Headline
RHSA-2023:1662: Red Hat Security Advisory: kpatch-patch security update
An update for kpatch-patch is now available for Red Hat Enterprise Linux 8.4 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.
Related CVEs:
- CVE-2023-0266: A use-after-free flaw was found in snd_ctl_elem_read in sound/core/control.c in Advanced Linux Sound Architecture (ALSA) subsystem in the Linux kernel. In this flaw a normal privileged, local attacker may impact the system due to a locking issue in the compat path, leading to a kernel information leak problem.
- CVE-2023-0461: A use-after-free flaw was found in the Linux kernel’s TLS protocol functionality in how a user installs a tls context (struct tls_context) on a connected TCP socket. This flaw allows a local user to crash or potentially escalate their privileges on the system.
Synopsis
Important: kpatch-patch security update
Type/Severity
Security Advisory: Important
Red Hat Insights patch analysis
Identify and remediate systems affected by this advisory.
View affected systems
Topic
An update for kpatch-patch is now available for Red Hat Enterprise Linux 8.4 Extended Update Support.
Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Description
This is a kernel live patch module which is automatically loaded by the RPM post-install script to modify the code of a running kernel.
Security Fix(es):
- ALSA: pcm: Move rwsem lock inside snd_ctl_elem_read to prevent UAF (CVE-2023-0266)
- kernel: net/ulp: use-after-free in listening ULP sockets (CVE-2023-0461)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Products
- Red Hat Enterprise Linux for x86_64 - Extended Update Support 8.4 x86_64
- Red Hat Enterprise Linux Server - AUS 8.4 x86_64
- Red Hat Enterprise Linux for Power, little endian - Extended Update Support 8.4 ppc64le
- Red Hat Enterprise Linux Server - TUS 8.4 x86_64
- Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.4 ppc64le
- Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.4 x86_64
Fixes
- BZ - 2163379 - CVE-2023-0266 ALSA: pcm: Move rwsem lock inside snd_ctl_elem_read to prevent UAF
- BZ - 2176192 - CVE-2023-0461 kernel: net/ulp: use-after-free in listening ULP sockets
Red Hat Enterprise Linux for x86_64 - Extended Update Support 8.4
SRPM
kpatch-patch-4_18_0-305_65_1-1-5.el8_4.src.rpm
SHA-256: da5245f21219012e6097fdf212e0215ef3a55194c98f29c903bb2ff6e454be03
kpatch-patch-4_18_0-305_71_1-1-4.el8_4.src.rpm
SHA-256: 8c13bcbcf178baf0da5bfdefc3b3b8b6eaff33f20ed019dc266ce4c76cdfc3b5
kpatch-patch-4_18_0-305_72_1-1-3.el8_4.src.rpm
SHA-256: 347109de454bb3f9f0b9d302677daeeba8adc8a88a43e8a6ac07294cb83b4435
kpatch-patch-4_18_0-305_76_1-1-2.el8_4.src.rpm
SHA-256: fb73651c416a1f029bc7dafd34c1b0d68635c4a45a3ea58e6acb3bcedc506251
kpatch-patch-4_18_0-305_82_1-1-1.el8_4.src.rpm
SHA-256: 6220b6586cb6d1eea3dc66d7380b3cc07c665c0015d9c09408f7d3aa9f9907b1
x86_64
kpatch-patch-4_18_0-305_65_1-1-5.el8_4.x86_64.rpm
SHA-256: 6110aa47a5b38bfa9aefe9c3fa952c341fcd7f54e6a6a1610560a9057e21e8ac
kpatch-patch-4_18_0-305_65_1-debuginfo-1-5.el8_4.x86_64.rpm
SHA-256: 10c087e7fd925770b94074c068e2389dab7a4750452cce9772c31f4844918abd
kpatch-patch-4_18_0-305_65_1-debugsource-1-5.el8_4.x86_64.rpm
