Red Hat Security Advisory: kernel security update
🔗 CVE IDs covered (23)
📋 Description
CVE-2021-47383 — kernel: tty: Fix out-of-bound vmalloc access in imageblit CVE-2023-54153 — kernel: ext4: turn quotas off if mount failed after enabling quotas CVE-2024-2201 — hw: cpu: intel: Native Branch History Injection (BHI) CVE-2024-26640 — kernel: tcp: add sanity checks to rx zerocopy CVE-2024-26826 — kernel: mptcp: fix data re-injection from stale subflow CVE-2024-26923 — kernel: af_unix: Fix garbage collector racing against connect() CVE-2024-26935 — kernel: scsi: core: Fix unremoved procfs host directory regression CVE-2024-26961 — kernel: mac802154: fix llsec key resources release in mac802154_llsec_key_del CVE-2024-36244 — kernel: net/sched: taprio: extend minimum interval restriction to entire cycle too CVE-2024-39472 — kernel: xfs: fix log recovery buffer allocation for the legacy h_size fixup CVE-2024-39504 — kernel: netfilter: nft_inner: validate mandatory meta and payload CVE-2024-40904 — kernel: USB: class: cdc-wdm: Fix CPU lockup caused by excessive log messages CVE-2024-40931 — kernel: mptcp: ensure snd_una is properly initialized on connect CVE-2024-40960 — kernel: ipv6: prevent possible NULL dereference in rt6_probe() CVE-2024-40972 — kernel: ext4: do not create EA inode under buffer lock CVE-2024-40977 — kernel: wifi: mt76: mt7921s: fix potential hung tasks during chip recovery CVE-2024-40995 — kernel: net/sched: act_api: fix possible infinite loop in tcf_idr_check_alloc() CVE-2024-40998 — kernel: ext4: fix uninitialized ratelimit_state->lock access in __ext4_fill_super() CVE-2024-41005 — kernel: netpoll: Fix race condition in netpoll_owner_active CVE-2024-41013 — kernel: xfs: don't walk off the end of a directory data block CVE-2024-41014 — kernel: xfs: add bounds checking to xlog_recover_process_data CVE-2024-43854 — kernel: block: initialize integrity buffer to zero before writing it to media CVE-2024-45018 — kernel: netfilter: flowtable: initialise extack before use
🔗 References (24)
- selfhttps://access.redhat.com/errata/RHSA-2024:8617
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2268118
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2270100
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2275604
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2277171
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2278176
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2278235
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2282357
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2293654
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2296067
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2297476
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2297488
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2297515
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2297544
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2297556
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2297561
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2297579
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2297582
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2297589
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2300296
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2300297
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2311715
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_8617.json