Headline
RHSA-2022:6582: Red Hat Security Advisory: kernel-rt security and bug fix update
An update for kernel-rt is now available for Red Hat Enterprise Linux 9. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.
Related CVEs:
- CVE-2022-2078: kernel: Vulnerability of buffer overflow in nft_set_desc_concat_parse()
- CVE-2022-34918: kernel: heap overflow in nft_set_elem_init()
Skip to navigation Skip to main content
Utilities
- Subscriptions
- Downloads
- Containers
- Support Cases
Infrastructure and Management
- Red Hat Enterprise Linux
- Red Hat Virtualization
- Red Hat Identity Management
- Red Hat Directory Server
- Red Hat Certificate System
- Red Hat Satellite
- Red Hat Subscription Management
- Red Hat Update Infrastructure
- Red Hat Insights
- Red Hat Ansible Automation Platform
Cloud Computing
- Red Hat OpenShift
- Red Hat CloudForms
- Red Hat OpenStack Platform
- Red Hat OpenShift Container Platform
- Red Hat OpenShift Data Science
- Red Hat OpenShift Online
- Red Hat OpenShift Dedicated
- Red Hat Advanced Cluster Security for Kubernetes
- Red Hat Advanced Cluster Management for Kubernetes
- Red Hat Quay
- Red Hat CodeReady Workspaces
- Red Hat OpenShift Service on AWS
Storage
- Red Hat Gluster Storage
- Red Hat Hyperconverged Infrastructure
- Red Hat Ceph Storage
- Red Hat OpenShift Data Foundation
Runtimes
- Red Hat Runtimes
- Red Hat JBoss Enterprise Application Platform
- Red Hat Data Grid
- Red Hat JBoss Web Server
- Red Hat Single Sign On
- Red Hat support for Spring Boot
- Red Hat build of Node.js
- Red Hat build of Thorntail
- Red Hat build of Eclipse Vert.x
- Red Hat build of OpenJDK
- Red Hat build of Quarkus
Integration and Automation
- Red Hat Process Automation
- Red Hat Process Automation Manager
- Red Hat Decision Manager
All Products
Issued:
2022-09-20
Updated:
2022-09-20
RHSA-2022:6582 - Security Advisory
- Overview
- Updated Packages
Synopsis
Important: kernel-rt security and bug fix update
Type/Severity
Security Advisory: Important
Red Hat Insights patch analysis
Identify and remediate systems affected by this advisory.
View affected systems
Topic
An update for kernel-rt is now available for Red Hat Enterprise Linux 9.
Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Description
The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements.
Security Fix(es):
- kernel: heap overflow in nft_set_elem_init() (CVE-2022-34918)
- kernel: vulnerability of buffer overflow in nft_set_desc_concat_parse() (CVE-2022-2078)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Bug Fix(es):
- kernel-rt: update RT source tree to the latest RHEL-9.0.z3 Batch (BZ#2119577)
Solution
For details on how to apply this update, which includes the changes described in this advisory, refer to:
https://access.redhat.com/articles/11258
The system must be rebooted for this update to take effect.