SHA-256: 8bdc4e7a3cc31a0f0d2927da97eb75c82cde3f68f276fec82d9581129d61b9ca
kpatch-patch-4_18_0-305_71_1-1-4.el8_4.x86_64.rpm
SHA-256: fce6d94268c75247a03bdded77543515416bf728f99e6ad97ee54d78c6a729a6
kpatch-patch-4_18_0-305_71_1-debuginfo-1-4.el8_4.x86_64.rpm
SHA-256: 6559e76133998c4863e7e35c3ed4977838f8f6e039c616000de8bc8923d8a4e6
kpatch-patch-4_18_0-305_71_1-debugsource-1-4.el8_4.x86_64.rpm
SHA-256: 87cd96726bda05eb1d12175e9e8c30ed99d308bdd8f0ce98d75ffb00e5283ed2
kpatch-patch-4_18_0-305_72_1-1-3.el8_4.x86_64.rpm
SHA-256: 882be61807473d0218d8da02ffd6632ffc6f658941b2c3a2e8fa924cf5633402
kpatch-patch-4_18_0-305_72_1-debuginfo-1-3.el8_4.x86_64.rpm
SHA-256: 90872d6e49dfd068ef07ea1496add4fffbad52a2633f06dd5ac2e9c39f9b07b0
kpatch-patch-4_18_0-305_72_1-debugsource-1-3.el8_4.x86_64.rpm
SHA-256: 209b4759ba9016f23e87775842d118f78f66a95b2bb79ee74102ad947dc70a5d
kpatch-patch-4_18_0-305_76_1-1-2.el8_4.x86_64.rpm
SHA-256: 388575093093e27a1f5b9a629bc82576ead4211d7f20a1c7b7f13bef7060f986
kpatch-patch-4_18_0-305_76_1-debuginfo-1-2.el8_4.x86_64.rpm
SHA-256: 0ffe91b47788b54c6949b79c047124c0e24b6e992b7a2a25347fa219f6b892f8
kpatch-patch-4_18_0-305_76_1-debugsource-1-2.el8_4.x86_64.rpm
SHA-256: 1399d96697270651fe4df4dcdc1193cacf0457d552f7218fcee19c2d84fe5c7b
kpatch-patch-4_18_0-305_82_1-1-1.el8_4.x86_64.rpm
SHA-256: ff2c3fba2a43ad45616999fa92dc75be2b02b630fbad67826b08a4c3a2b9bdc0
kpatch-patch-4_18_0-305_82_1-debuginfo-1-1.el8_4.x86_64.rpm
SHA-256: 2572056cde1f2e86c169a74bc934049e264d1261c10b391c8d5168eb26bdd0fa
kpatch-patch-4_18_0-305_82_1-debugsource-1-1.el8_4.x86_64.rpm
SHA-256: 52fc62b00b42d5552a83742f6c0efec867ba1171c733e857a48ad9fd3ec7e10d
Red Hat Enterprise Linux Server - AUS 8.4
SRPM
kpatch-patch-4_18_0-305_65_1-1-5.el8_4.src.rpm
SHA-256: da5245f21219012e6097fdf212e0215ef3a55194c98f29c903bb2ff6e454be03
kpatch-patch-4_18_0-305_71_1-1-4.el8_4.src.rpm
SHA-256: 8c13bcbcf178baf0da5bfdefc3b3b8b6eaff33f20ed019dc266ce4c76cdfc3b5
kpatch-patch-4_18_0-305_72_1-1-3.el8_4.src.rpm
SHA-256: 347109de454bb3f9f0b9d302677daeeba8adc8a88a43e8a6ac07294cb83b4435
kpatch-patch-4_18_0-305_76_1-1-2.el8_4.src.rpm
SHA-256: fb73651c416a1f029bc7dafd34c1b0d68635c4a45a3ea58e6acb3bcedc506251
kpatch-patch-4_18_0-305_82_1-1-1.el8_4.src.rpm
SHA-256: 6220b6586cb6d1eea3dc66d7380b3cc07c665c0015d9c09408f7d3aa9f9907b1
x86_64
kpatch-patch-4_18_0-305_65_1-1-5.el8_4.x86_64.rpm
SHA-256: 6110aa47a5b38bfa9aefe9c3fa952c341fcd7f54e6a6a1610560a9057e21e8ac
kpatch-patch-4_18_0-305_65_1-debuginfo-1-5.el8_4.x86_64.rpm
SHA-256: 10c087e7fd925770b94074c068e2389dab7a4750452cce9772c31f4844918abd
kpatch-patch-4_18_0-305_65_1-debugsource-1-5.el8_4.x86_64.rpm
SHA-256: 8bdc4e7a3cc31a0f0d2927da97eb75c82cde3f68f276fec82d9581129d61b9ca
kpatch-patch-4_18_0-305_71_1-1-4.el8_4.x86_64.rpm
SHA-256: fce6d94268c75247a03bdded77543515416bf728f99e6ad97ee54d78c6a729a6
kpatch-patch-4_18_0-305_71_1-debuginfo-1-4.el8_4.x86_64.rpm
SHA-256: 6559e76133998c4863e7e35c3ed4977838f8f6e039c616000de8bc8923d8a4e6
kpatch-patch-4_18_0-305_71_1-debugsource-1-4.el8_4.x86_64.rpm
SHA-256: 87cd96726bda05eb1d12175e9e8c30ed99d308bdd8f0ce98d75ffb00e5283ed2
kpatch-patch-4_18_0-305_72_1-1-3.el8_4.x86_64.rpm
SHA-256: 882be61807473d0218d8da02ffd6632ffc6f658941b2c3a2e8fa924cf5633402
