RHSA-2024:1404
Vulnerability Summary
Timeline
Description
Red Hat Security Advisory: kernel security and bug fix update
CVSS Metrics
- v3.1•HIGH•Score: 7.8CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected Systems
- redhat•bpftool
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•bpftool-debuginfo
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•kernel
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•kernel-abi-stablelists
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•kernel-core
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•kernel-debug
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•kernel-debug-core
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•kernel-debug-debuginfo
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•kernel-debug-devel
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•kernel-debug-modules
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•kernel-debug-modules-extra
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•kernel-debuginfo
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•kernel-debuginfo-common-aarch64
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•kernel-debuginfo-common-ppc64le
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•kernel-debuginfo-common-s390x
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•kernel-debuginfo-common-x86_64
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•kernel-devel
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•kernel-doc
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•kernel-modules
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•kernel-modules-extra
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•kernel-tools
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•kernel-tools-debuginfo
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•kernel-tools-libs
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•kernel-tools-libs-devel
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•kernel-zfcpdump
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•kernel-zfcpdump-core
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•kernel-zfcpdump-debuginfo
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•kernel-zfcpdump-devel
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•kernel-zfcpdump-modules
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•kernel-zfcpdump-modules-extra
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•perf
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•perf-debuginfo
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•python3-perf
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
- redhat•python3-perf-debuginfo
< 0:4.18.0-477.51.1.el8_8 | < 0:4.18.0-477.51.1.el8_8
References (181)
- https://access.redhat.com/errata/RHSA-2024:1404
- https://access.redhat.com/security/updates/classification/#important
- https://bugzilla.redhat.com/show_bug.cgi?id=2024989
- https://bugzilla.redhat.com/show_bug.cgi?id=2073091
- https://bugzilla.redhat.com/show_bug.cgi?id=2133451
- https://bugzilla.redhat.com/show_bug.cgi?id=2133452
- https://bugzilla.redhat.com/show_bug.cgi?id=2133453
- https://bugzilla.redhat.com/show_bug.cgi?id=2133455
- https://bugzilla.redhat.com/show_bug.cgi?id=2144379
- https://bugzilla.redhat.com/show_bug.cgi?id=2148520
- https://bugzilla.redhat.com/show_bug.cgi?id=2149024
- https://bugzilla.redhat.com/show_bug.cgi?id=2151317
- https://bugzilla.redhat.com/show_bug.cgi?id=2156322
- https://bugzilla.redhat.com/show_bug.cgi?id=2161310
- https://bugzilla.redhat.com/show_bug.cgi?id=2177371
- https://bugzilla.redhat.com/show_bug.cgi?id=2181330
- https://bugzilla.redhat.com/show_bug.cgi?id=2187813
- https://bugzilla.redhat.com/show_bug.cgi?id=2187931
