Security
Headlines
HeadlinesLatestCVEs

Headline

RHSA-2022:8940: Red Hat Security Advisory: kernel security and bug fix update

An update for kernel is now available for Red Hat Enterprise Linux 8.2 Advanced Update Support, Red Hat Enterprise Linux 8.2 Telecommunications Update Service, and Red Hat Enterprise Linux 8.2 Update Services for SAP Solutions. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.

Related CVEs:

  • CVE-2022-1158: kernel: KVM: cmpxchg_gpte can write to pfns outside the userspace region
  • CVE-2022-2639: kernel: openvswitch: integer underflow leads to out-of-bounds write in reserve_sfa_size()
Red Hat Security Data
#vulnerability#linux#red_hat#sap

Issued:

2022-12-13

Updated:

2022-12-13

RHSA-2022:8940 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: kernel security and bug fix update

Type/Severity

Security Advisory: Important

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for kernel is now available for Red Hat Enterprise Linux 8.2 Advanced Update Support, Red Hat Enterprise Linux 8.2 Telecommunications Update Service, and Red Hat Enterprise Linux 8.2 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

The kernel packages contain the Linux kernel, the core of any Linux operating system.

Security Fix(es):

  • kernel: KVM: cmpxchg_gpte can write to pfns outside the userspace region (CVE-2022-1158)
  • kernel: openvswitch: integer underflow leads to out-of-bounds write in reserve_sfa_size() (CVE-2022-2639)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Bug Fix(es):

  • s390x: bpftrace Could not read symbols from /sys/kernel/debug/tracing/available_filter_functions: No such device (BZ#2134808)

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

The system must be rebooted for this update to take effect.

Affected Products

  • Red Hat Enterprise Linux Server - AUS 8.2 x86_64
  • Red Hat Enterprise Linux Server - TUS 8.2 x86_64
  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.2 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.2 x86_64

Fixes

  • BZ - 2069793 - CVE-2022-1158 kernel: KVM: cmpxchg_gpte can write to pfns outside the userspace region
  • BZ - 2084479 - CVE-2022-2639 kernel: openvswitch: integer underflow leads to out-of-bounds write in reserve_sfa_size()

Red Hat Enterprise Linux Server - AUS 8.2

SRPM

kernel-4.18.0-193.95.1.el8_2.src.rpm

SHA-256: 250c88c9bb7ebc3f381422258e2c970e2fde27b35bcec99e2eb40c4977998e4a

x86_64

bpftool-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 82dfa21613b8c4e0819939167c752eecb8be1a5ee6801477636c61106698a53b

bpftool-debuginfo-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 9e9f2fc2453cb7dfbc6705902e114c73f82c7de8b54ec1bb8ec1efe900d74e14

kernel-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: dca9fdddf498e5ab1c2c7d5e718fc20825dc115075de8651d37848dedb9dfb24

kernel-abi-whitelists-4.18.0-193.95.1.el8_2.noarch.rpm

SHA-256: eba7e22c85ba52d4e66c6639eeab42ec00c5de51bcfca5b3a889edf0d7f07c0a

kernel-core-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: f18f0f454922e1b27da9407beee7de7982f28a970f8653dfef21b69711f997f8

kernel-cross-headers-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: a425b042f430df7e992204739e241a152d354c849aabfd16dd5b3a9abde8e01d

kernel-debug-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 1c5d4e192e30a2f69f9e25e29e3b610145d885e3555200e33a7f4738300e5b78

kernel-debug-core-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 548dcca516bd87483f29f6ec763255533e33db98f9ec7a41903612db830b5f99

kernel-debug-debuginfo-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 3b151f2660395c141e83c272e2b0d27f1e101bcd06f78cbacf8a30fe0cf249c6

kernel-debug-devel-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: dbd1d751a492475e4f9cc798303bc31b60855ba9556c9c3db7f8658918b2a6e3

kernel-debug-modules-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 9a77b208c77a9a9442fa40012042026f501a758569f261530d714ab9fcd3bb0b

kernel-debug-modules-extra-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: cdf05caeae1fb438f4827b401f36becd29d924d6c6688b5e796ad4b617a1161f