kpatch-patch-4_18_0-305_72_1-debuginfo-1-3.el8_4.x86_64.rpm
SHA-256: 90872d6e49dfd068ef07ea1496add4fffbad52a2633f06dd5ac2e9c39f9b07b0
kpatch-patch-4_18_0-305_72_1-debugsource-1-3.el8_4.x86_64.rpm
SHA-256: 209b4759ba9016f23e87775842d118f78f66a95b2bb79ee74102ad947dc70a5d
kpatch-patch-4_18_0-305_76_1-1-2.el8_4.x86_64.rpm
SHA-256: 388575093093e27a1f5b9a629bc82576ead4211d7f20a1c7b7f13bef7060f986
kpatch-patch-4_18_0-305_76_1-debuginfo-1-2.el8_4.x86_64.rpm
SHA-256: 0ffe91b47788b54c6949b79c047124c0e24b6e992b7a2a25347fa219f6b892f8
kpatch-patch-4_18_0-305_76_1-debugsource-1-2.el8_4.x86_64.rpm
SHA-256: 1399d96697270651fe4df4dcdc1193cacf0457d552f7218fcee19c2d84fe5c7b
kpatch-patch-4_18_0-305_82_1-1-1.el8_4.x86_64.rpm
SHA-256: ff2c3fba2a43ad45616999fa92dc75be2b02b630fbad67826b08a4c3a2b9bdc0
kpatch-patch-4_18_0-305_82_1-debuginfo-1-1.el8_4.x86_64.rpm
SHA-256: 2572056cde1f2e86c169a74bc934049e264d1261c10b391c8d5168eb26bdd0fa
kpatch-patch-4_18_0-305_82_1-debugsource-1-1.el8_4.x86_64.rpm
SHA-256: 52fc62b00b42d5552a83742f6c0efec867ba1171c733e857a48ad9fd3ec7e10d
Red Hat Enterprise Linux for Power, little endian - Extended Update Support 8.4
SRPM
kpatch-patch-4_18_0-305_65_1-1-5.el8_4.src.rpm
SHA-256: da5245f21219012e6097fdf212e0215ef3a55194c98f29c903bb2ff6e454be03
kpatch-patch-4_18_0-305_71_1-1-4.el8_4.src.rpm
SHA-256: 8c13bcbcf178baf0da5bfdefc3b3b8b6eaff33f20ed019dc266ce4c76cdfc3b5
kpatch-patch-4_18_0-305_72_1-1-3.el8_4.src.rpm
SHA-256: 347109de454bb3f9f0b9d302677daeeba8adc8a88a43e8a6ac07294cb83b4435
kpatch-patch-4_18_0-305_76_1-1-2.el8_4.src.rpm
SHA-256: fb73651c416a1f029bc7dafd34c1b0d68635c4a45a3ea58e6acb3bcedc506251
kpatch-patch-4_18_0-305_82_1-1-1.el8_4.src.rpm
SHA-256: 6220b6586cb6d1eea3dc66d7380b3cc07c665c0015d9c09408f7d3aa9f9907b1
ppc64le
kpatch-patch-4_18_0-305_65_1-1-5.el8_4.ppc64le.rpm
SHA-256: dfd36b5c3731b9f90c9990b7c7c315220a913ec8c6b9e61b7187949894182f4b
kpatch-patch-4_18_0-305_65_1-debuginfo-1-5.el8_4.ppc64le.rpm
SHA-256: 763501f850e030d834d554d4fd50aa04a093b3aa39e7d183587b2177f473d0e5
kpatch-patch-4_18_0-305_65_1-debugsource-1-5.el8_4.ppc64le.rpm
SHA-256: 89b98b6b8badbd41d9fd248b22d2b16810f9398825b1e94adfd8b5846fb7cc18
kpatch-patch-4_18_0-305_71_1-1-4.el8_4.ppc64le.rpm
SHA-256: 24c6c4c45ba61441ec0c173d8481240a31296b21f571d3469d69351f83badee9
kpatch-patch-4_18_0-305_71_1-debuginfo-1-4.el8_4.ppc64le.rpm
SHA-256: 708552af83c49ed6e099f508bf796212b11d27e8d1685c94e1560374f574f076
kpatch-patch-4_18_0-305_71_1-debugsource-1-4.el8_4.ppc64le.rpm
SHA-256: 91aa3c080b483c5afe1a0727d07128b1c39533bf09315617ec98d9cbfed6c447
kpatch-patch-4_18_0-305_72_1-1-3.el8_4.ppc64le.rpm
SHA-256: 437a8f0845a233551d798a8fd3de172fc8a07d3e19c60648ea6bf5eef16c26ad
kpatch-patch-4_18_0-305_72_1-debuginfo-1-3.el8_4.ppc64le.rpm
SHA-256: bfbe8504ab80ed6f7b00e38e183909a5e1a3b5e573822d21fa99992067b0ebaf
kpatch-patch-4_18_0-305_72_1-debugsource-1-3.el8_4.ppc64le.rpm
SHA-256: cab198151a20a60b6053b30bf4986c7c94394958b2a8f78414d0aa853ffef5a5
kpatch-patch-4_18_0-305_76_1-1-2.el8_4.ppc64le.rpm
SHA-256: 2b7840468109bdfc1e63522b9f11e99ca557e97c725e367ffb8ae7d7b07a3cc9
kpatch-patch-4_18_0-305_76_1-debuginfo-1-2.el8_4.ppc64le.rpm
SHA-256: 0e32b9ebaa2a74c5efb3ecfd0c417b4ac5e4b7f2b497c1fbe2d09275250602d3
