RHSA-2023:1841HighCVSS 7.8
Red Hat Security Advisory: kernel security and bug fix update
🔗 CVE IDs covered (1)
📋 Description
CVE-2023-0461 — kernel: net/ulp: use-after-free in listening ULP sockets
🎯 Affected products132
- Red Hat CodeReady Linux Builder EUS (v.8.6)
- Red Hat Enterprise Linux BaseOS EUS (v.8.6)
- Red Hat Virtualization 4 Hypervisor for RHEL 8
- bpftool-0:4.18.0-372.52.1.el8_6.aarch64 as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.6)
- bpftool-0:4.18.0-372.52.1.el8_6.ppc64le as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.6)
- bpftool-0:4.18.0-372.52.1.el8_6.s390x as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.6)
- bpftool-0:4.18.0-372.52.1.el8_6.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.6)
- bpftool-debuginfo-0:4.18.0-372.52.1.el8_6.aarch64 as a component of Red Hat CodeReady Linux Builder EUS (v.8.6)
- bpftool-debuginfo-0:4.18.0-372.52.1.el8_6.aarch64 as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.6)
- bpftool-debuginfo-0:4.18.0-372.52.1.el8_6.ppc64le as a component of Red Hat CodeReady Linux Builder EUS (v.8.6)
- bpftool-debuginfo-0:4.18.0-372.52.1.el8_6.ppc64le as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.6)
- bpftool-debuginfo-0:4.18.0-372.52.1.el8_6.s390x as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.6)
- bpftool-debuginfo-0:4.18.0-372.52.1.el8_6.x86_64 as a component of Red Hat CodeReady Linux Builder EUS (v.8.6)
- bpftool-debuginfo-0:4.18.0-372.52.1.el8_6.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.6)
- bpftool-debuginfo-0:4.18.0-372.52.1.el8_6.x86_64 as a component of Red Hat Virtualization 4 Hypervisor for RHEL 8
- kernel-0:4.18.0-372.52.1.el8_6.aarch64 as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.6)
- kernel-0:4.18.0-372.52.1.el8_6.ppc64le as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.6)
- kernel-0:4.18.0-372.52.1.el8_6.s390x as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.6)
- kernel-0:4.18.0-372.52.1.el8_6.src as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.6)
- kernel-0:4.18.0-372.52.1.el8_6.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.6)
- kernel-abi-stablelists-0:4.18.0-372.52.1.el8_6.noarch as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.6)
- kernel-core-0:4.18.0-372.52.1.el8_6.aarch64 as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.6)
- kernel-core-0:4.18.0-372.52.1.el8_6.ppc64le as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.6)
- kernel-core-0:4.18.0-372.52.1.el8_6.s390x as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.6)
- kernel-core-0:4.18.0-372.52.1.el8_6.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.6)
- kernel-debug-0:4.18.0-372.52.1.el8_6.aarch64 as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.6)
- kernel-debug-0:4.18.0-372.52.1.el8_6.ppc64le as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.6)
- kernel-debug-0:4.18.0-372.52.1.el8_6.s390x as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.6)
- kernel-debug-0:4.18.0-372.52.1.el8_6.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.6)
- kernel-debug-core-0:4.18.0-372.52.1.el8_6.aarch64 as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.6)
- +102 more not shown
✅ Remediation
For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 The system must be rebooted for this update to take effect. Workaround: To mitigate this issue, prevent module tls from being loaded. Please see https://access.redhat.com/solutions/41278 for how to blacklist a kernel module to prevent it from loading automatically.