kernel-debuginfo-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 417968f53f5926f29240c2030bea9886c83fec02f4f168fc962d2ced6985861a

kernel-debuginfo-common-x86_64-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 8861b7b43f0a54f7085a9f1cb121021993fd25dbe893af4508300b8420ea8ddb

kernel-devel-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 65efe597083e4abba59129e759323d4dfe7da184d99ac0ee5fe9d6dca23bc72d

kernel-doc-4.18.0-193.95.1.el8_2.noarch.rpm

SHA-256: 0a1c5d9e2b5a067c5125e92229aefa9c79c46141901feae82860959c9abf25ca

kernel-headers-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 63941a0ecb56d754b4f85f6ac1ae14119ff8ce4ca64937d110eea3e13c3b4260

kernel-modules-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 61c214139e8aded906c8eeaef6df0da1aee19e8f2cfd1566996ac45177232b4b

kernel-modules-extra-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 4c14e8d9507ca3c21c74b148aae303ebcb040ac3962151f794f4dc0d1903b36a

kernel-tools-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 3f7f01600df2f410f3083b956071e1092b18af21cdcb6cea2a87603f21611a67

kernel-tools-debuginfo-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 82fb13a5000d68fd98ee80b8d0eac6e98bf6993d07e59184a3004056f48ed641

kernel-tools-libs-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 4f6453cdb3c81249581eb3c7a992c72f125bb25500da7765e01fc25862aaa687

perf-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 10fa529302e82593d1099d56f66a8c95d2b5aa1914b4a5ab416acd35beb0b0f4

perf-debuginfo-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 2bfbc900b39e06ac55204a04e58fd94d59e599c62cb74d9ef7612c9891a633b4

python3-perf-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: d3165d6d0330bb71bb4633a951efec34ded8c28fd286b76c3857f3d4246b2564

python3-perf-debuginfo-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: c9f5142facf43ef3a1cec6fcbdc050c8bb58990006d82f363879e2471b25bfe3

Red Hat Enterprise Linux Server - TUS 8.2

SRPM

kernel-4.18.0-193.95.1.el8_2.src.rpm

SHA-256: 250c88c9bb7ebc3f381422258e2c970e2fde27b35bcec99e2eb40c4977998e4a

x86_64

bpftool-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 82dfa21613b8c4e0819939167c752eecb8be1a5ee6801477636c61106698a53b

bpftool-debuginfo-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 9e9f2fc2453cb7dfbc6705902e114c73f82c7de8b54ec1bb8ec1efe900d74e14

kernel-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: dca9fdddf498e5ab1c2c7d5e718fc20825dc115075de8651d37848dedb9dfb24

kernel-abi-whitelists-4.18.0-193.95.1.el8_2.noarch.rpm

SHA-256: eba7e22c85ba52d4e66c6639eeab42ec00c5de51bcfca5b3a889edf0d7f07c0a

kernel-core-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: f18f0f454922e1b27da9407beee7de7982f28a970f8653dfef21b69711f997f8

kernel-cross-headers-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: a425b042f430df7e992204739e241a152d354c849aabfd16dd5b3a9abde8e01d

kernel-debug-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 1c5d4e192e30a2f69f9e25e29e3b610145d885e3555200e33a7f4738300e5b78

kernel-debug-core-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 548dcca516bd87483f29f6ec763255533e33db98f9ec7a41903612db830b5f99

kernel-debug-debuginfo-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 3b151f2660395c141e83c272e2b0d27f1e101bcd06f78cbacf8a30fe0cf249c6

kernel-debug-devel-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: dbd1d751a492475e4f9cc798303bc31b60855ba9556c9c3db7f8658918b2a6e3

kernel-debug-modules-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 9a77b208c77a9a9442fa40012042026f501a758569f261530d714ab9fcd3bb0b

kernel-debug-modules-extra-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: cdf05caeae1fb438f4827b401f36becd29d924d6c6688b5e796ad4b617a1161f

kernel-debuginfo-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 417968f53f5926f29240c2030bea9886c83fec02f4f168fc962d2ced6985861a

kernel-debuginfo-common-x86_64-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 8861b7b43f0a54f7085a9f1cb121021993fd25dbe893af4508300b8420ea8ddb