kpatch-patch-4_18_0-305_76_1-debugsource-1-2.el8_4.ppc64le.rpm
SHA-256: ca0fc6e56d1be8b44ef8a41675bea730d1786c618ab9f9f3d37efc632028beb6
kpatch-patch-4_18_0-305_82_1-1-1.el8_4.ppc64le.rpm
SHA-256: e40aad3172e0e7ec7172c72e701ef4904c985e2eff75bfce7e309385da897f24
kpatch-patch-4_18_0-305_82_1-debuginfo-1-1.el8_4.ppc64le.rpm
SHA-256: 2272973b9f71496056c88f14f5cc5225aeb65f32ea014d922bb3d7f5a541e6b6
kpatch-patch-4_18_0-305_82_1-debugsource-1-1.el8_4.ppc64le.rpm
SHA-256: cc4fdc977cea6be6338f651b68dad267fbced79a6eaf804400ee145dd0e81a53
Red Hat Enterprise Linux Server - TUS 8.4
SRPM
kpatch-patch-4_18_0-305_65_1-1-5.el8_4.src.rpm
SHA-256: da5245f21219012e6097fdf212e0215ef3a55194c98f29c903bb2ff6e454be03
kpatch-patch-4_18_0-305_71_1-1-4.el8_4.src.rpm
SHA-256: 8c13bcbcf178baf0da5bfdefc3b3b8b6eaff33f20ed019dc266ce4c76cdfc3b5
kpatch-patch-4_18_0-305_72_1-1-3.el8_4.src.rpm
SHA-256: 347109de454bb3f9f0b9d302677daeeba8adc8a88a43e8a6ac07294cb83b4435
kpatch-patch-4_18_0-305_76_1-1-2.el8_4.src.rpm
SHA-256: fb73651c416a1f029bc7dafd34c1b0d68635c4a45a3ea58e6acb3bcedc506251
kpatch-patch-4_18_0-305_82_1-1-1.el8_4.src.rpm
SHA-256: 6220b6586cb6d1eea3dc66d7380b3cc07c665c0015d9c09408f7d3aa9f9907b1
x86_64
kpatch-patch-4_18_0-305_65_1-1-5.el8_4.x86_64.rpm
SHA-256: 6110aa47a5b38bfa9aefe9c3fa952c341fcd7f54e6a6a1610560a9057e21e8ac
kpatch-patch-4_18_0-305_65_1-debuginfo-1-5.el8_4.x86_64.rpm
SHA-256: 10c087e7fd925770b94074c068e2389dab7a4750452cce9772c31f4844918abd
kpatch-patch-4_18_0-305_65_1-debugsource-1-5.el8_4.x86_64.rpm
SHA-256: 8bdc4e7a3cc31a0f0d2927da97eb75c82cde3f68f276fec82d9581129d61b9ca
kpatch-patch-4_18_0-305_71_1-1-4.el8_4.x86_64.rpm
SHA-256: fce6d94268c75247a03bdded77543515416bf728f99e6ad97ee54d78c6a729a6
kpatch-patch-4_18_0-305_71_1-debuginfo-1-4.el8_4.x86_64.rpm
SHA-256: 6559e76133998c4863e7e35c3ed4977838f8f6e039c616000de8bc8923d8a4e6
kpatch-patch-4_18_0-305_71_1-debugsource-1-4.el8_4.x86_64.rpm
SHA-256: 87cd96726bda05eb1d12175e9e8c30ed99d308bdd8f0ce98d75ffb00e5283ed2
kpatch-patch-4_18_0-305_72_1-1-3.el8_4.x86_64.rpm
SHA-256: 882be61807473d0218d8da02ffd6632ffc6f658941b2c3a2e8fa924cf5633402
kpatch-patch-4_18_0-305_72_1-debuginfo-1-3.el8_4.x86_64.rpm
SHA-256: 90872d6e49dfd068ef07ea1496add4fffbad52a2633f06dd5ac2e9c39f9b07b0
kpatch-patch-4_18_0-305_72_1-debugsource-1-3.el8_4.x86_64.rpm
SHA-256: 209b4759ba9016f23e87775842d118f78f66a95b2bb79ee74102ad947dc70a5d
kpatch-patch-4_18_0-305_76_1-1-2.el8_4.x86_64.rpm
SHA-256: 388575093093e27a1f5b9a629bc82576ead4211d7f20a1c7b7f13bef7060f986
kpatch-patch-4_18_0-305_76_1-debuginfo-1-2.el8_4.x86_64.rpm
SHA-256: 0ffe91b47788b54c6949b79c047124c0e24b6e992b7a2a25347fa219f6b892f8
kpatch-patch-4_18_0-305_76_1-debugsource-1-2.el8_4.x86_64.rpm
SHA-256: 1399d96697270651fe4df4dcdc1193cacf0457d552f7218fcee19c2d84fe5c7b
kpatch-patch-4_18_0-305_82_1-1-1.el8_4.x86_64.rpm
SHA-256: ff2c3fba2a43ad45616999fa92dc75be2b02b630fbad67826b08a4c3a2b9bdc0
kpatch-patch-4_18_0-305_82_1-debuginfo-1-1.el8_4.x86_64.rpm
SHA-256: 2572056cde1f2e86c169a74bc934049e264d1261c10b391c8d5168eb26bdd0fa
kpatch-patch-4_18_0-305_82_1-debugsource-1-1.el8_4.x86_64.rpm
SHA-256: 52fc62b00b42d5552a83742f6c0efec867ba1171c733e857a48ad9fd3ec7e10d
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.4
SRPM
