[ALSA-2022:5834] ALSA-2022:5834: kernel-rt security and bug fix update (Important)
Type:
security
Severity:
important
Release date:
2022-08-05
Description:
The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements. Security Fix(es): * kernel: Small table perturb size in the TCP source port generation algorithm can lead to information leak (CVE-2022-1012) * kernel: a use-after-free write in the netfilter subsystem can lead to privilege escalation to root (CVE-2022-32250) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Bug Fix(es): * The latest AlmaLinux 8.6.z2 kernel changes need to be merged into the RT source tree to keep source parity between the two kernels. (BZ#2107215)
References:
Updated packages:
  • kernel-rt-core-4.18.0-372.19.1.rt7.176.el8_6.x86_64.rpm
  • kernel-rt-debug-core-4.18.0-372.19.1.rt7.176.el8_6.x86_64.rpm
  • kernel-rt-debug-modules-extra-4.18.0-372.19.1.rt7.176.el8_6.x86_64.rpm
  • kernel-rt-devel-4.18.0-372.19.1.rt7.176.el8_6.x86_64.rpm
  • kernel-rt-debug-4.18.0-372.19.1.rt7.176.el8_6.x86_64.rpm
  • kernel-rt-debug-devel-4.18.0-372.19.1.rt7.176.el8_6.x86_64.rpm
  • kernel-rt-debug-modules-4.18.0-372.19.1.rt7.176.el8_6.x86_64.rpm
  • kernel-rt-kvm-4.18.0-372.19.1.rt7.176.el8_6.x86_64.rpm
  • kernel-rt-4.18.0-372.19.1.rt7.176.el8_6.x86_64.rpm
  • kernel-rt-modules-extra-4.18.0-372.19.1.rt7.176.el8_6.x86_64.rpm
  • kernel-rt-debug-kvm-4.18.0-372.19.1.rt7.176.el8_6.x86_64.rpm
  • kernel-rt-modules-4.18.0-372.19.1.rt7.176.el8_6.x86_64.rpm
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.