[RHSA-2021:4140] kernel-rt security and bug fix update

Severity Moderate
Affected Packages 12
CVEs 45

The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements.

Security Fix(es):
* kernel: out-of-bounds reads in pinctrl subsystem. (CVE-2020-0427)
* kernel: Improper input validation in some Intel(R) Ethernet E810 Adapter drivers (CVE-2020-24502)
* kernel: Insufficient access control in some Intel(R) Ethernet E810 Adapter drivers (CVE-2020-24503)
* kernel: Uncontrolled resource consumption in some Intel(R) Ethernet E810 Adapter drivers (CVE-2020-24504)
* kernel: Fragmentation cache not cleared on reconnection (CVE-2020-24586)
* kernel: Reassembling fragments encrypted under different keys (CVE-2020-24587)
* kernel: wifi frame payload being parsed incorrectly as an L2 frame (CVE-2020-24588)
* kernel: Forwarding EAPOL from unauthenticated wifi client (CVE-2020-26139)
* kernel: accepting plaintext data frames in protected networks (CVE-2020-26140)
* kernel: not verifying TKIP MIC of fragmented frames (CVE-2020-26141)
* kernel: accepting fragmented plaintext frames in protected networks (CVE-2020-26143)
* kernel: accepting unencrypted A-MSDU frames that start with RFC1042 header (CVE-2020-26144)
* kernel: accepting plaintext broadcast fragments as full frames (CVE-2020-26145)
* kernel: locking inconsistency in tty_io.c and tty_jobctrl.c can lead to a read-after-free (CVE-2020-29660)
* kernel: buffer overflow in mwifiex_cmd_802_11_ad_hoc_start function via a long SSID value (CVE-2020-36158)
* kernel: slab out-of-bounds read in hci_extended_inquiry_result_evt() (CVE-2020-36386)
* kernel: Improper access control in BlueZ may allow information disclosure vulnerability. (CVE-2021-0129)
* kernel: Use-after-free in ndb_queue_rq() (CVE-2021-3348)
* kernel: Linux kernel eBPF RINGBUF map oversized allocation (CVE-2021-3489)
* kernel: double free in bluetooth subsystem when the HCI device initialization fails (CVE-2021-3564)
* kernel: use-after-free in function hci_sock_bound_ioctl() (CVE-2021-3573)
* kernel: eBPF 32-bit source register truncation on div/mod (CVE-2021-3600)
* kernel: DoS in rb_per_cpu_empty() (CVE-2021-3679)
* kernel: overlayfs: Mounting overlayfs inside an unprivileged user namespace can reveal files (CVE-2021-3732)
* kernel: heap overflow in __cgroup_bpf_run_filter_getsockopt() (CVE-2021-20194)
* kernel: Race condition in sctp_destroy_sock list_del (CVE-2021-23133)
* kernel: fuse: stall on CPU can occur because a retry loop continually finds the same bad inode (CVE-2021-28950)
* kernel: System crash in intel_pmu_drain_pebs_nhm (CVE-2021-28971)
* kernel: protection for sequences of pointer arithmetic operations against speculatively out-of-bounds loads can be bypassed to leak content of kernel memory (CVE-2021-29155)
* kernel: improper input validation in tipc_nl_retrieve_key function (CVE-2021-29646)
* kernel: lack a full memory barrier upon the assignment of a new table value in x_tables.h may lead to DoS (CVE-2021-29650)
* kernel: local escalation of privileges in handling of eBPF programs (CVE-2021-31440)
* kernel: protection of stack pointer against speculative pointer arithmetic can be bypassed to leak content of kernel memory (CVE-2021-31829)
* kernel: out-of-bounds reads and writes due to enforcing incorrect limits for pointer arithmetic operations by BPF verifier (CVE-2021-33200)
* kernel: reassembling encrypted fragments with non-consecutive packet numbers (CVE-2020-26146)
* kernel: reassembling mixed encrypted/plaintext fragments (CVE-2020-26147)
* kernel: the copy-on-write implementation can grant unintended write access because of a race condition in a THP mapcount check (CVE-2020-29368)
* kernel: flowtable list del corruption with kernel BUG (CVE-2021-3635)
* kernel: NULL pointer dereference in llsec_key_alloc() (CVE-2021-3659)
* kernel: setsockopt System Call Untrusted Pointer Dereference Information Disclosure (CVE-2021-20239)
* kernel: out of bounds array access in drivers/md/dm-ioctl.c (CVE-2021-31916)

ID
RHSA-2021:4140
Severity
moderate
URL
https://access.redhat.com/errata/RHSA-2021:4140
Published
2021-11-09T00:00:00
(2 years ago)
Modified
2021-11-09T00:00:00
(2 years ago)
Rights
Copyright 2021 Red Hat, Inc.