kpatch-patch-4_18_0-305_65_1-1-5.el8_4.src.rpm
SHA-256: da5245f21219012e6097fdf212e0215ef3a55194c98f29c903bb2ff6e454be03
kpatch-patch-4_18_0-305_71_1-1-4.el8_4.src.rpm
SHA-256: 8c13bcbcf178baf0da5bfdefc3b3b8b6eaff33f20ed019dc266ce4c76cdfc3b5
kpatch-patch-4_18_0-305_72_1-1-3.el8_4.src.rpm
SHA-256: 347109de454bb3f9f0b9d302677daeeba8adc8a88a43e8a6ac07294cb83b4435
kpatch-patch-4_18_0-305_76_1-1-2.el8_4.src.rpm
SHA-256: fb73651c416a1f029bc7dafd34c1b0d68635c4a45a3ea58e6acb3bcedc506251
kpatch-patch-4_18_0-305_82_1-1-1.el8_4.src.rpm
SHA-256: 6220b6586cb6d1eea3dc66d7380b3cc07c665c0015d9c09408f7d3aa9f9907b1
ppc64le
kpatch-patch-4_18_0-305_65_1-1-5.el8_4.ppc64le.rpm
SHA-256: dfd36b5c3731b9f90c9990b7c7c315220a913ec8c6b9e61b7187949894182f4b
kpatch-patch-4_18_0-305_65_1-debuginfo-1-5.el8_4.ppc64le.rpm
SHA-256: 763501f850e030d834d554d4fd50aa04a093b3aa39e7d183587b2177f473d0e5
kpatch-patch-4_18_0-305_65_1-debugsource-1-5.el8_4.ppc64le.rpm
SHA-256: 89b98b6b8badbd41d9fd248b22d2b16810f9398825b1e94adfd8b5846fb7cc18
kpatch-patch-4_18_0-305_71_1-1-4.el8_4.ppc64le.rpm
SHA-256: 24c6c4c45ba61441ec0c173d8481240a31296b21f571d3469d69351f83badee9
kpatch-patch-4_18_0-305_71_1-debuginfo-1-4.el8_4.ppc64le.rpm
SHA-256: 708552af83c49ed6e099f508bf796212b11d27e8d1685c94e1560374f574f076
kpatch-patch-4_18_0-305_71_1-debugsource-1-4.el8_4.ppc64le.rpm
SHA-256: 91aa3c080b483c5afe1a0727d07128b1c39533bf09315617ec98d9cbfed6c447
kpatch-patch-4_18_0-305_72_1-1-3.el8_4.ppc64le.rpm
SHA-256: 437a8f0845a233551d798a8fd3de172fc8a07d3e19c60648ea6bf5eef16c26ad
kpatch-patch-4_18_0-305_72_1-debuginfo-1-3.el8_4.ppc64le.rpm
SHA-256: bfbe8504ab80ed6f7b00e38e183909a5e1a3b5e573822d21fa99992067b0ebaf
kpatch-patch-4_18_0-305_72_1-debugsource-1-3.el8_4.ppc64le.rpm
SHA-256: cab198151a20a60b6053b30bf4986c7c94394958b2a8f78414d0aa853ffef5a5
kpatch-patch-4_18_0-305_76_1-1-2.el8_4.ppc64le.rpm
SHA-256: 2b7840468109bdfc1e63522b9f11e99ca557e97c725e367ffb8ae7d7b07a3cc9
kpatch-patch-4_18_0-305_76_1-debuginfo-1-2.el8_4.ppc64le.rpm
SHA-256: 0e32b9ebaa2a74c5efb3ecfd0c417b4ac5e4b7f2b497c1fbe2d09275250602d3
kpatch-patch-4_18_0-305_76_1-debugsource-1-2.el8_4.ppc64le.rpm
SHA-256: ca0fc6e56d1be8b44ef8a41675bea730d1786c618ab9f9f3d37efc632028beb6
kpatch-patch-4_18_0-305_82_1-1-1.el8_4.ppc64le.rpm
SHA-256: e40aad3172e0e7ec7172c72e701ef4904c985e2eff75bfce7e309385da897f24
kpatch-patch-4_18_0-305_82_1-debuginfo-1-1.el8_4.ppc64le.rpm
SHA-256: 2272973b9f71496056c88f14f5cc5225aeb65f32ea014d922bb3d7f5a541e6b6
kpatch-patch-4_18_0-305_82_1-debugsource-1-1.el8_4.ppc64le.rpm
SHA-256: cc4fdc977cea6be6338f651b68dad267fbced79a6eaf804400ee145dd0e81a53
Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.4
SRPM
kpatch-patch-4_18_0-305_65_1-1-5.el8_4.src.rpm
SHA-256: da5245f21219012e6097fdf212e0215ef3a55194c98f29c903bb2ff6e454be03
kpatch-patch-4_18_0-305_71_1-1-4.el8_4.src.rpm
SHA-256: 8c13bcbcf178baf0da5bfdefc3b3b8b6eaff33f20ed019dc266ce4c76cdfc3b5
kpatch-patch-4_18_0-305_72_1-1-3.el8_4.src.rpm
SHA-256: 347109de454bb3f9f0b9d302677daeeba8adc8a88a43e8a6ac07294cb83b4435
kpatch-patch-4_18_0-305_76_1-1-2.el8_4.src.rpm
SHA-256: fb73651c416a1f029bc7dafd34c1b0d68635c4a45a3ea58e6acb3bcedc506251
kpatch-patch-4_18_0-305_82_1-1-1.el8_4.src.rpm