Affected Products
- Red Hat Enterprise Linux for Real Time 9 x86_64
- Red Hat Enterprise Linux for Real Time for NFV 9 x86_64
- Red Hat Enterprise Linux for Real Time for x86_64 - 4 years of updates 9.0 x86_64
- Red Hat Enterprise Linux for Real Time for NFV for x86_64 - 4 years of updates 9.0 x86_64
Fixes
- BZ - 2096178 - CVE-2022-2078 kernel: Vulnerability of buffer overflow in nft_set_desc_concat_parse()
- BZ - 2104423 - CVE-2022-34918 kernel: heap overflow in nft_set_elem_init()
Red Hat Enterprise Linux for Real Time 9
SRPM
kernel-rt-5.14.0-70.26.1.rt21.98.el9_0.src.rpm
SHA-256: a7bb3a61b94b191be864d4c9c20cdaab872c6aaca1044a4d1c3f684762a2ed09
x86_64
kernel-rt-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: a26f12f02e802d6fc65145a66cbbbbe8a0d0a02bbf193b05305c8d155e43294c
kernel-rt-core-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: f21a99b6b5ff366da2278ab1076707e3de1c6c1e72bf801b66655ee3b6d9c111
kernel-rt-debug-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 965323e15d9dfcc2c4e7a3418f0e8bf39b7ca255dc4133c31398220e915cbbb2
kernel-rt-debug-core-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 2aae9e2dfac90ec91edc9e54a33d6686d1f85a60b40ffd4d56136ab83fcebb25
kernel-rt-debug-debuginfo-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 08cce82e47c64578cbac65dd2815f200f0dd8e3e465871e99e5ad37f1b14a20a
kernel-rt-debug-devel-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 7930055b0867b3156ccfaf1739224c0a4863af7a26e27bcf09462a1a9bb3474d
kernel-rt-debug-modules-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 0e2645f7ddb9a6ce4e4256c271d6092c8a2b620013eb4676748a19045b8ff4da
kernel-rt-debug-modules-extra-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 627fd253594f9cce2b54e08702f2c679244212823ab592da7c391e5741d00b17
kernel-rt-debuginfo-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: c24f4a222704e61a3c33fd475b71945fc50d9e2eed9ef92cef4468df1876337b
kernel-rt-debuginfo-common-x86_64-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 092e43e5e0e1179097a5e3caa1d76a377a6b1e5e5de9f52e2ecddc08e8801266
kernel-rt-devel-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: ba772af296a707b984cae225dea9b851fef153caed01c5d0027169f7ce120a9f
kernel-rt-modules-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: e5227ea7a49bd525c4a9bf50ca031a18b4a1a575ca729cd32969878d45a393f8
kernel-rt-modules-extra-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 0a445d6f820cf0fd40e08d851bc9b62eceaf5e77f82c5ff7f6c812e567ad079a
Red Hat Enterprise Linux for Real Time for NFV 9
SRPM
kernel-rt-5.14.0-70.26.1.rt21.98.el9_0.src.rpm
SHA-256: a7bb3a61b94b191be864d4c9c20cdaab872c6aaca1044a4d1c3f684762a2ed09
x86_64
kernel-rt-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: a26f12f02e802d6fc65145a66cbbbbe8a0d0a02bbf193b05305c8d155e43294c
kernel-rt-core-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: f21a99b6b5ff366da2278ab1076707e3de1c6c1e72bf801b66655ee3b6d9c111
kernel-rt-debug-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 965323e15d9dfcc2c4e7a3418f0e8bf39b7ca255dc4133c31398220e915cbbb2
kernel-rt-debug-core-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 2aae9e2dfac90ec91edc9e54a33d6686d1f85a60b40ffd4d56136ab83fcebb25
kernel-rt-debug-debuginfo-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 08cce82e47c64578cbac65dd2815f200f0dd8e3e465871e99e5ad37f1b14a20a
kernel-rt-debug-devel-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 7930055b0867b3156ccfaf1739224c0a4863af7a26e27bcf09462a1a9bb3474d
kernel-rt-debug-kvm-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 85b072fc6c01169dd14f6f4228bb365ec04de471c2e80c5e605b8e7336b988ed
kernel-rt-debug-modules-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 0e2645f7ddb9a6ce4e4256c271d6092c8a2b620013eb4676748a19045b8ff4da
kernel-rt-debug-modules-extra-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 627fd253594f9cce2b54e08702f2c679244212823ab592da7c391e5741d00b17
kernel-rt-debuginfo-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: c24f4a222704e61a3c33fd475b71945fc50d9e2eed9ef92cef4468df1876337b
kernel-rt-debuginfo-common-x86_64-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 092e43e5e0e1179097a5e3caa1d76a377a6b1e5e5de9f52e2ecddc08e8801266
kernel-rt-devel-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: ba772af296a707b984cae225dea9b851fef153caed01c5d0027169f7ce120a9f
kernel-rt-kvm-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 79286a6d44ff183ff8961d16444d8c47f5dfa0aaacea6c5a472827d58b24ce81
kernel-rt-modules-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: e5227ea7a49bd525c4a9bf50ca031a18b4a1a575ca729cd32969878d45a393f8