- https://bugzilla.redhat.com/show_bug.cgi?id=2188468
- https://bugzilla.redhat.com/show_bug.cgi?id=2213139
- https://bugzilla.redhat.com/show_bug.cgi?id=2218195
- https://bugzilla.redhat.com/show_bug.cgi?id=2218212
- https://bugzilla.redhat.com/show_bug.cgi?id=2231800
- https://bugzilla.redhat.com/show_bug.cgi?id=2244715
- https://bugzilla.redhat.com/show_bug.cgi?id=2245514
- https://bugzilla.redhat.com/show_bug.cgi?id=2245663
- https://bugzilla.redhat.com/show_bug.cgi?id=2252731
- https://bugzilla.redhat.com/show_bug.cgi?id=2253611
- https://bugzilla.redhat.com/show_bug.cgi?id=2253614
- https://bugzilla.redhat.com/show_bug.cgi?id=2253908
- https://bugzilla.redhat.com/show_bug.cgi?id=2255139
- https://bugzilla.redhat.com/show_bug.cgi?id=2255283
- https://bugzilla.redhat.com/show_bug.cgi?id=2256279
- https://bugzilla.redhat.com/show_bug.cgi?id=2258518
- https://bugzilla.redhat.com/show_bug.cgi?id=2259866
- https://bugzilla.redhat.com/show_bug.cgi?id=2260005
- https://bugzilla.redhat.com/show_bug.cgi?id=2262126
- https://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_1404.json
- https://access.redhat.com/security/cve/CVE-2021-43975
- https://www.cve.org/CVERecord?id=CVE-2021-43975
- https://nvd.nist.gov/vuln/detail/CVE-2021-43975
- https://git.kernel.org/pub/scm/linux/kernel/git/netdev/net.git/commit/?id=b922f622592af76b57cbc566eaeccda0b31a3496
- https://access.redhat.com/security/cve/CVE-2022-3545
- https://www.cve.org/CVERecord?id=CVE-2022-3545
- https://nvd.nist.gov/vuln/detail/CVE-2022-3545
- https://git.kernel.org/pub/scm/linux/kernel/git/klassert/ipsec-next.git/commit/?id=02e1a114fdb71e59ee6770294166c30d437bf86a
- https://access.redhat.com/security/cve/CVE-2022-3594
- https://www.cve.org/CVERecord?id=CVE-2022-3594
- https://nvd.nist.gov/vuln/detail/CVE-2022-3594
- https://git.kernel.org/pub/scm/linux/kernel/git/bpf/bpf-next.git/commit/?id=93e2be344a7db169b7119de21ac1bf253b8c6907
- https://access.redhat.com/security/cve/CVE-2022-4744
- https://www.cve.org/CVERecord?id=CVE-2022-4744
- https://nvd.nist.gov/vuln/detail/CVE-2022-4744
- https://git.kernel.org/pub/scm/linux/kernel/git/netdev/net.git/commit/?id=158b515f703e
- https://access.redhat.com/security/cve/CVE-2022-28388
- https://www.cve.org/CVERecord?id=CVE-2022-28388
- https://nvd.nist.gov/vuln/detail/CVE-2022-28388
- https://access.redhat.com/security/cve/CVE-2022-36402
- https://www.cve.org/CVERecord?id=CVE-2022-36402
- https://nvd.nist.gov/vuln/detail/CVE-2022-36402
- https://access.redhat.com/security/cve/CVE-2022-38096
- https://www.cve.org/CVERecord?id=CVE-2022-38096
- https://nvd.nist.gov/vuln/detail/CVE-2022-38096
- https://access.redhat.com/security/cve/CVE-2022-38457
- https://www.cve.org/CVERecord?id=CVE-2022-38457
- https://nvd.nist.gov/vuln/detail/CVE-2022-38457
- https://access.redhat.com/security/cve/CVE-2022-40133
- https://www.cve.org/CVERecord?id=CVE-2022-40133
- https://nvd.nist.gov/vuln/detail/CVE-2022-40133
- https://access.redhat.com/security/cve/CVE-2022-41858
- https://www.cve.org/CVERecord?id=CVE-2022-41858
- https://nvd.nist.gov/vuln/detail/CVE-2022-41858
- https://github.com/torvalds/linux/commit/ec4eb8a86ade4d22633e1da2a7d85a846b7d1798
- https://access.redhat.com/security/cve/CVE-2022-45869
- https://www.cve.org/CVERecord?id=CVE-2022-45869
- https://nvd.nist.gov/vuln/detail/CVE-2022-45869
- https://access.redhat.com/security/cve/CVE-2022-45887
- https://www.cve.org/CVERecord?id=CVE-2022-45887
- https://nvd.nist.gov/vuln/detail/CVE-2022-45887
- https://lore.kernel.org/linux-media/20221115131822.6640-1-imv4bel@gmail.com/
- https://lore.kernel.org/linux-media/20221115131822.6640-5-imv4bel@gmail.com/
- https://access.redhat.com/security/cve/CVE-2022-50148