SHA-256: 6220b6586cb6d1eea3dc66d7380b3cc07c665c0015d9c09408f7d3aa9f9907b1
x86_64
kpatch-patch-4_18_0-305_65_1-1-5.el8_4.x86_64.rpm
SHA-256: 6110aa47a5b38bfa9aefe9c3fa952c341fcd7f54e6a6a1610560a9057e21e8ac
kpatch-patch-4_18_0-305_65_1-debuginfo-1-5.el8_4.x86_64.rpm
SHA-256: 10c087e7fd925770b94074c068e2389dab7a4750452cce9772c31f4844918abd
kpatch-patch-4_18_0-305_65_1-debugsource-1-5.el8_4.x86_64.rpm
SHA-256: 8bdc4e7a3cc31a0f0d2927da97eb75c82cde3f68f276fec82d9581129d61b9ca
kpatch-patch-4_18_0-305_71_1-1-4.el8_4.x86_64.rpm
SHA-256: fce6d94268c75247a03bdded77543515416bf728f99e6ad97ee54d78c6a729a6
kpatch-patch-4_18_0-305_71_1-debuginfo-1-4.el8_4.x86_64.rpm
SHA-256: 6559e76133998c4863e7e35c3ed4977838f8f6e039c616000de8bc8923d8a4e6
kpatch-patch-4_18_0-305_71_1-debugsource-1-4.el8_4.x86_64.rpm
SHA-256: 87cd96726bda05eb1d12175e9e8c30ed99d308bdd8f0ce98d75ffb00e5283ed2
kpatch-patch-4_18_0-305_72_1-1-3.el8_4.x86_64.rpm
SHA-256: 882be61807473d0218d8da02ffd6632ffc6f658941b2c3a2e8fa924cf5633402
kpatch-patch-4_18_0-305_72_1-debuginfo-1-3.el8_4.x86_64.rpm
SHA-256: 90872d6e49dfd068ef07ea1496add4fffbad52a2633f06dd5ac2e9c39f9b07b0
kpatch-patch-4_18_0-305_72_1-debugsource-1-3.el8_4.x86_64.rpm
SHA-256: 209b4759ba9016f23e87775842d118f78f66a95b2bb79ee74102ad947dc70a5d
kpatch-patch-4_18_0-305_76_1-1-2.el8_4.x86_64.rpm
SHA-256: 388575093093e27a1f5b9a629bc82576ead4211d7f20a1c7b7f13bef7060f986
kpatch-patch-4_18_0-305_76_1-debuginfo-1-2.el8_4.x86_64.rpm
SHA-256: 0ffe91b47788b54c6949b79c047124c0e24b6e992b7a2a25347fa219f6b892f8
kpatch-patch-4_18_0-305_76_1-debugsource-1-2.el8_4.x86_64.rpm
SHA-256: 1399d96697270651fe4df4dcdc1193cacf0457d552f7218fcee19c2d84fe5c7b
kpatch-patch-4_18_0-305_82_1-1-1.el8_4.x86_64.rpm
SHA-256: ff2c3fba2a43ad45616999fa92dc75be2b02b630fbad67826b08a4c3a2b9bdc0
kpatch-patch-4_18_0-305_82_1-debuginfo-1-1.el8_4.x86_64.rpm
SHA-256: 2572056cde1f2e86c169a74bc934049e264d1261c10b391c8d5168eb26bdd0fa
kpatch-patch-4_18_0-305_82_1-debugsource-1-1.el8_4.x86_64.rpm
SHA-256: 52fc62b00b42d5552a83742f6c0efec867ba1171c733e857a48ad9fd3ec7e10d
Related news
An update for kernel-rt is now available for Red Hat Enterprise Linux 8.2 Telecommunications Update Service. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2023-0461: A use-after-free flaw was found in the Linux kernel’s TLS protocol functionality in how a user installs a tls context (struct tls_context) on a connected TCP socket. This flaw allows a local user to crash or potentially escalate their privileges on the system. * CVE-2023-1281: A use-after-free vulnerability w...
Logging Subsystem 5.7.2 - Red Hat OpenShift Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2022-41723: A flaw was found in golang. A maliciously crafted HTTP/2 stream could cause excessive CPU consumption in the HPACK decoder, sufficient to cause a denial of service from a small number of small requests. * CVE-2023-27539: A denial of service vulnerability was found in rubygem-rack in how it parses headers. A carefully crafted input can cause header parsing to take an unexpe...
Red Hat Security Advisory 2023-3465-01 - The kernel packages contain the Linux kernel, the core of any Linux operating system. Issues addressed include privilege escalation and use-after-free vulnerabilities.