kernel-rt-modules-extra-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 0a445d6f820cf0fd40e08d851bc9b62eceaf5e77f82c5ff7f6c812e567ad079a
Red Hat Enterprise Linux for Real Time for x86_64 - 4 years of updates 9.0
SRPM
kernel-rt-5.14.0-70.26.1.rt21.98.el9_0.src.rpm
SHA-256: a7bb3a61b94b191be864d4c9c20cdaab872c6aaca1044a4d1c3f684762a2ed09
x86_64
kernel-rt-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: a26f12f02e802d6fc65145a66cbbbbe8a0d0a02bbf193b05305c8d155e43294c
kernel-rt-core-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: f21a99b6b5ff366da2278ab1076707e3de1c6c1e72bf801b66655ee3b6d9c111
kernel-rt-debug-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 965323e15d9dfcc2c4e7a3418f0e8bf39b7ca255dc4133c31398220e915cbbb2
kernel-rt-debug-core-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 2aae9e2dfac90ec91edc9e54a33d6686d1f85a60b40ffd4d56136ab83fcebb25
kernel-rt-debug-debuginfo-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 08cce82e47c64578cbac65dd2815f200f0dd8e3e465871e99e5ad37f1b14a20a
kernel-rt-debug-devel-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 7930055b0867b3156ccfaf1739224c0a4863af7a26e27bcf09462a1a9bb3474d
kernel-rt-debug-modules-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 0e2645f7ddb9a6ce4e4256c271d6092c8a2b620013eb4676748a19045b8ff4da
kernel-rt-debug-modules-extra-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 627fd253594f9cce2b54e08702f2c679244212823ab592da7c391e5741d00b17
kernel-rt-debuginfo-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: c24f4a222704e61a3c33fd475b71945fc50d9e2eed9ef92cef4468df1876337b
kernel-rt-debuginfo-common-x86_64-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 092e43e5e0e1179097a5e3caa1d76a377a6b1e5e5de9f52e2ecddc08e8801266
kernel-rt-devel-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: ba772af296a707b984cae225dea9b851fef153caed01c5d0027169f7ce120a9f
kernel-rt-modules-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: e5227ea7a49bd525c4a9bf50ca031a18b4a1a575ca729cd32969878d45a393f8
kernel-rt-modules-extra-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 0a445d6f820cf0fd40e08d851bc9b62eceaf5e77f82c5ff7f6c812e567ad079a
Red Hat Enterprise Linux for Real Time for NFV for x86_64 - 4 years of updates 9.0
SRPM
kernel-rt-5.14.0-70.26.1.rt21.98.el9_0.src.rpm
SHA-256: a7bb3a61b94b191be864d4c9c20cdaab872c6aaca1044a4d1c3f684762a2ed09
x86_64
kernel-rt-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: a26f12f02e802d6fc65145a66cbbbbe8a0d0a02bbf193b05305c8d155e43294c
kernel-rt-core-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: f21a99b6b5ff366da2278ab1076707e3de1c6c1e72bf801b66655ee3b6d9c111
kernel-rt-debug-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 965323e15d9dfcc2c4e7a3418f0e8bf39b7ca255dc4133c31398220e915cbbb2
kernel-rt-debug-core-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 2aae9e2dfac90ec91edc9e54a33d6686d1f85a60b40ffd4d56136ab83fcebb25
kernel-rt-debug-debuginfo-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 08cce82e47c64578cbac65dd2815f200f0dd8e3e465871e99e5ad37f1b14a20a
kernel-rt-debug-devel-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 7930055b0867b3156ccfaf1739224c0a4863af7a26e27bcf09462a1a9bb3474d
kernel-rt-debug-kvm-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 85b072fc6c01169dd14f6f4228bb365ec04de471c2e80c5e605b8e7336b988ed
kernel-rt-debug-modules-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 0e2645f7ddb9a6ce4e4256c271d6092c8a2b620013eb4676748a19045b8ff4da
kernel-rt-debug-modules-extra-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 627fd253594f9cce2b54e08702f2c679244212823ab592da7c391e5741d00b17
kernel-rt-debuginfo-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: c24f4a222704e61a3c33fd475b71945fc50d9e2eed9ef92cef4468df1876337b
kernel-rt-debuginfo-common-x86_64-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 092e43e5e0e1179097a5e3caa1d76a377a6b1e5e5de9f52e2ecddc08e8801266
kernel-rt-devel-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: ba772af296a707b984cae225dea9b851fef153caed01c5d0027169f7ce120a9f
kernel-rt-kvm-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 79286a6d44ff183ff8961d16444d8c47f5dfa0aaacea6c5a472827d58b24ce81
kernel-rt-modules-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: e5227ea7a49bd525c4a9bf50ca031a18b4a1a575ca729cd32969878d45a393f8
kernel-rt-modules-extra-5.14.0-70.26.1.rt21.98.el9_0.x86_64.rpm
SHA-256: 0a445d6f820cf0fd40e08d851bc9b62eceaf5e77f82c5ff7f6c812e567ad079a
The Red Hat security contact is [email protected]. More contact details at https://access.redhat.com/security/team/contact/.
