RHSA-2024:4740MediumCVSS 7.8

Red Hat Security Advisory: kernel security update

Published
July 23, 2024
Last Modified
August 4, 2026

🔗 CVE IDs covered (17)

📋 Description

CVE-2021-47310 — kernel: net: ti: fix UAF in tlan_remove_one CVE-2021-47311 — kernel: net: qcom/emac: fix UAF in emac_remove CVE-2021-47548 — kernel: ethernet: hisilicon: hns: hns_dsaf_misc: fix a possible array overflow in hns_dsaf_ge_srst_by_port() CVE-2023-1989 — kernel: Use after free bug in btsdio_remove due to race condition CVE-2023-4155 — kernel: KVM: SEV-ES / SEV-SNP VMGEXIT double fetch vulnerability CVE-2023-52530 — kernel: wifi: mac80211: fix potential key use-after-free CVE-2023-52639 — kernel: KVM: s390: vsie: fix race during shadow creation CVE-2023-52667 — kernel: net/mlx5e: fix a potential double-free in fs_any_create_groups CVE-2024-26598 — kernel: kvm: Avoid potential UAF in LPI translation cache CVE-2024-26656 — kernel: drm/amdgpu: use-after-free vulnerability CVE-2024-26735 — kernel: ipv6: sr: fix possible use-after-free and null-ptr-deref CVE-2024-26801 — kernel: Bluetooth: Avoid potential use-after-free in hci_error_reset CVE-2024-26804 — kernel: net: ip_tunnel: prevent perpetual headroom growth CVE-2024-27397 — kernel: netfilter: nf_tables: use timestamp to check for set element timeout CVE-2024-35937 — kernel: wifi: cfg80211: check A-MSDU format more carefully CVE-2024-35958 — kernel: net: ena: Fix incorrect descriptor free behavior CVE-2024-35960 — kernel: net/mlx5: Properly link new fs rules into the tree

🎯 Affected products122

  • Red Hat CodeReady Linux Builder EUS (v.8.8)
  • Red Hat Enterprise Linux BaseOS EUS (v.8.8)
  • bpftool-0:4.18.0-477.64.1.el8_8.aarch64 as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.8)
  • bpftool-0:4.18.0-477.64.1.el8_8.ppc64le as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.8)
  • bpftool-0:4.18.0-477.64.1.el8_8.s390x as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.8)
  • bpftool-0:4.18.0-477.64.1.el8_8.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.8)
  • bpftool-debuginfo-0:4.18.0-477.64.1.el8_8.aarch64 as a component of Red Hat CodeReady Linux Builder EUS (v.8.8)
  • bpftool-debuginfo-0:4.18.0-477.64.1.el8_8.aarch64 as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.8)
  • bpftool-debuginfo-0:4.18.0-477.64.1.el8_8.ppc64le as a component of Red Hat CodeReady Linux Builder EUS (v.8.8)
  • bpftool-debuginfo-0:4.18.0-477.64.1.el8_8.ppc64le as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.8)
  • bpftool-debuginfo-0:4.18.0-477.64.1.el8_8.s390x as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.8)
  • bpftool-debuginfo-0:4.18.0-477.64.1.el8_8.x86_64 as a component of Red Hat CodeReady Linux Builder EUS (v.8.8)
  • bpftool-debuginfo-0:4.18.0-477.64.1.el8_8.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.8)
  • kernel-0:4.18.0-477.64.1.el8_8.aarch64 as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.8)
  • kernel-0:4.18.0-477.64.1.el8_8.ppc64le as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.8)
  • kernel-0:4.18.0-477.64.1.el8_8.s390x as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.8)
  • kernel-0:4.18.0-477.64.1.el8_8.src as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.8)
  • kernel-0:4.18.0-477.64.1.el8_8.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.8)
  • kernel-abi-stablelists-0:4.18.0-477.64.1.el8_8.noarch as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.8)
  • kernel-core-0:4.18.0-477.64.1.el8_8.aarch64 as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.8)
  • kernel-core-0:4.18.0-477.64.1.el8_8.ppc64le as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.8)
  • kernel-core-0:4.18.0-477.64.1.el8_8.s390x as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.8)
  • kernel-core-0:4.18.0-477.64.1.el8_8.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.8)
  • kernel-debug-0:4.18.0-477.64.1.el8_8.aarch64 as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.8)
  • kernel-debug-0:4.18.0-477.64.1.el8_8.ppc64le as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.8)
  • kernel-debug-0:4.18.0-477.64.1.el8_8.s390x as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.8)
  • kernel-debug-0:4.18.0-477.64.1.el8_8.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.8)
  • kernel-debug-core-0:4.18.0-477.64.1.el8_8.aarch64 as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.8)
  • kernel-debug-core-0:4.18.0-477.64.1.el8_8.ppc64le as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.8)
  • kernel-debug-core-0:4.18.0-477.64.1.el8_8.s390x as a component of Red Hat Enterprise Linux BaseOS EUS (v.8.8)
  • +92 more not shown

✅ Remediation

For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 The system must be rebooted for this update to take effect. Workaround: Red Hat has investigated whether a possible mitigation exists for this issue, and has not been able to identify a practical example. Please update the affected package as soon as possible. Workaround: Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability. Workaround: This flaw can be mitigated by preventing the affected Generic Bluetooth SDIO driver kernel module from loading during the boot time. Ensure the module is added into the blacklist file. ~~~ Refer: How do I blacklist a kernel module to prevent it from loading automatically? https://access.redhat.com/solutions/41278 ~~~ Workaround: To mitigate this issue, prevent module mlx5_core from being loaded. Please see https://access.redhat.com/solutions/41278 for how to blacklist a kernel module to prevent it from loading automatically. Workaround: No mitigation is currently available for this vulnerability. Make sure to perform the updates as they become available. Workaround: In order to trigger the issue, it requires the ability to create user/net namespaces. On non-containerized deployments of Red Hat Enterprise Linux 8, you can disable user namespaces by setting user.max_user_namespaces to 0: # echo "user.max_user_namespaces=0" > /etc/sysctl.d/userns.conf # sysctl -p /etc/sysctl.d/userns.conf On containerized deployments, such as Red Hat OpenShift Container Platform, do not use this mitigation as the functionality is needed to be enabled.

🔗 References (20)