kernel-devel-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 65efe597083e4abba59129e759323d4dfe7da184d99ac0ee5fe9d6dca23bc72d

kernel-doc-4.18.0-193.95.1.el8_2.noarch.rpm

SHA-256: 0a1c5d9e2b5a067c5125e92229aefa9c79c46141901feae82860959c9abf25ca

kernel-headers-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 63941a0ecb56d754b4f85f6ac1ae14119ff8ce4ca64937d110eea3e13c3b4260

kernel-modules-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 61c214139e8aded906c8eeaef6df0da1aee19e8f2cfd1566996ac45177232b4b

kernel-modules-extra-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 4c14e8d9507ca3c21c74b148aae303ebcb040ac3962151f794f4dc0d1903b36a

kernel-tools-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 3f7f01600df2f410f3083b956071e1092b18af21cdcb6cea2a87603f21611a67

kernel-tools-debuginfo-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 82fb13a5000d68fd98ee80b8d0eac6e98bf6993d07e59184a3004056f48ed641

kernel-tools-libs-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 4f6453cdb3c81249581eb3c7a992c72f125bb25500da7765e01fc25862aaa687

perf-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 10fa529302e82593d1099d56f66a8c95d2b5aa1914b4a5ab416acd35beb0b0f4

perf-debuginfo-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 2bfbc900b39e06ac55204a04e58fd94d59e599c62cb74d9ef7612c9891a633b4

python3-perf-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: d3165d6d0330bb71bb4633a951efec34ded8c28fd286b76c3857f3d4246b2564

python3-perf-debuginfo-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: c9f5142facf43ef3a1cec6fcbdc050c8bb58990006d82f363879e2471b25bfe3

