RHSA-2023:0951HighCVSS 7.8
Red Hat Security Advisory: kernel security and bug fix update
🔗 CVE IDs covered (6)
📋 Description
CVE-2022-2873 — kernel: an out-of-bounds vulnerability in i2c-ismt driver CVE-2022-3564 — kernel: use-after-free caused by l2cap_reassemble_sdu() in net/bluetooth/l2cap_core.c CVE-2022-4378 — kernel: stack overflow in do_proc_dointvec and proc_skip_spaces CVE-2022-4379 — kernel: use-after-free in __nfs42_ssc_open() in fs/nfs/nfs4file.c leading to remote Denial of Service attack CVE-2022-49944 — kernel: Revert "usb: typec: ucsi: add a common function ucsi_unregister_connectors()" CVE-2023-0179 — kernel: Netfilter integer overflow vulnerability in nft_payload_copy_vlan
🔗 References (8)
- selfhttps://access.redhat.com/errata/RHSA-2023:0951
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2119048
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2150999
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2152548
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2152807
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2161713
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2023/rhsa-2023_0951.json