RHSA-2023:0334HighCVSS 7.8
Red Hat Security Advisory: kernel security and bug fix update
🔗 CVE IDs covered (8)
📋 Description
CVE-2022-2959 — kernel: watch queue race condition can lead to privilege escalation CVE-2022-2964 — kernel: memory corruption in AX88179_178A based USB ethernet device. CVE-2022-3077 — kernel: i2c: unbounded length leads to buffer overflow in ismt_access() CVE-2022-4139 — kernel: i915: Incorrect GPU TLB flush can lead to random memory access CVE-2022-30594 — kernel: Unprivileged users may use PTRACE_SEIZE to set PTRACE_O_SUSPEND_SECCOMP option CVE-2022-43945 — kernel: nfsd buffer overflow by RPC message over TCP with garbage data CVE-2022-50053 — kernel: iavf: Fix reset error handling CVE-2022-50054 — kernel: iavf: Fix NULL pointer dereference in iavf_get_link_ksettings
🔗 References (9)
- selfhttps://access.redhat.com/errata/RHSA-2023:0334
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2067482
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2085300
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2103681
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2123309
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2141752
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2147572
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2023/rhsa-2023_0334.json