Red Hat Security Advisory: kernel security update
🔗 CVE IDs covered (12)
📋 Description
CVE-2021-47138 — kernel: cxgb4: avoid accessing registers when clearing filters CVE-2021-47378 — kernel: nvme-rdma: destroy cm id before destroy qp to avoid use after free CVE-2021-47461 — kernel: userfaultfd: fix a race between writeprotect and exit_mmap() CVE-2022-48659 — kernel: mm/slub: fix to return errno if kmalloc() fails CVE-2022-48796 — kernel: iommu: Fix potential use-after-free during probe CVE-2024-26698 — kernel: hv_netvsc: Fix race condition between netvsc_probe and netvsc_remove CVE-2024-26982 — kernel: Squashfs: check the inode number is not the invalid value of zero CVE-2024-35823 — kernel: vt: fix unicode buffer corruption when deleting characters CVE-2024-38540 — kernel: bnxt_re: avoid shift undefined behavior in bnxt_qplib_alloc_init_hwq CVE-2024-38564 — kernel: bpf: Add BPF_PROG_TYPE_CGROUP_SKB attach type enforcement in BPF_LINK_CREATE CVE-2024-38586 — kernel: r8169: Fix possible ring buffer corruption on fragmented Tx packets. CVE-2024-41014 — kernel: xfs: add bounds checking to xlog_recover_process_data
🔗 References (15)
- selfhttps://access.redhat.com/errata/RHSA-2024:6297
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2271484
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2273117
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2277801
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2278337
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2281190
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2282362
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2282896
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2293402
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2293429
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2293459
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2298132
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2300297
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_6297.json