RHSA-2023:7749HighCVSS 7.8
Red Hat Security Advisory: kernel security update
🔗 CVE IDs covered (7)
📋 Description
CVE-2023-1192 — kernel: use-after-free in smb2_is_status_io_timeout() CVE-2023-5345 — kernel: use-after-free vulnerability in the smb client component CVE-2023-20569 — amd: Return Address Predictor vulnerability leading to information disclosure CVE-2023-45871 — kernel: IGB driver inadequate buffer size for frames larger than MTU CVE-2023-53657 — kernel: ice: Don't tx before switchdev is fully configured CVE-2023-53996 — kernel: x86/sev: Make enc_dec_hypercall() accept a size instead of npages CVE-2023-54170 — kernel: keys: Fix linking a duplicate key to a keyring's assoc_array
🔗 References (7)
- selfhttps://access.redhat.com/errata/RHSA-2023:7749
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2154178
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2207625
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2242172
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2244723
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2023/rhsa-2023_7749.json