RHSA-2025:0368: Moderate: tuned security update
Moderate: tuned security update
Other sources
The tuned packages provide a service that tunes system settings according to a selected profile.Security Fix(es): tuned: improper sanitization of instancename parameter of the instancecreate() method (CVE-2024-52337) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2025:0368?
The severity of RHSA-2025:0368 is classified as moderate.
What issue does CVE-2024-52337 address in RHSA-2025:0368?
CVE-2024-52337 addresses the improper sanitization of the 'instance_name' parameter in the 'instance_create()' method.
How do I fix the vulnerabilities related to RHSA-2025:0368?
To fix the vulnerabilities, update the tuned packages to version 2.20.0-1.el8_6.2.
Which packages are affected by RHSA-2025:0368?
The affected packages include tuned, tuned-gtk, and various tuned-profiles such as tuned-profiles-sap and tuned-profiles-nfv.
Is there any recommended action for users of Red Hat Enterprise Linux regarding RHSA-2025:0368?
Users of Red Hat Enterprise Linux should apply the security updates provided in RHSA-2025:0368 promptly.