RHSA-2024:2621HighCVSS 7.1
Red Hat Security Advisory: kernel security, bug fix, and enhancement update
🔗 CVE IDs covered (7)
📋 Description
CVE-2021-33631 — kernel: ext4: kernel bug in ext4_write_inline_data_end() CVE-2022-3640 — kernel: use after free flaw in l2cap_conn_del in net/bluetooth/l2cap_core.c CVE-2022-42895 — kernel: Information leak in l2cap_parse_conf_req in net/bluetooth/l2cap_core.c CVE-2022-49940 — kernel: tty: n_gsm: add sanity check for gsm->receive in gsm_receive_buf() CVE-2022-50116 — kernel: tty: n_gsm: fix deadlock and link starvation in outgoing data path CVE-2023-6546 — kernel: GSM multiplexing race condition leads to privilege escalation CVE-2024-25744 — kernel: untrusted VMM can trigger int80 syscall handling
🔗 References (7)
- selfhttps://access.redhat.com/errata/RHSA-2024:2621
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2139610
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2147356
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2255498
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2261976
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_2621.json