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.2

SRPM

kernel-4.18.0-193.95.1.el8_2.src.rpm

SHA-256: 250c88c9bb7ebc3f381422258e2c970e2fde27b35bcec99e2eb40c4977998e4a

ppc64le

bpftool-4.18.0-193.95.1.el8_2.ppc64le.rpm

SHA-256: a990242513fa0bbcc1726fb5bba99397387ce1a3176551bc29fd9d0b5bb56d0d

bpftool-debuginfo-4.18.0-193.95.1.el8_2.ppc64le.rpm

SHA-256: 0cce90d90b7dc444b689065130e046a484b94d745dbd2a5df9a2fd49254be9ad

kernel-4.18.0-193.95.1.el8_2.ppc64le.rpm

SHA-256: 136f08677fde44921e7f6dfddefed1be4b7b61ac7969eb9a421828df1600a405

kernel-abi-whitelists-4.18.0-193.95.1.el8_2.noarch.rpm

SHA-256: eba7e22c85ba52d4e66c6639eeab42ec00c5de51bcfca5b3a889edf0d7f07c0a

kernel-core-4.18.0-193.95.1.el8_2.ppc64le.rpm

SHA-256: ce7abae3a8652b84b36d3eeee8741fde9cc575d7d370c7f5ade648c5d613bb22

kernel-cross-headers-4.18.0-193.95.1.el8_2.ppc64le.rpm

SHA-256: e2cefc830e917b27ddd9c548495c99966c14a93689007714bf09c00f004eb5d3

kernel-debug-4.18.0-193.95.1.el8_2.ppc64le.rpm

SHA-256: ed956b04e5ea7dba4d2364a2ff9fcce45929b471148c800cc7a157c81b60cb7c

kernel-debug-core-4.18.0-193.95.1.el8_2.ppc64le.rpm

SHA-256: d05eda89ace9311b24cfa5af585f390eda56467d923a0967f910169557120ab4

kernel-debug-debuginfo-4.18.0-193.95.1.el8_2.ppc64le.rpm

SHA-256: 6435dd78852c741b2d9f6bded3fd588c80bb8d7644ea8f6ef952bda673c7f279

kernel-debug-devel-4.18.0-193.95.1.el8_2.ppc64le.rpm

SHA-256: 0eccdd40051e59769c7b35132ff3761927e4aabf3180be767d1a582882d7d44c

kernel-debug-modules-4.18.0-193.95.1.el8_2.ppc64le.rpm

SHA-256: 3c2447214dfa7b366eca5902e150702562fcc852d3911ae15e064bcee9df5a7a

kernel-debug-modules-extra-4.18.0-193.95.1.el8_2.ppc64le.rpm

SHA-256: fbfa17c68fd39939c4d8153a85413f2d30ef099b910e9c20763184bf1f23c168

kernel-debuginfo-4.18.0-193.95.1.el8_2.ppc64le.rpm

SHA-256: 5d13cc09964a5a84d48c52c5a5fbe7bcaa3076ff5716d329044b83c710ca27ce

kernel-debuginfo-common-ppc64le-4.18.0-193.95.1.el8_2.ppc64le.rpm

SHA-256: 98ccde7e200346ea28abd165864777cf51cdb3acd1632711384cc8e7fc815269

kernel-devel-4.18.0-193.95.1.el8_2.ppc64le.rpm

SHA-256: 4190b29e8f3ff42952417dfeb4717bad13baf8415636cc41edc2dc95d5b2391a

kernel-doc-4.18.0-193.95.1.el8_2.noarch.rpm

SHA-256: 0a1c5d9e2b5a067c5125e92229aefa9c79c46141901feae82860959c9abf25ca

kernel-headers-4.18.0-193.95.1.el8_2.ppc64le.rpm

SHA-256: cd0104bff1688ba010fcc67e2454199558cc69a2648b1c5029d7a77dc103e217

kernel-modules-4.18.0-193.95.1.el8_2.ppc64le.rpm

SHA-256: b3482c710a02d2dbb5eda11a1734da77c5f557af67fe15212a210289975ff26d

kernel-modules-extra-4.18.0-193.95.1.el8_2.ppc64le.rpm

SHA-256: 8f568c3e48c0d9aa0c4964a97ac9364f38f1dfb130300f7ce3a71a7dd3bd64bf

kernel-tools-4.18.0-193.95.1.el8_2.ppc64le.rpm

SHA-256: 0e09eb32ff55397f870b7dcd25ccac353b0afba4a0fe0e31e660ecec5974eacf

kernel-tools-debuginfo-4.18.0-193.95.1.el8_2.ppc64le.rpm

SHA-256: 183f011aed73955e8b90e7eef25308f271353fa1d1c013cce4baebc0f4e8d411

kernel-tools-libs-4.18.0-193.95.1.el8_2.ppc64le.rpm

SHA-256: 8dcf043dcd9ca96339d8fd8a0c73d199ac026c71bdc03722fec0c4c532722077

perf-4.18.0-193.95.1.el8_2.ppc64le.rpm

SHA-256: 77671f921dfe23d45bfc93998519cce53fa878fccec507d1e1f110e021ed6169

perf-debuginfo-4.18.0-193.95.1.el8_2.ppc64le.rpm

SHA-256: 475de6a161362b924ea0ce55e56d6d4c1b5a1073be45ec1eacebe362edf76796

python3-perf-4.18.0-193.95.1.el8_2.ppc64le.rpm

SHA-256: 1455d0e43b2495932d2d1cd4fddd963c9ed09d09d671c84ac97e5e03259412f8

python3-perf-debuginfo-4.18.0-193.95.1.el8_2.ppc64le.rpm

SHA-256: c63e646c20788d2a1923b5e0f5abff200f08710c8438fe4a04bfde7e734ccfc5

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.2

SRPM

kernel-4.18.0-193.95.1.el8_2.src.rpm

SHA-256: 250c88c9bb7ebc3f381422258e2c970e2fde27b35bcec99e2eb40c4977998e4a

Download

x86_64

bpftool-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 82dfa21613b8c4e0819939167c752eecb8be1a5ee6801477636c61106698a53b

Download

bpftool-debuginfo-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 9e9f2fc2453cb7dfbc6705902e114c73f82c7de8b54ec1bb8ec1efe900d74e14

Download

kernel-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: dca9fdddf498e5ab1c2c7d5e718fc20825dc115075de8651d37848dedb9dfb24

Download

kernel-abi-whitelists-4.18.0-193.95.1.el8_2.noarch.rpm

SHA-256: eba7e22c85ba52d4e66c6639eeab42ec00c5de51bcfca5b3a889edf0d7f07c0a

Download

kernel-core-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: f18f0f454922e1b27da9407beee7de7982f28a970f8653dfef21b69711f997f8

