Red Hat Security Advisory: kernel security update
🔗 CVE IDs covered (20)
📋 Description
CVE-2023-52749 — kernel: spi: Fix null dereference on suspend CVE-2024-26656 — kernel: drm/amdgpu: use-after-free vulnerability CVE-2024-26772 — kernel: ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() CVE-2024-26837 — kernel: net: bridge: switchdev: Skip MDB replays of deferred events on offload CVE-2024-26870 — kernel: NFSv4.2: fix nfs4_listxattr kernel BUG at mm/usercopy.c:102 CVE-2024-26906 — kernel: x86/mm: Disallow vsyscall page read for copy_from_kernel_nofault() CVE-2024-26984 — kernel: nouveau: fix instmem race condition around ptr stores CVE-2024-31076 — kernel: genirq/cpuhotplug, x86/vector: Prevent vector leak during CPU offline CVE-2024-35814 — kernel: swiotlb: Fix double-allocation of slots due to broken alignment handling CVE-2024-35950 — kernel: drm/client: Fully protect modes[] with dev->mode_config.mutex CVE-2024-38564 — kernel: bpf: Add BPF_PROG_TYPE_CGROUP_SKB attach type enforcement in BPF_LINK_CREATE CVE-2024-38596 — kernel: af_unix: Fix data races in unix_release_sock/unix_stream_sendmsg CVE-2024-40901 — kernel: scsi: mpt3sas: Avoid test/set_bit() operating in non-allocated memory CVE-2024-40924 — kernel: drm/i915/dpt: Make DPT object unshrinkable CVE-2024-40956 — kernel: dmaengine: idxd: Fix possible Use-After-Free in irq_process_work_list CVE-2024-40988 — kernel: drm/radeon: fix UBSAN warning in kv_dpm.c CVE-2024-41023 — kernel: sched/deadline: Fix task_struct reference leak CVE-2024-41060 — kernel: drm/radeon: check bo_va->bo is non-NULL before using it CVE-2024-41066 — kernel: ibmvnic: Add tx check to prevent skb leak CVE-2024-46858 — kernel: mptcp: pm: Fix uaf in __timer_delete_sync
🔗 References (22)
- selfhttps://access.redhat.com/errata/RHSA-2024:9546
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2272692
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2273242
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2275580
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2275635
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2275711
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2278333
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2281942
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2282679
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2293371
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2293429
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2293684
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2297508
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2297540
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2297572
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2297706
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2300381
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2300434
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2300442
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2315210
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_9546.json