[RHSA-2023:5622] kernel security and bug fix update

Severity Important
Affected Packages 43
CVEs 3

The kernel packages contain the Linux kernel, the core of any Linux operating system.

Security Fix(es):

  • kernel: net/sched: cls_u32 component reference counter leak if tcf_change_indev() fails (CVE-2023-3609)

  • kernel: netfilter: use-after-free in nf_tables when processing batch requests can lead to privilege escalation (CVE-2023-32233)

  • kernel: nf_tables: stack-out-of-bounds-read in nft_byteorder_eval() (CVE-2023-35001)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Bug Fix(es):

  • Low memory deadlock with md devices and external (imsm) metadata handling (BZ#1703180)

  • cifs: memory leak in smb2_query_symlink (BZ#2166706)

  • bnxt_en: panic in bnxt_tx_int Redux (BZ#2175062)

  • NFS client loop in BIND_CONN_TO_SESSION (BZ#2219604)

Package Affected Version
pkg:rpm/redhat/python-perf?arch=x86_64&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/python-perf?arch=s390x&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/python-perf?arch=ppc64le&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/python-perf?arch=ppc64&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/perf?arch=x86_64&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/perf?arch=s390x&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/perf?arch=ppc64le&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/perf?arch=ppc64&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel?arch=x86_64&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel?arch=s390x&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel?arch=ppc64le&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel?arch=ppc64&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel-tools?arch=x86_64&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel-tools?arch=ppc64le&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel-tools?arch=ppc64&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel-tools-libs?arch=x86_64&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel-tools-libs?arch=ppc64le&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel-tools-libs?arch=ppc64&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel-tools-libs-devel?arch=x86_64&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel-tools-libs-devel?arch=ppc64le&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel-tools-libs-devel?arch=ppc64&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel-kdump?arch=s390x&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel-kdump-devel?arch=s390x&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel-doc?distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel-devel?arch=x86_64&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel-devel?arch=s390x&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel-devel?arch=ppc64le&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel-devel?arch=ppc64&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel-debug?arch=x86_64&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel-debug?arch=s390x&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel-debug?arch=ppc64le&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel-debug?arch=ppc64&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel-debug-devel?arch=x86_64&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel-debug-devel?arch=s390x&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel-debug-devel?arch=ppc64le&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel-debug-devel?arch=ppc64&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel-bootwrapper?arch=ppc64le&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel-bootwrapper?arch=ppc64&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/kernel-abi-whitelists?distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/bpftool?arch=x86_64&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/bpftool?arch=s390x&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/bpftool?arch=ppc64le&distro=redhat-7 < 3.10.0-1160.102.1.el7
pkg:rpm/redhat/bpftool?arch=ppc64&distro=redhat-7 < 3.10.0-1160.102.1.el7
ID
RHSA-2023:5622
Severity
important
URL
https://access.redhat.com/errata/RHSA-2023:5622
Published
2023-10-10T00:00:00
(11 months ago)
Modified
2023-10-10T00:00:00
(11 months ago)
Rights
Copyright 2023 Red Hat, Inc.
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/redhat/python-perf?arch=x86_64&distro=redhat-7 redhat python-perf < 3.10.0-1160.102.1.el7 redhat-7 x86_64
Affected pkg:rpm/redhat/python-perf?arch=s390x&distro=redhat-7 redhat python-perf < 3.10.0-1160.102.1.el7 redhat-7 s390x
Affected pkg:rpm/redhat/python-perf?arch=ppc64le&distro=redhat-7 redhat python-perf < 3.10.0-1160.102.1.el7 redhat-7 ppc64le
Affected pkg:rpm/redhat/python-perf?arch=ppc64&distro=redhat-7 redhat python-perf < 3.10.0-1160.102.1.el7 redhat-7 ppc64