Related news
Red Hat Security Advisory 2024-0724-03 - An update for kernel is now available for Red Hat Enterprise Linux 8.6 Extended Update Support. Issues addressed include buffer overflow, bypass, denial of service, double free, memory leak, null pointer, privilege escalation, and use-after-free vulnerabilities.
By Habiba Rashid At the time of writing, all reported fake repositories have been taken down and the malicious PoC has been removed from GitHub. This is a post from HackRead.com Read the original post: Fake GitHub Repos Caught Dropping Malware as PoCs AGAIN!
Red Hat Advanced Cluster Management for Kubernetes 2.6.3 General Availability release images, which provide security updates, fix bugs, and update container images. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2022-3517: nodejs-minimatch: ReDoS via the braceExpand function * CVE-2022-41912: crewjam/saml: Authentication bypass when processing SAML responses containing multiple Assertion elements
Red Hat Security Advisory 2022-8889-01 - This is an Openshift Logging bug fix release. Issues addressed include a denial of service vulnerability.
Openshift Logging Bug Fix Release (5.3.14) Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2020-36518: jackson-databind: denial of service via a large depth of nested objects * CVE-2022-42003: jackson-databind: deep wrapper array nesting wrt UNWRAP_SINGLE_VALUE_ARRAYS * CVE-2022-42004: jackson-databind: use of deeply nested arrays
Red Hat Security Advisory 2022-8781-01 - Logging Subsystem for Red Hat OpenShift has a security update. Issues addressed include a denial of service vulnerability.
Logging Subsystem 5.5.5 - Red Hat OpenShift Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2020-36518: jackson-databind: denial of service via a large depth of nested objects * CVE-2022-2879: golang: archive/tar: unbounded memory consumption when reading headers * CVE-2022-2880: golang: net/http/httputil: ReverseProxy should not forward unparseable query parameters * CVE-2022-27664: golang: net/http: handle server errors after sending GOAWAY * CVE-2022-32189: golang: math/b...
An update for kernel is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2020-36516: kernel: off-path attacker may inject data or terminate victim's TCP session * CVE-2020-36558: kernel: race condition in VT_RESIZEX ioctl when vc_cons[i].d is already NULL leading to NULL pointer dereference * CVE-2021-3640: kernel: use-after-free vulnerability in function sco_sock_sendmsg() * CVE-2021-30002: kernel: memory leak for large arguments...
An update for kernel-rt is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2020-36516: kernel: off-path attacker may inject data or terminate victim's TCP session * CVE-2020-36558: kernel: race condition in VT_RESIZEX ioctl when vc_cons[i].d is already NULL leading to NULL pointer dereference * CVE-2021-3640: kernel: use-after-free vulnerability in function sco_sock_sendmsg() * CVE-2021-30002: kernel: memory leak for large argume...
An issue was discovered in the Linux kernel through version 5.18.9. A type confusion bug in nft_set_elem_init (leading to a buffer overflow) could be used by a local attacker to escalate privileges. The attacker can obtain root access, but must start with an unprivileged user namespace to obtain CAP_NET_ADMIN access. The issue exists in nft_setelem_parse_data in net/netfilter/nf_tables_api.c.
Red Hat Security Advisory 2022-6592-01 - This is a kernel live patch module which is automatically loaded by the RPM post-install script to modify the code of a running kernel. Issues addressed include a heap overflow vulnerability.
Red Hat Security Advisory 2022-6582-01 - The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements. Issues addressed include buffer overflow and heap overflow vulnerabilities.
Red Hat Security Advisory 2022-6610-01 - The kernel packages contain the Linux kernel, the core of any Linux operating system. Issues addressed include buffer overflow and heap overflow vulnerabilities.
