14.0-70.117.1.rt21.189.el9_0
redhat/kernel-rt-debug-modules<5.14.0-70.117.1.rt21.189.el9_0
5.14.0-70.117.1.rt21.189.el9_0
redhat/kernel-rt-debug-modules-extra<5.14.0-70.117.1.rt21.189.el9_0
5.14.0-70.117.1.rt21.189.el9_0
redhat/kernel-rt-debuginfo<5.14.0-70.117.1.rt21.189.el9_0
5.14.0-70.117.1.rt21.189.el9_0
redhat/kernel-rt-devel<5.14.0-70.117.1.rt21.189.el9_0
5.14.0-70.117.1.rt21.189.el9_0
redhat/kernel-rt-kvm<5.14.0-70.117.1.rt21.189.el9_0
5.14.0-70.117.1.rt21.189.el9_0
redhat/kernel-rt-modules<5.14.0-70.117.1.rt21.189.el9_0
5.14.0-70.117.1.rt21.189.el9_0
redhat/kernel-rt-modules-extra<5.14.0-70.117.1.rt21.189.el9_0
5.14.0-70.117.1.rt21.189.el9_0

Remediation

Event History

Sep 24, 2024
Advisory Published
via Red Hat·12:00 AM
Advisory Published
via Red Hat·12:05 AM

Frequently Asked Questions

1

What is the severity of RHSA-2024:6990?

RHSA-2024:6990 is classified as an important security update for the kernel-rt packages.

2

How do I fix RHSA-2024:6990?

To mitigate the vulnerability in RHSA-2024:6990, update your system to kernel-rt version 5.14.0-70.117.1.rt21.189.el9_0.

3

Which systems are affected by RHSA-2024:6990?

RHSA-2024:6990 affects Red Hat Enterprise Linux for Real Time for x86_64 and Red Hat Enterprise Linux for Real Time for NFV for x86_64.

4

What types of packages does RHSA-2024:6990 apply to?

RHSA-2024:6990 applies to various kernel-rt packages including kernel-rt-core, kernel-rt-debug, and kernel-rt-modules, among others.

5

What is the purpose of the kernel-rt update in RHSA-2024:6990?

The kernel-rt update in RHSA-2024:6990 aims to fix a race condition in accessing memory_section->usage, enhancing system stability.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203