RHSA-2018:1854
Vulnerability Summary
Timeline
Description
Red Hat Security Advisory: kernel security and bug fix update
CVSS Metrics
- v3.0•HIGH•Score: 8.8CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Affected Systems
- redhat•kernel
< 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6
- redhat•kernel-abi-whitelists
< 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6
- redhat•kernel-bootwrapper
< 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6
- redhat•kernel-debug
< 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6
- redhat•kernel-debug-debuginfo
< 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6
- redhat•kernel-debug-devel
< 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6
- redhat•kernel-debuginfo
< 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6
- redhat•kernel-debuginfo-common-i686
< 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6
- redhat•kernel-debuginfo-common-ppc64
< 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6
- redhat•kernel-debuginfo-common-s390x
< 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6
- redhat•kernel-debuginfo-common-x86_64
< 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6
- redhat•kernel-devel
< 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6
- redhat•kernel-doc
< 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6
- redhat•kernel-firmware
< 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6
- redhat•kernel-headers
< 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6
- redhat•kernel-kdump
< 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6
- redhat•kernel-kdump-debuginfo
< 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6
- redhat•kernel-kdump-devel
< 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6
- redhat•perf
< 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6
- redhat•perf-debuginfo
< 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6
- redhat•python-perf
< 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6
- redhat•python-perf-debuginfo
< 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6 | < 0:2.6.32-754.el6
References (89)
- https://access.redhat.com/errata/RHSA-2018:1854
- https://access.redhat.com/security/updates/classification/#important
- https://access.redhat.com/security/vulnerabilities/ssbd
- https://access.redhat.com/documentation/en-US/red_hat_enterprise_linux/6/html/6.10_release_notes/index.html
- https://access.redhat.com/documentation/en-US/red_hat_enterprise_linux/6/html/6.10_technical_notes/index.html
- https://bugzilla.redhat.com/show_bug.cgi?id=869942
- https://bugzilla.redhat.com/show_bug.cgi?id=1314275
- https://bugzilla.redhat.com/show_bug.cgi?id=1314288
- https://bugzilla.redhat.com/show_bug.cgi?id=1395187
- https://bugzilla.redhat.com/show_bug.cgi?id=1422825
- https://bugzilla.redhat.com/show_bug.cgi?id=1436649
- https://bugzilla.redhat.com/show_bug.cgi?id=1437404
- https://bugzilla.redhat.com/show_bug.cgi?id=1441088
- https://bugzilla.redhat.com/show_bug.cgi?id=1444493
- https://bugzilla.redhat.com/show_bug.cgi?id=1448170
- https://bugzilla.redhat.com/show_bug.cgi?id=1450972
- https://bugzilla.redhat.com/show_bug.cgi?id=1452688
- https://bugzilla.redhat.com/show_bug.cgi?id=1452691
- https://bugzilla.redhat.com/show_bug.cgi?id=1452744
- https://bugzilla.redhat.com/show_bug.cgi?id=1495089
- https://bugzilla.redhat.com/show_bug.cgi?id=1497152
- https://bugzilla.redhat.com/show_bug.cgi?id=1520893
- https://bugzilla.redhat.com/show_bug.cgi?id=1550811
- https://bugzilla.redhat.com/show_bug.cgi?id=1551051