Download

kernel-cross-headers-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: a425b042f430df7e992204739e241a152d354c849aabfd16dd5b3a9abde8e01d

Download

kernel-debug-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 1c5d4e192e30a2f69f9e25e29e3b610145d885e3555200e33a7f4738300e5b78

Download

kernel-debug-core-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 548dcca516bd87483f29f6ec763255533e33db98f9ec7a41903612db830b5f99

Download

kernel-debug-debuginfo-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 3b151f2660395c141e83c272e2b0d27f1e101bcd06f78cbacf8a30fe0cf249c6

Download

kernel-debug-devel-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: dbd1d751a492475e4f9cc798303bc31b60855ba9556c9c3db7f8658918b2a6e3

Download

kernel-debug-modules-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 9a77b208c77a9a9442fa40012042026f501a758569f261530d714ab9fcd3bb0b

Download

kernel-debug-modules-extra-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: cdf05caeae1fb438f4827b401f36becd29d924d6c6688b5e796ad4b617a1161f

Download

kernel-debuginfo-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 417968f53f5926f29240c2030bea9886c83fec02f4f168fc962d2ced6985861a

Download

kernel-debuginfo-common-x86_64-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 8861b7b43f0a54f7085a9f1cb121021993fd25dbe893af4508300b8420ea8ddb

Download

kernel-devel-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 65efe597083e4abba59129e759323d4dfe7da184d99ac0ee5fe9d6dca23bc72d

Download

kernel-doc-4.18.0-193.95.1.el8_2.noarch.rpm

SHA-256: 0a1c5d9e2b5a067c5125e92229aefa9c79c46141901feae82860959c9abf25ca

Download

kernel-headers-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 63941a0ecb56d754b4f85f6ac1ae14119ff8ce4ca64937d110eea3e13c3b4260

Download

kernel-modules-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 61c214139e8aded906c8eeaef6df0da1aee19e8f2cfd1566996ac45177232b4b

Download

kernel-modules-extra-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 4c14e8d9507ca3c21c74b148aae303ebcb040ac3962151f794f4dc0d1903b36a

Download

kernel-tools-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 3f7f01600df2f410f3083b956071e1092b18af21cdcb6cea2a87603f21611a67

Download

kernel-tools-debuginfo-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 82fb13a5000d68fd98ee80b8d0eac6e98bf6993d07e59184a3004056f48ed641

Download

kernel-tools-libs-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 4f6453cdb3c81249581eb3c7a992c72f125bb25500da7765e01fc25862aaa687

Download

perf-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 10fa529302e82593d1099d56f66a8c95d2b5aa1914b4a5ab416acd35beb0b0f4

Download

perf-debuginfo-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: 2bfbc900b39e06ac55204a04e58fd94d59e599c62cb74d9ef7612c9891a633b4

Download

python3-perf-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: d3165d6d0330bb71bb4633a951efec34ded8c28fd286b76c3857f3d4246b2564

Download

python3-perf-debuginfo-4.18.0-193.95.1.el8_2.x86_64.rpm

SHA-256: c9f5142facf43ef3a1cec6fcbdc050c8bb58990006d82f363879e2471b25bfe3

Download

The Red Hat security contact is [email protected]. More contact details at https://access.redhat.com/security/team/contact/.

Related news

CVE-2022-46756: DSA-2022-335: Dell VxRail Security Update for Multiple Third-Party Component Vulnerabilities

Dell VxRail, versions prior to 7.0.410, contain a Container Escape Vulnerability. A local high-privileged attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the container's underlying OS. Exploitation may lead to a system take over by an attacker.

Red Hat Security Advisory 2023-0059-01

Red Hat Security Advisory 2023-0059-01 - This is a kernel live patch module which is automatically loaded by the RPM post-install script to modify the code of a running kernel. Issues addressed include an out of bounds write vulnerability.

