Red Hat Security Advisory: kernel security and bug fix update
🔗 CVE IDs covered (15)
📋 Description
CVE-2022-49920 — kernel: netfilter: nf_tables: netlink notifier might race to release objects CVE-2022-50048 — kernel: netfilter: nf_tables: possible module reference underflow in error path CVE-2022-50213 — kernel: netfilter: nf_tables: do not allow SET_ID to refer to another table CVE-2023-4244 — kernel: Use-after-free in nft_verdict_dump due to a race between set GC and transaction CVE-2023-6240 — kernel: Marvin vulnerability side-channel leakage in the RSA decryption operation CVE-2023-6817 — kernel: inactive elements in nft_pipapo_walk CVE-2023-52628 — kernel: netfilter: nftables: exthdr: fix 4-byte stack OOB write CVE-2023-52993 — kernel: x86/i8259: Mark legacy PIC interrupts with IRQ_LEVEL CVE-2023-53304 — kernel: Linux kernel: Denial of Service in netfilter due to improper garbage collection CVE-2023-53566 — kernel: netfilter: nft_set_rbtree: fix null deref on element insertion CVE-2023-54035 — kernel: netfilter: nf_tables: fix underflow in chain reference counter CVE-2024-1086 — kernel: nf_tables: use-after-free vulnerability in the nft_verdict_init() function CVE-2024-25742 — hw: amd: Instruction raise #VC exception at exit CVE-2024-25743 — hw: amd: Instruction raise #VC exception at exit CVE-2024-26586 — kernel: mlxsw: spectrum_acl_tcam: Fix stack corruption
🔗 References (10)
- selfhttps://access.redhat.com/errata/RHSA-2024:3421
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2235306
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2250843
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2255139
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2262126
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2265645
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2270836
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2272041
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_3421.json