- https://bugzilla.redhat.com/show_bug.cgi?id=1560494
- https://bugzilla.redhat.com/show_bug.cgi?id=1566890
- https://bugzilla.redhat.com/show_bug.cgi?id=1576419
- https://security.access.redhat.com/data/csaf/v2/advisories/2018/rhsa-2018_1854.json
- https://access.redhat.com/security/cve/CVE-2012-6701
- https://www.cve.org/CVERecord?id=CVE-2012-6701
- https://nvd.nist.gov/vuln/detail/CVE-2012-6701
- https://access.redhat.com/security/cve/CVE-2015-8830
- https://www.cve.org/CVERecord?id=CVE-2015-8830
- https://nvd.nist.gov/vuln/detail/CVE-2015-8830
- http://seclists.org/oss-sec/2016/q2/479
- https://bugs.chromium.org/p/project-zero/issues/detail?id=735
- https://access.redhat.com/security/cve/CVE-2016-8650
- https://www.cve.org/CVERecord?id=CVE-2016-8650
- https://nvd.nist.gov/vuln/detail/CVE-2016-8650
- https://access.redhat.com/security/cve/CVE-2017-2671
- https://www.cve.org/CVERecord?id=CVE-2017-2671
- https://nvd.nist.gov/vuln/detail/CVE-2017-2671
- https://access.redhat.com/security/cve/CVE-2017-6001
- https://www.cve.org/CVERecord?id=CVE-2017-6001
- https://nvd.nist.gov/vuln/detail/CVE-2017-6001
- https://access.redhat.com/security/cve/CVE-2017-7308
- https://www.cve.org/CVERecord?id=CVE-2017-7308
- https://nvd.nist.gov/vuln/detail/CVE-2017-7308
- https://googleprojectzero.blogspot.com/2017/05/exploiting-linux-kernel-via-packet.html
- https://access.redhat.com/security/cve/CVE-2017-7616
- https://www.cve.org/CVERecord?id=CVE-2017-7616
- https://nvd.nist.gov/vuln/detail/CVE-2017-7616
- https://access.redhat.com/security/cve/CVE-2017-7889
- https://www.cve.org/CVERecord?id=CVE-2017-7889
- https://nvd.nist.gov/vuln/detail/CVE-2017-7889
- https://access.redhat.com/security/cve/CVE-2017-8890
- https://www.cve.org/CVERecord?id=CVE-2017-8890
- https://nvd.nist.gov/vuln/detail/CVE-2017-8890
- https://access.redhat.com/security/cve/CVE-2017-9075
- https://www.cve.org/CVERecord?id=CVE-2017-9075
- https://nvd.nist.gov/vuln/detail/CVE-2017-9075
- https://access.redhat.com/security/cve/CVE-2017-9076
- https://www.cve.org/CVERecord?id=CVE-2017-9076
- https://nvd.nist.gov/vuln/detail/CVE-2017-9076
- https://access.redhat.com/security/cve/CVE-2017-9077
- https://www.cve.org/CVERecord?id=CVE-2017-9077
- https://nvd.nist.gov/vuln/detail/CVE-2017-9077
- https://access.redhat.com/security/cve/CVE-2017-12190
- https://www.cve.org/CVERecord?id=CVE-2017-12190
- https://nvd.nist.gov/vuln/detail/CVE-2017-12190
- https://access.redhat.com/security/cve/CVE-2017-15121
- https://www.cve.org/CVERecord?id=CVE-2017-15121
- https://nvd.nist.gov/vuln/detail/CVE-2017-15121
- https://access.redhat.com/security/cve/CVE-2017-18203
- https://www.cve.org/CVERecord?id=CVE-2017-18203
- https://nvd.nist.gov/vuln/detail/CVE-2017-18203
- https://access.redhat.com/security/cve/CVE-2018-1130
- https://www.cve.org/CVERecord?id=CVE-2018-1130
- https://nvd.nist.gov/vuln/detail/CVE-2018-1130
- https://access.redhat.com/security/cve/CVE-2018-3639
- https://www.cve.org/CVERecord?id=CVE-2018-3639
- https://nvd.nist.gov/vuln/detail/CVE-2018-3639
- https://bugs.chromium.org/p/project-zero/issues/detail?id=1528
- https://software.intel.com/sites/default/files/managed/b9/f9/336983-Intel-Analysis-of-Speculative-Execution-Side-Channels-White-Paper.pdf
- https://software.intel.com/sites/default/files/managed/c5/63/336996-Speculative-Execution-Side-Channel-Mitigations.pdf
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00115.html
- https://access.redhat.com/security/cve/CVE-2018-5803
- https://www.cve.org/CVERecord?id=CVE-2018-5803
- https://nvd.nist.gov/vuln/detail/CVE-2018-5803