RHSA-2022:9111: Red Hat Security Advisory: OpenShift Container Platform 4.9.54 bug fix and security update

Red Hat OpenShift Container Platform release 4.9.54 is now available with updates to packages and images that fix several bugs and add enhancements. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2022-26945: go-getter: command injection vulnerability * CVE-2022-30321: go-getter: unsafe download (issue 1 of 3) * CVE-2022-30322: go-getter: unsafe download (issue 2 of 3) * CVE-2022-30323: go-getter: unsafe download (issue 3 of 3)

Red Hat Security Advisory 2022-9082-01

Red Hat Security Advisory 2022-9082-01 - This is a kernel live patch module which is automatically loaded by the RPM post-install script to modify the code of a running kernel. Issues addressed include buffer overflow, out of bounds write, and privilege escalation vulnerabilities.

RHSA-2022:8893: Red Hat Security Advisory: OpenShift Container Platform 4.11.20 security update

Red Hat OpenShift Container Platform release 4.11.20 is now available with updates to packages and images that fix several bugs and add enhancements. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2022-27191: golang: crash in a golang.org/x/crypto/ssh server

Red Hat Security Advisory 2022-8989-01

Red Hat Security Advisory 2022-8989-01 - The kpatch management tool provides a kernel patching infrastructure which allows you to patch a running kernel without rebooting or restarting any processes. Issues addressed include an out of bounds write vulnerability.

Red Hat Security Advisory 2022-8974-01

Red Hat Security Advisory 2022-8974-01 - The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements. Issues addressed include buffer overflow, code execution, out of bounds write, and privilege escalation vulnerabilities.

Red Hat Security Advisory 2022-8940-01

Red Hat Security Advisory 2022-8940-01 - The kernel packages contain the Linux kernel, the core of any Linux operating system. Issues addressed include an out of bounds write vulnerability.

RHSA-2022:8974: Red Hat Security Advisory: kernel-rt security and bug fix update

An update for kernel-rt is now available for Red Hat Enterprise Linux 9.0 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2022-1158: kernel: KVM: cmpxchg_gpte can write to pfns outside the userspace region * CVE-2022-2639: kernel: openvswitch: integer underflow leads to out-of-bounds write in reserve_sfa_size() * CVE-2022-2959: kernel: watch queue race condition can lead to privilege escalation * CVE-2022-21123: hw: cpu: incomplete clean-up of multi...

Red Hat Security Advisory 2022-8809-01

Red Hat Security Advisory 2022-8809-01 - The kernel packages contain the Linux kernel, the core of any Linux operating system. Issues addressed include an out of bounds write vulnerability.

Red Hat Security Advisory 2022-8809-01

Red Hat Security Advisory 2022-8809-01 - The kernel packages contain the Linux kernel, the core of any Linux operating system. Issues addressed include an out of bounds write vulnerability.

RHSA-2022:8831: Red Hat Security Advisory: kpatch-patch security update

An update for kpatch-patch is now available for Red Hat Enterprise Linux 8.6 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2022-1158: kernel: KVM: cmpxchg_gpte can write to pfns outside the userspace region * CVE-2022-2639: kernel: openvswitch: integer underflow leads to out-of-bounds write in reserve_sfa_size()

RHSA-2022:8831: Red Hat Security Advisory: kpatch-patch security update

An update for kpatch-patch is now available for Red Hat Enterprise Linux 8.6 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2022-1158: kernel: KVM: cmpxchg_gpte can write to pfns outside the userspace region * CVE-2022-2639: kernel: openvswitch: integer underflow leads to out-of-bounds write in reserve_sfa_size()

RHSA-2022:8809: Red Hat Security Advisory: kernel security and bug fix update

An update for kernel is now available for Red Hat Enterprise Linux 8.6 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2022-1158: kernel: KVM: cmpxchg_gpte can write to pfns outside the userspace region * CVE-2022-2639: kernel: openvswitch: integer underflow leads to out-of-bounds write in reserve_sfa_size()

RHSA-2022:8809: Red Hat Security Advisory: kernel security and bug fix update

An update for kernel is now available for Red Hat Enterprise Linux 8.6 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2022-1158: kernel: KVM: cmpxchg_gpte can write to pfns outside the userspace region * CVE-2022-2639: kernel: openvswitch: integer underflow leads to out-of-bounds write in reserve_sfa_size()

Red Hat Security Advisory 2022-8765-01

Red Hat Security Advisory 2022-8765-01 - The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements. Issues addressed include an out of bounds write vulnerability.

