RHSA-2022:5224HighCVSS 7.8
Red Hat Security Advisory: kernel-rt security and bug fix update
🔗 CVE IDs covered (6)
CVE-2022-1729 →CVE-2022-1966 · pendingCVE-2022-27666 →CVE-2022-32250 →CVE-2020-29368 →CVE-2022-1012 →
📋 Description
CVE-2020-29368 — kernel: the copy-on-write implementation can grant unintended write access because of a race condition in a THP mapcount check CVE-2022-1012 — kernel: Small table perturb size in the TCP source port generation algorithm can lead to information leak CVE-2022-1729 — kernel: race condition in perf_event_open leads to privilege escalation CVE-2022-1966 — kernel: netfilter: nf_tables: incorrect NFT_STATEFUL_EXPR check leads to a use-after-free (write) CVE-2022-27666 — kernel: buffer overflow in IPsec ESP transformation code CVE-2022-32250 — kernel: a use-after-free write in the netfilter subsystem can lead to privilege escalation to root
🔗 References (8)
- selfhttps://access.redhat.com/errata/RHSA-2022:5224
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1903244
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2061633
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2064604
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2086753
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2092427
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2022/rhsa-2022_5224.json