Dell SCG 5.14 contains an information disclosure vulnerability during the SRS to SCG upgrade path. A remote low privileged malicious user could potentially exploit this vulnerability to retrieve the plain text.
Red Hat Security Advisory 2023-3326-01 - Red Hat Advanced Cluster Management for Kubernetes 2.6.6 images. This advisory contains the container images for Red Hat Advanced Cluster Management for Kubernetes, which fix several bugs.
An update for kpatch-patch is now available for Red Hat Enterprise Linux 8.1 Update Services for SAP Solutions. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2023-0461: A use-after-free flaw was found in the Linux kernel’s TLS protocol functionality in how a user installs a tls context (struct tls_context) on a connected TCP socket. This flaw allows a local user to crash or potentially escalate their privileges on the system. * CVE-2023-1390: A remote denial of service vu...
An update for kernel-rt is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2021-26341: A flaw was found in hw. This issue can cause AMD CPUs to transiently execute beyond unconditional direct branches. * CVE-2021-33655: An out-of-bounds write flaw was found in the Linux kernel’s framebuffer-based console driver functionality in the way a user triggers ioctl FBIOPUT_VSCREENINFO with malicious data. This flaw allows a local user t...
Red Hat Security Advisory 2023-2148-01 - The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements. Issues addressed include buffer overflow, bypass, denial of service, double free, memory leak, null pointer, out of bounds read, privilege escalation, traversal, and use-after-free vulnerabilities.
Red Hat Security Advisory 2023-2104-01 - Red Hat Advanced Cluster Management for Kubernetes 2.5.8 images Red Hat Advanced Cluster Management for Kubernetes provides the capabilities to address common challenges that administrators and site reliability engineers face as they work across a range of public and private cloud environments. Clusters and applications are all visible and managed from a single console—with security policy built in. This advisory contains the container images for Red Hat Advanced Cluster Management for Kubernetes, which fix several bugs. Issues addressed include a denial of service vulnerability.
Red Hat Security Advisory 2023-1953-01 - Red Hat OpenShift Logging Subsystem 5.6.5 update. Issues addressed include cross site scripting and denial of service vulnerabilities.
Ubuntu Security Notice 6030-1 - It was discovered that the Traffic-Control Index implementation in the Linux kernel contained a use-after-free vulnerability. A local attacker could use this to cause a denial of service or possibly execute arbitrary code. It was discovered that the System V IPC implementation in the Linux kernel did not properly handle large shared memory counts. A local attacker could use this to cause a denial of service.
Red Hat Security Advisory 2023-1841-01 - The kernel packages contain the Linux kernel, the core of any Linux operating system. Issues addressed include a use-after-free vulnerability.
An update for redhat-release-virtualization-host and redhat-virtualization-host is now available for Red Hat Virtualization 4 for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2022-23521: A flaw was found in Git, a distributed revision control system. When parsing gitattributes, a mechanism to allow defining attributes for paths, multiple integer overflows can occur when there is a huge number of path patterns, attributes for a single pattern, ...
Ubuntu Security Notice 6000-1 - It was discovered that the Upper Level Protocol subsystem in the Linux kernel did not properly handle sockets entering the LISTEN state in certain protocols, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service or possibly execute arbitrary code. It was discovered that the NVMe driver in the Linux kernel did not properly handle reset events in some situations. A local attacker could use this to cause a denial of service.
Red Hat Security Advisory 2023-1662-01 - This is a kernel live patch module which is automatically loaded by the RPM post-install script to modify the code of a running kernel. Issues addressed include a use-after-free vulnerability.
Red Hat Security Advisory 2023-1662-01 - This is a kernel live patch module which is automatically loaded by the RPM post-install script to modify the code of a running kernel. Issues addressed include a use-after-free vulnerability.
Red Hat Security Advisory 2023-1590-01 - This is a kernel live patch module which is automatically loaded by the RPM post-install script to modify the code of a running kernel.
An update for kernel-rt is now available for Red Hat Enterprise Linux 8.2 Telecommunications Update Service. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2022-3564: A use-after-free flaw was found in the Linux kernel’s L2CAP bluetooth functionality in how a user triggers a race condition by two malicious flows in the L2CAP bluetooth packets. This flaw allows a local or bluetooth connection user to crash the system or potentially escalate privileges. * CVE-2023-0266: A us...
An update for kernel-rt is now available for Red Hat Enterprise Linux 8.4 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2023-0266: A use-after-free flaw was found in the ALSA subsystem in sound/core/control.c in the Linux kernel. This flaw allows a local attacker to cause a use-after-free issue. * CVE-2023-0461: A use-after-free flaw was found in the Linux kernel’s TLS protocol functionality in how a user installs a tls context (struct tls_context...
Davide Ornaghi discovered that the netfilter subsystem in the Linux kernel did not properly handle VLAN headers in some situations. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. It was discovered that the Upper Level Protocol (ULP) subsystem in the Linux kernel did not properly handle sockets entering the LISTEN state in certain protocols, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code.
Google TAG researchers reveal two campaigns against iOS, Android, and Chrome users that demonstrate how the commercial surveillance market is thriving despite government-imposed limits.