Red Hat Security Advisory 2022-8768-01

Red Hat Security Advisory 2022-8768-01 - This is a kernel live patch module which is automatically loaded by the RPM post-install script to modify the code of a running kernel. Issues addressed include an out of bounds write vulnerability.

RHSA-2022:8767: Red Hat Security Advisory: kernel security and bug fix update

An update for kernel is now available for Red Hat Enterprise Linux 8.4 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2022-2639: kernel: openvswitch: integer underflow leads to out-of-bounds write in reserve_sfa_size()

Red Hat Security Advisory 2022-8673-01

Red Hat Security Advisory 2022-8673-01 - The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements.

Red Hat Security Advisory 2022-8686-01

Red Hat Security Advisory 2022-8686-01 - This is a kernel live patch module which is automatically loaded by the RPM post-install script to modify the code of a running kernel.

Red Hat Security Advisory 2022-8685-01

Red Hat Security Advisory 2022-8685-01 - The kernel packages contain the Linux kernel, the core of any Linux operating system. Issues addressed include a memory leak vulnerability.

RHSA-2022:8685: Red Hat Security Advisory: kernel security and bug fix update

An update for kernel is now available for Red Hat Enterprise Linux 8.4 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2022-1158: kernel: KVM: cmpxchg_gpte can write to pfns outside the userspace region

RHSA-2022:8673: Red Hat Security Advisory: kernel-rt security and bug fix update

An update for kernel-rt is now available for Red Hat Enterprise Linux 8.4 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2022-1158: kernel: KVM: cmpxchg_gpte can write to pfns outside the userspace region

RHSA-2022:8686: Red Hat Security Advisory: kpatch-patch security update

An update for kpatch-patch is now available for Red Hat Enterprise Linux 8.4 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2022-1158: kernel: KVM: cmpxchg_gpte can write to pfns outside the userspace region

RHSA-2022:8267: Red Hat Security Advisory: kernel security, bug fix, and enhancement update

An update for kernel is now available for Red Hat Enterprise Linux 9. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2020-36516: kernel: off-path attacker may inject data or terminate victim's TCP session * CVE-2021-3640: kernel: use-after-free vulnerability in function sco_sock_sendmsg() * CVE-2022-0168: kernel: smb2_ioctl_query_info NULL pointer dereference * CVE-2022-0617: kernel: NULL pointer dereference in udf_expand_file_adinicbdue() during writeback * CVE-2022-0854: ...

RHSA-2022:7683: Red Hat Security Advisory: kernel security, bug fix, and enhancement update

An update for kernel is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2020-36516: kernel: off-path attacker may inject data or terminate victim's TCP session * CVE-2020-36558: kernel: race condition in VT_RESIZEX ioctl when vc_cons[i].d is already NULL leading to NULL pointer dereference * CVE-2021-3640: kernel: use-after-free vulnerability in function sco_sock_sendmsg() * CVE-2021-30002: kernel: memory leak for large arguments...

RHSA-2022:7444: Red Hat Security Advisory: kernel-rt security and bug fix update

An update for kernel-rt is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2020-36516: kernel: off-path attacker may inject data or terminate victim's TCP session * CVE-2020-36558: kernel: race condition in VT_RESIZEX ioctl when vc_cons[i].d is already NULL leading to NULL pointer dereference * CVE-2021-3640: kernel: use-after-free vulnerability in function sco_sock_sendmsg() * CVE-2021-30002: kernel: memory leak for large argume...

CVE-2022-2639: Invalid Bug ID

An integer coercion error was found in the openvswitch kernel module. Given a sufficiently large number of actions, while copying and reserving memory for a new action of a new flow, the reserve_sfa_size() function does not return -EMSGSIZE as expected, potentially leading to an out-of-bounds write access. This flaw allows a local user to crash or potentially escalate their privileges on the system.

CVE-2022-1158: Invalid Bug ID

A flaw was found in KVM. When updating a guest's page table entry, vm_pgoff was improperly used as the offset to get the page's pfn. As vaddr and vm_pgoff are controllable by user-mode processes, this flaw allows unprivileged local users on the host to write outside the userspace region and potentially corrupt the kernel, resulting in a denial of service condition.