Other Advisories
Source # ID Name URL
Bugzilla 1789209 https://bugzilla.redhat.com/1789209
Bugzilla 1903244 https://bugzilla.redhat.com/1903244
Bugzilla 1906522 https://bugzilla.redhat.com/1906522
Bugzilla 1912683 https://bugzilla.redhat.com/1912683
Bugzilla 1913348 https://bugzilla.redhat.com/1913348
Bugzilla 1919893 https://bugzilla.redhat.com/1919893
Bugzilla 1921958 https://bugzilla.redhat.com/1921958
Bugzilla 1923636 https://bugzilla.redhat.com/1923636
Bugzilla 1930376 https://bugzilla.redhat.com/1930376
Bugzilla 1930379 https://bugzilla.redhat.com/1930379
Bugzilla 1930381 https://bugzilla.redhat.com/1930381
Bugzilla 1941762 https://bugzilla.redhat.com/1941762
Bugzilla 1941784 https://bugzilla.redhat.com/1941784
Bugzilla 1945345 https://bugzilla.redhat.com/1945345
Bugzilla 1945388 https://bugzilla.redhat.com/1945388
Bugzilla 1946965 https://bugzilla.redhat.com/1946965
Bugzilla 1947991 https://bugzilla.redhat.com/1947991
Bugzilla 1948772 https://bugzilla.redhat.com/1948772
Bugzilla 1951595 https://bugzilla.redhat.com/1951595
Bugzilla 1957788 https://bugzilla.redhat.com/1957788
Bugzilla 1959559 https://bugzilla.redhat.com/1959559
Bugzilla 1959642 https://bugzilla.redhat.com/1959642
Bugzilla 1959654 https://bugzilla.redhat.com/1959654
Bugzilla 1959657 https://bugzilla.redhat.com/1959657
Bugzilla 1959663 https://bugzilla.redhat.com/1959663
Bugzilla 1960490 https://bugzilla.redhat.com/1960490
Bugzilla 1960492 https://bugzilla.redhat.com/1960492
Bugzilla 1960496 https://bugzilla.redhat.com/1960496
Bugzilla 1960498 https://bugzilla.redhat.com/1960498
Bugzilla 1960500 https://bugzilla.redhat.com/1960500
Bugzilla 1960502 https://bugzilla.redhat.com/1960502
Bugzilla 1960504 https://bugzilla.redhat.com/1960504
Bugzilla 1961300 https://bugzilla.redhat.com/1961300
Bugzilla 1964028 https://bugzilla.redhat.com/1964028
Bugzilla 1964139 https://bugzilla.redhat.com/1964139
Bugzilla 1965038 https://bugzilla.redhat.com/1965038
Bugzilla 1965458 https://bugzilla.redhat.com/1965458
Bugzilla 1966578 https://bugzilla.redhat.com/1966578
Bugzilla 1969489 https://bugzilla.redhat.com/1969489
Bugzilla 1975949 https://bugzilla.redhat.com/1975949
Bugzilla 1976946 https://bugzilla.redhat.com/1976946
Bugzilla 1981954 https://bugzilla.redhat.com/1981954
Bugzilla 1989165 https://bugzilla.redhat.com/1989165
Bugzilla 1995249 https://bugzilla.redhat.com/1995249
Bugzilla 2122089 https://bugzilla.redhat.com/2122089
RHSA RHSA-2021:4140 https://access.redhat.com/errata/RHSA-2021:4140
CVE CVE-2019-14615 https://access.redhat.com/security/cve/CVE-2019-14615
CVE CVE-2020-0427 https://access.redhat.com/security/cve/CVE-2020-0427
CVE CVE-2020-24502 https://access.redhat.com/security/cve/CVE-2020-24502
CVE CVE-2020-24503 https://access.redhat.com/security/cve/CVE-2020-24503
CVE CVE-2020-24504 https://access.redhat.com/security/cve/CVE-2020-24504
CVE CVE-2020-24586 https://access.redhat.com/security/cve/CVE-2020-24586
CVE CVE-2020-24587 https://access.redhat.com/security/cve/CVE-2020-24587
CVE CVE-2020-24588 https://access.redhat.com/security/cve/CVE-2020-24588
CVE CVE-2020-26139 https://access.redhat.com/security/cve/CVE-2020-26139
CVE CVE-2020-26140 https://access.redhat.com/security/cve/CVE-2020-26140
CVE CVE-2020-26141 https://access.redhat.com/security/cve/CVE-2020-26141
CVE CVE-2020-26143 https://access.redhat.com/security/cve/CVE-2020-26143
CVE CVE-2020-26144 https://access.redhat.com/security/cve/CVE-2020-26144
CVE CVE-2020-26145 https://access.redhat.com/security/cve/CVE-2020-26145
CVE CVE-2020-26146 https://access.redhat.com/security/cve/CVE-2020-26146
CVE CVE-2020-26147 https://access.redhat.com/security/cve/CVE-2020-26147
CVE CVE-2020-29368 https://access.redhat.com/security/cve/CVE-2020-29368
