RHSA-2024:4108HighCVSS 7.0
Red Hat Security Advisory: kernel security and bug fix update
🔗 CVE IDs covered (9)
📋 Description
CVE-2021-47400 — kernel: net: hns3: do not allow call hns3_nic_net_open repeatedly CVE-2023-53496 — kernel: x86/platform/uv: Use alternate source for socket to node data CVE-2024-27393 — kernel: xen-netfront: Add missing skb_mark_for_recycle CVE-2024-27397 — kernel: netfilter: nf_tables: use timestamp to check for set element timeout CVE-2024-27403 — kernel: netfilter: nft_flow_offload: reset dst in route object after setting up flow CVE-2024-35870 — kernel: smb: client: fix UAF in smb2_reconnect_server() CVE-2024-35958 — kernel: net: ena: Fix incorrect descriptor free behavior CVE-2024-35960 — kernel: net/mlx5: Properly link new fs rules into the tree CVE-2024-36957 — kernel: octeontx2-af: avoid off-by-one read from userspace
🔗 References (11)
- selfhttps://access.redhat.com/errata/RHSA-2024:4108
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2280434
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2280745
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2281127
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2281740
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2281920
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2281925
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2282336
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2284581
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_4108.json