Affected pkg:rpm/redhat/perf?arch=x86_64&distro=redhat-7 redhat perf < 3.10.0-1160.102.1.el7 redhat-7 x86_64
Affected pkg:rpm/redhat/perf?arch=s390x&distro=redhat-7 redhat perf < 3.10.0-1160.102.1.el7 redhat-7 s390x
Affected pkg:rpm/redhat/perf?arch=ppc64le&distro=redhat-7 redhat perf < 3.10.0-1160.102.1.el7 redhat-7 ppc64le
Affected pkg:rpm/redhat/perf?arch=ppc64&distro=redhat-7 redhat perf < 3.10.0-1160.102.1.el7 redhat-7 ppc64
Affected pkg:rpm/redhat/kernel?arch=x86_64&distro=redhat-7 redhat kernel < 3.10.0-1160.102.1.el7 redhat-7 x86_64
Affected pkg:rpm/redhat/kernel?arch=s390x&distro=redhat-7 redhat kernel < 3.10.0-1160.102.1.el7 redhat-7 s390x
Affected pkg:rpm/redhat/kernel?arch=ppc64le&distro=redhat-7 redhat kernel < 3.10.0-1160.102.1.el7 redhat-7 ppc64le
Affected pkg:rpm/redhat/kernel?arch=ppc64&distro=redhat-7 redhat kernel < 3.10.0-1160.102.1.el7 redhat-7 ppc64
Affected pkg:rpm/redhat/kernel-tools?arch=x86_64&distro=redhat-7 redhat kernel-tools < 3.10.0-1160.102.1.el7 redhat-7 x86_64
Affected pkg:rpm/redhat/kernel-tools?arch=ppc64le&distro=redhat-7 redhat kernel-tools < 3.10.0-1160.102.1.el7 redhat-7 ppc64le
Affected pkg:rpm/redhat/kernel-tools?arch=ppc64&distro=redhat-7 redhat kernel-tools < 3.10.0-1160.102.1.el7 redhat-7 ppc64
Affected pkg:rpm/redhat/kernel-tools-libs?arch=x86_64&distro=redhat-7 redhat kernel-tools-libs < 3.10.0-1160.102.1.el7 redhat-7 x86_64
Affected pkg:rpm/redhat/kernel-tools-libs?arch=ppc64le&distro=redhat-7 redhat kernel-tools-libs < 3.10.0-1160.102.1.el7 redhat-7 ppc64le
Affected pkg:rpm/redhat/kernel-tools-libs?arch=ppc64&distro=redhat-7 redhat kernel-tools-libs < 3.10.0-1160.102.1.el7 redhat-7 ppc64
Affected pkg:rpm/redhat/kernel-tools-libs-devel?arch=x86_64&distro=redhat-7 redhat kernel-tools-libs-devel < 3.10.0-1160.102.1.el7 redhat-7 x86_64
Affected pkg:rpm/redhat/kernel-tools-libs-devel?arch=ppc64le&distro=redhat-7 redhat kernel-tools-libs-devel < 3.10.0-1160.102.1.el7 redhat-7 ppc64le
Affected pkg:rpm/redhat/kernel-tools-libs-devel?arch=ppc64&distro=redhat-7 redhat kernel-tools-libs-devel < 3.10.0-1160.102.1.el7 redhat-7 ppc64
Affected pkg:rpm/redhat/kernel-kdump?arch=s390x&distro=redhat-7 redhat kernel-kdump < 3.10.0-1160.102.1.el7 redhat-7 s390x
Affected pkg:rpm/redhat/kernel-kdump-devel?arch=s390x&distro=redhat-7 redhat kernel-kdump-devel < 3.10.0-1160.102.1.el7 redhat-7 s390x
Affected pkg:rpm/redhat/kernel-doc?distro=redhat-7 redhat kernel-doc < 3.10.0-1160.102.1.el7 redhat-7
Affected pkg:rpm/redhat/kernel-devel?arch=x86_64&distro=redhat-7 redhat kernel-devel < 3.10.0-1160.102.1.el7 redhat-7 x86_64
Affected pkg:rpm/redhat/kernel-devel?arch=s390x&distro=redhat-7 redhat kernel-devel < 3.10.0-1160.102.1.el7 redhat-7 s390x
Affected pkg:rpm/redhat/kernel-devel?arch=ppc64le&distro=redhat-7 redhat kernel-devel < 3.10.0-1160.102.1.el7 redhat-7 ppc64le
Affected pkg:rpm/redhat/kernel-devel?arch=ppc64&distro=redhat-7 redhat kernel-devel < 3.10.0-1160.102.1.el7 redhat-7 ppc64
Affected pkg:rpm/redhat/kernel-debug?arch=x86_64&distro=redhat-7 redhat kernel-debug < 3.10.0-1160.102.1.el7 redhat-7 x86_64
Affected pkg:rpm/redhat/kernel-debug?arch=s390x&distro=redhat-7 redhat kernel-debug < 3.10.0-1160.102.1.el7 redhat-7 s390x
Affected pkg:rpm/redhat/kernel-debug?arch=ppc64le&distro=redhat-7 redhat kernel-debug < 3.10.0-1160.102.1.el7 redhat-7 ppc64le
Affected pkg:rpm/redhat/kernel-debug?arch=ppc64&distro=redhat-7 redhat kernel-debug < 3.10.0-1160.102.1.el7 redhat-7 ppc64
Affected pkg:rpm/redhat/kernel-debug-devel?arch=x86_64&distro=redhat-7 redhat kernel-debug-devel < 3.10.0-1160.102.1.el7 redhat-7 x86_64
Affected pkg:rpm/redhat/kernel-debug-devel?arch=s390x&distro=redhat-7 redhat kernel-debug-devel < 3.10.0-1160.102.1.el7 redhat-7 s390x
Affected pkg:rpm/redhat/kernel-debug-devel?arch=ppc64le&distro=redhat-7 redhat kernel-debug-devel < 3.10.0-1160.102.1.el7 redhat-7 ppc64le
Affected pkg:rpm/redhat/kernel-debug-devel?arch=ppc64&distro=redhat-7 redhat kernel-debug-devel < 3.10.0-1160.102.1.el7 redhat-7 ppc64
Affected pkg:rpm/redhat/kernel-bootwrapper?arch=ppc64le&distro=redhat-7 redhat kernel-bootwrapper < 3.10.0-1160.102.1.el7 redhat-7 ppc64le
Affected pkg:rpm/redhat/kernel-bootwrapper?arch=ppc64&distro=redhat-7 redhat kernel-bootwrapper < 3.10.0-1160.102.1.el7 redhat-7 ppc64
Affected pkg:rpm/redhat/kernel-abi-whitelists?distro=redhat-7 redhat kernel-abi-whitelists < 3.10.0-1160.102.1.el7 redhat-7
Affected pkg:rpm/redhat/bpftool?arch=x86_64&distro=redhat-7 redhat bpftool < 3.10.0-1160.102.1.el7 redhat-7 x86_64
Affected pkg:rpm/redhat/bpftool?arch=s390x&distro=redhat-7 redhat bpftool < 3.10.0-1160.102.1.el7 redhat-7 s390x
Affected pkg:rpm/redhat/bpftool?arch=ppc64le&distro=redhat-7 redhat bpftool < 3.10.0-1160.102.1.el7 redhat-7 ppc64le
Affected pkg:rpm/redhat/bpftool?arch=ppc64&distro=redhat-7 redhat bpftool < 3.10.0-1160.102.1.el7 redhat-7 ppc64
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...