Ubuntu Security Notice 5982-1 - It was discovered that the KVM VMX implementation in the Linux kernel did not properly handle indirect branch prediction isolation between L1 and L2 VMs. An attacker in a guest VM could use this to expose sensitive information from the host OS or other guest VMs. It was discovered that a use-after-free vulnerability existed in the SGI GRU driver in the Linux kernel. A local attacker could possibly use this to cause a denial of service or possibly execute arbitrary code.
Ubuntu Security Notice 5976-1 - It was discovered that the Upper Level Protocol subsystem in the Linux kernel did not properly handle sockets entering the LISTEN state in certain protocols, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service or possibly execute arbitrary code. It was discovered that the KVM VMX implementation in the Linux kernel did not properly handle indirect branch prediction isolation between L1 and L2 VMs. An attacker in a guest VM could use this to expose sensitive information from the host OS or other guest VMs.
Red Hat Security Advisory 2023-1471-01 - This is a kernel live patch module which is automatically loaded by the RPM post-install script to modify the code of a running kernel. Issues addressed include a double free vulnerability.
An update for kernel is now available for Red Hat Enterprise Linux 9. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2022-4269: A flaw was found in the Linux kernel Traffic Control (TC) subsystem. Using a specific networking configuration (redirecting egress packets to ingress using TC action "mirred") a local unprivileged user could trigger a CPU soft lockup (ABBA deadlock) when the transport protocol in use (TCP or SCTP) does a retransmission, resulting in a denial of se...
An update for kernel-rt is now available for Red Hat Enterprise Linux 9. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2022-4269: A flaw was found in the Linux kernel Traffic Control (TC) subsystem. Using a specific networking configuration (redirecting egress packets to ingress using TC action "mirred") a local unprivileged user could trigger a CPU soft lockup (ABBA deadlock) when the transport protocol in use (TCP or SCTP) does a retransmission, resulting in a denial of...
Ubuntu Security Notice 5950-1 - It was discovered that the Upper Level Protocol subsystem in the Linux kernel did not properly handle sockets entering the LISTEN state in certain protocols, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service or possibly execute arbitrary code. Davide Ornaghi discovered that the netfilter subsystem in the Linux kernel did not properly handle VLAN headers in some situations. A local attacker could use this to cause a denial of service or possibly execute arbitrary code.
An update for kernel-rt is now available for Red Hat Enterprise Linux 9.0 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2022-3564: A use-after-free flaw was found in the Linux kernel’s L2CAP bluetooth functionality in how a user triggers a race condition by two malicious flows in the L2CAP bluetooth packets. This flaw allows a local or bluetooth connection user to crash the system or potentially escalate privileges. * CVE-2022-4269: A flaw was fou...
Ubuntu Security Notice 5941-1 - It was discovered that the Upper Level Protocol subsystem in the Linux kernel did not properly handle sockets entering the LISTEN state in certain protocols, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service or possibly execute arbitrary code. Davide Ornaghi discovered that the netfilter subsystem in the Linux kernel did not properly handle VLAN headers in some situations. A local attacker could use this to cause a denial of service or possibly execute arbitrary code.
Ubuntu Security Notice 5938-1 - It was discovered that the Upper Level Protocol subsystem in the Linux kernel did not properly handle sockets entering the LISTEN state in certain protocols, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service or possibly execute arbitrary code. Davide Ornaghi discovered that the netfilter subsystem in the Linux kernel did not properly handle VLAN headers in some situations. A local attacker could use this to cause a denial of service or possibly execute arbitrary code.
Ubuntu Security Notice 5925-1 - It was discovered that the Upper Level Protocol subsystem in the Linux kernel did not properly handle sockets entering the LISTEN state in certain protocols, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service or possibly execute arbitrary code. It was discovered that a race condition existed in the Kernel Connection Multiplexor socket implementation in the Linux kernel when releasing sockets in certain situations. A local attacker could use this to cause a denial of service.
Ubuntu Security Notice 5920-1 - It was discovered that the Upper Level Protocol subsystem in the Linux kernel did not properly handle sockets entering the LISTEN state in certain protocols, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service or possibly execute arbitrary code. Kyle Zeng discovered that the sysctl implementation in the Linux kernel contained a stack-based buffer overflow. A local attacker could use this to cause a denial of service or execute arbitrary code.
Ubuntu Security Notice 5911-1 - It was discovered that the Upper Level Protocol subsystem in the Linux kernel did not properly handle sockets entering the LISTEN state in certain protocols, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service or possibly execute arbitrary code. Davide Ornaghi discovered that the netfilter subsystem in the Linux kernel did not properly handle VLAN headers in some situations. A local attacker could use this to cause a denial of service or possibly execute arbitrary code.
Ubuntu Security Notice 5912-1 - It was discovered that the Upper Level Protocol subsystem in the Linux kernel did not properly handle sockets entering the LISTEN state in certain protocols, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service or possibly execute arbitrary code. Davide Ornaghi discovered that the netfilter subsystem in the Linux kernel did not properly handle VLAN headers in some situations. A local attacker could use this to cause a denial of service or possibly execute arbitrary code.