CVE CVE-2020-29660 https://access.redhat.com/security/cve/CVE-2020-29660
CVE CVE-2020-36158 https://access.redhat.com/security/cve/CVE-2020-36158
CVE CVE-2020-36312 https://access.redhat.com/security/cve/CVE-2020-36312
CVE CVE-2020-36386 https://access.redhat.com/security/cve/CVE-2020-36386
CVE CVE-2021-0129 https://access.redhat.com/security/cve/CVE-2021-0129
CVE CVE-2021-20194 https://access.redhat.com/security/cve/CVE-2021-20194
CVE CVE-2021-20239 https://access.redhat.com/security/cve/CVE-2021-20239
CVE CVE-2021-23133 https://access.redhat.com/security/cve/CVE-2021-23133
CVE CVE-2021-28950 https://access.redhat.com/security/cve/CVE-2021-28950
CVE CVE-2021-28971 https://access.redhat.com/security/cve/CVE-2021-28971
CVE CVE-2021-29155 https://access.redhat.com/security/cve/CVE-2021-29155
CVE CVE-2021-29646 https://access.redhat.com/security/cve/CVE-2021-29646
CVE CVE-2021-29650 https://access.redhat.com/security/cve/CVE-2021-29650
CVE CVE-2021-31440 https://access.redhat.com/security/cve/CVE-2021-31440
CVE CVE-2021-31829 https://access.redhat.com/security/cve/CVE-2021-31829
CVE CVE-2021-31916 https://access.redhat.com/security/cve/CVE-2021-31916
CVE CVE-2021-33033 https://access.redhat.com/security/cve/CVE-2021-33033
CVE CVE-2021-33200 https://access.redhat.com/security/cve/CVE-2021-33200
CVE CVE-2021-3348 https://access.redhat.com/security/cve/CVE-2021-3348
CVE CVE-2021-3489 https://access.redhat.com/security/cve/CVE-2021-3489
CVE CVE-2021-3564 https://access.redhat.com/security/cve/CVE-2021-3564
CVE CVE-2021-3573 https://access.redhat.com/security/cve/CVE-2021-3573
CVE CVE-2021-3600 https://access.redhat.com/security/cve/CVE-2021-3600
CVE CVE-2021-3635 https://access.redhat.com/security/cve/CVE-2021-3635
CVE CVE-2021-3659 https://access.redhat.com/security/cve/CVE-2021-3659
CVE CVE-2021-3679 https://access.redhat.com/security/cve/CVE-2021-3679
CVE CVE-2021-3732 https://access.redhat.com/security/cve/CVE-2021-3732
CVE CVE-2022-20166 https://access.redhat.com/security/cve/CVE-2022-20166
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/redhat/kernel-rt?arch=x86_64&distro=redhat-8 redhat kernel-rt < 4.18.0-348.rt7.130.el8 redhat-8 x86_64
Affected pkg:rpm/redhat/kernel-rt-modules?arch=x86_64&distro=redhat-8 redhat kernel-rt-modules < 4.18.0-348.rt7.130.el8 redhat-8 x86_64
Affected pkg:rpm/redhat/kernel-rt-modules-extra?arch=x86_64&distro=redhat-8 redhat kernel-rt-modules-extra < 4.18.0-348.rt7.130.el8 redhat-8 x86_64
Affected pkg:rpm/redhat/kernel-rt-kvm?arch=x86_64&distro=redhat-8 redhat kernel-rt-kvm < 4.18.0-348.rt7.130.el8 redhat-8 x86_64
Affected pkg:rpm/redhat/kernel-rt-devel?arch=x86_64&distro=redhat-8 redhat kernel-rt-devel < 4.18.0-348.rt7.130.el8 redhat-8 x86_64
Affected pkg:rpm/redhat/kernel-rt-debug?arch=x86_64&distro=redhat-8 redhat kernel-rt-debug < 4.18.0-348.rt7.130.el8 redhat-8 x86_64
Affected pkg:rpm/redhat/kernel-rt-debug-modules?arch=x86_64&distro=redhat-8 redhat kernel-rt-debug-modules < 4.18.0-348.rt7.130.el8 redhat-8 x86_64
Affected pkg:rpm/redhat/kernel-rt-debug-modules-extra?arch=x86_64&distro=redhat-8 redhat kernel-rt-debug-modules-extra < 4.18.0-348.rt7.130.el8 redhat-8 x86_64
Affected pkg:rpm/redhat/kernel-rt-debug-kvm?arch=x86_64&distro=redhat-8 redhat kernel-rt-debug-kvm < 4.18.0-348.rt7.130.el8 redhat-8 x86_64
Affected pkg:rpm/redhat/kernel-rt-debug-devel?arch=x86_64&distro=redhat-8 redhat kernel-rt-debug-devel < 4.18.0-348.rt7.130.el8 redhat-8 x86_64
Affected pkg:rpm/redhat/kernel-rt-debug-core?arch=x86_64&distro=redhat-8 redhat kernel-rt-debug-core < 4.18.0-348.rt7.130.el8 redhat-8 x86_64
Affected pkg:rpm/redhat/kernel-rt-core?arch=x86_64&distro=redhat-8 redhat kernel-rt-core < 4.18.0-348.rt7.130.el8 redhat-8 x86_64
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...