Red Hat Security Advisory: kernel security and bug fix update
🔗 CVE IDs covered (8)
📋 Description
CVE-2020-29368 — kernel: the copy-on-write implementation can grant unintended write access because of a race condition in a THP mapcount check CVE-2021-4197 — kernel: cgroup: Use open-time creds and namespace for migration perm checks CVE-2021-4203 — kernel: Race condition in races in sk_peer_pid and sk_peer_cred accesses CVE-2021-47435 — kernel: dm: fix mempool NULL pointer race when completing IO CVE-2022-1012 — kernel: Small table perturb size in the TCP source port generation algorithm can lead to information leak CVE-2022-1729 — kernel: race condition in perf_event_open leads to privilege escalation CVE-2022-32250 — kernel: a use-after-free write in the netfilter subsystem can lead to privilege escalation to root CVE-2022-49086 — kernel: net: openvswitch: fix leak of nested actions
🔗 References (9)
- selfhttps://access.redhat.com/errata/RHSA-2022:5626
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1903244
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2035652
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2036934
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2064604
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2086753
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2092427
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2022/rhsa-2022_5626.json