An update for kernel is now available for Red Hat Enterprise Linux 9. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2022-2078: kernel: Vulnerability of buffer overflow in nft_set_desc_concat_parse() * CVE-2022-34918: kernel: heap overflow in nft_set_elem_init()
An update for kernel is now available for Red Hat Enterprise Linux 9. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2022-2078: kernel: Vulnerability of buffer overflow in nft_set_desc_concat_parse() * CVE-2022-34918: kernel: heap overflow in nft_set_elem_init()
An update for kpatch-patch is now available for Red Hat Enterprise Linux 9. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2022-34918: kernel: heap overflow in nft_set_elem_init()
OpenHarmony-v3.1.2 and prior versions have a heap overflow vulnerability. Local attackers can trigger a heap overflow and get network sensitive information.
Ubuntu Security Notice 5582-1 - Arthur Mongodin discovered that the netfilter subsystem in the Linux kernel did not properly perform data validation. A local attacker could use this to escalate privileges in certain situations. Zhenpeng Lin discovered that the network packet scheduler implementation in the Linux kernel did not properly remove all references to a route filter before freeing it in some situations. A local attacker could use this to cause a denial of service or execute arbitrary code.
Ubuntu Security Notice 5566-1 - Zhenpeng Lin discovered that the network packet scheduler implementation in the Linux kernel did not properly remove all references to a route filter before freeing it in some situations. A local attacker could use this to cause a denial of service or execute arbitrary code. It was discovered that the netfilter subsystem of the Linux kernel did not prevent one nft object from referencing an nft set in another nft table, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service or execute arbitrary code.
Ubuntu Security Notice 5564-1 - Zhenpeng Lin discovered that the network packet scheduler implementation in the Linux kernel did not properly remove all references to a route filter before freeing it in some situations. A local attacker could use this to cause a denial of service or execute arbitrary code. It was discovered that the netfilter subsystem of the Linux kernel did not prevent one nft object from referencing an nft set in another nft table, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service or execute arbitrary code.
Ubuntu Security Notice 5562-1 - Zhenpeng Lin discovered that the network packet scheduler implementation in the Linux kernel did not properly remove all references to a route filter before freeing it in some situations. A local attacker could use this to cause a denial of service or execute arbitrary code. It was discovered that the netfilter subsystem of the Linux kernel did not prevent one nft object from referencing an nft set in another nft table, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service or execute arbitrary code.
Ubuntu Security Notice 5560-2 - Zhenpeng Lin discovered that the network packet scheduler implementation in the Linux kernel did not properly remove all references to a route filter before freeing it in some situations. A local attacker could use this to cause a denial of service or execute arbitrary code. It was discovered that the netfilter subsystem of the Linux kernel did not prevent one nft object from referencing an nft set in another nft table, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service or execute arbitrary code.
Ubuntu Security Notice 5560-1 - Zhenpeng Lin discovered that the network packet scheduler implementation in the Linux kernel did not properly remove all references to a route filter before freeing it in some situations. A local attacker could use this to cause a denial of service or execute arbitrary code. It was discovered that the netfilter subsystem of the Linux kernel did not prevent one nft object from referencing an nft set in another nft table, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service or execute arbitrary code.
Ubuntu Security Notice 5544-1 - It was discovered that the Atheros ath9k wireless device driver in the Linux kernel did not properly handle some error conditions, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service or possibly execute arbitrary code. Felix Fu discovered that the Sun RPC implementation in the Linux kernel did not properly handle socket states, leading to a use-after-free vulnerability. A remote attacker could possibly use this to cause a denial of service or execute arbitrary code.
Ubuntu Security Notice 5529-1 - It was discovered that the Atheros ath9k wireless device driver in the Linux kernel did not properly handle some error conditions, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service or possibly execute arbitrary code. Yongkang Jia discovered that the KVM hypervisor implementation in the Linux kernel did not properly handle guest TLB mapping invalidation requests in some situations. An attacker in a guest VM could use this to cause a denial of service in the host OS.
A vulnerability was found in the Linux kernel's nft_set_desc_concat_parse() function .This flaw allows an attacker to trigger a buffer overflow via nft_set_desc_concat_parse() , causing a denial of service and possibly to run code.