- https://bugzilla.redhat.com/show_bug.cgi?id=2373637
- https://www.cve.org/CVERecord?id=CVE-2022-50148
- https://nvd.nist.gov/vuln/detail/CVE-2022-50148
- https://lore.kernel.org/linux-cve-announce/2025061821-CVE-2022-50148-371d@gregkh/T
- https://access.redhat.com/security/cve/CVE-2023-1382
- https://www.cve.org/CVERecord?id=CVE-2023-1382
- https://nvd.nist.gov/vuln/detail/CVE-2023-1382
- https://lore.kernel.org/netdev/bc7bd3183f1c275c820690fc65b708238fe9e38e.1668807842.git.lucien.xin@gmail.com/T/#u
- https://access.redhat.com/security/cve/CVE-2023-2166
- https://www.cve.org/CVERecord?id=CVE-2023-2166
- https://nvd.nist.gov/vuln/detail/CVE-2023-2166
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=0acc442309a0a1b01bcdaa135e56e6398a49439c
- https://access.redhat.com/security/cve/CVE-2023-2176
- https://www.cve.org/CVERecord?id=CVE-2023-2176
- https://nvd.nist.gov/vuln/detail/CVE-2023-2176
- https://www.spinics.net/lists/linux-rdma/msg114749.html
- https://access.redhat.com/security/cve/CVE-2023-4921
- https://www.cve.org/CVERecord?id=CVE-2023-4921
- https://nvd.nist.gov/vuln/detail/CVE-2023-4921
- https://github.com/torvalds/linux/commit/8fc134fee27f2263988ae38920bc03da416b03d8
- https://access.redhat.com/security/cve/CVE-2023-5633
- https://www.cve.org/CVERecord?id=CVE-2023-5633
- https://nvd.nist.gov/vuln/detail/CVE-2023-5633
- https://access.redhat.com/security/cve/CVE-2023-6606
- https://www.cve.org/CVERecord?id=CVE-2023-6606
- https://nvd.nist.gov/vuln/detail/CVE-2023-6606
- https://bugzilla.kernel.org/show_bug.cgi?id=218218
- https://access.redhat.com/security/cve/CVE-2023-6610
- https://www.cve.org/CVERecord?id=CVE-2023-6610
- https://nvd.nist.gov/vuln/detail/CVE-2023-6610
- https://bugzilla.kernel.org/show_bug.cgi?id=218219
- https://access.redhat.com/security/cve/CVE-2023-6817
- https://www.cve.org/CVERecord?id=CVE-2023-6817
- https://nvd.nist.gov/vuln/detail/CVE-2023-6817
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=317eb9685095678f2c9f5a8189de698c5354316a
- https://access.redhat.com/security/cve/CVE-2023-6931
- https://www.cve.org/CVERecord?id=CVE-2023-6931
- https://nvd.nist.gov/vuln/detail/CVE-2023-6931
- https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git/commit/?id=382c27f4ed28f803b1f1473ac2d8db0afc795a1b
- https://access.redhat.com/security/cve/CVE-2023-6932
- https://www.cve.org/CVERecord?id=CVE-2023-6932
- https://nvd.nist.gov/vuln/detail/CVE-2023-6932
- https://access.redhat.com/security/cve/CVE-2023-7192
- https://www.cve.org/CVERecord?id=CVE-2023-7192
- https://nvd.nist.gov/vuln/detail/CVE-2023-7192
- https://git.kernel.org/pub/scm/linux/kernel/git/netdev/net.git/commit/?id=ac4893980bbe79ce383daf9a0885666a30fe4c83
- https://access.redhat.com/security/cve/CVE-2023-28772
- https://www.cve.org/CVERecord?id=CVE-2023-28772
- https://nvd.nist.gov/vuln/detail/CVE-2023-28772
- https://github.com/torvalds/linux/commit/d3b16034a24a112bb83aeb669ac5b9b01f744bb7
- https://access.redhat.com/security/cve/CVE-2023-30456
- https://www.cve.org/CVERecord?id=CVE-2023-30456
- https://nvd.nist.gov/vuln/detail/CVE-2023-30456
- https://access.redhat.com/security/cve/CVE-2023-31084
- https://www.cve.org/CVERecord?id=CVE-2023-31084
- https://nvd.nist.gov/vuln/detail/CVE-2023-31084
- https://access.redhat.com/security/cve/CVE-2023-33951
- https://www.cve.org/CVERecord?id=CVE-2023-33951
- https://nvd.nist.gov/vuln/detail/CVE-2023-33951
- https://www.zerodayinitiative.com/advisories/ZDI-CAN-20110/
- https://access.redhat.com/security/cve/CVE-2023-33952
- https://www.cve.org/CVERecord?id=CVE-2023-33952
- https://nvd.nist.gov/vuln/detail/CVE-2023-33952
- https://www.zerodayinitiative.com/advisories/ZDI-CAN-20292
- https://access.redhat.com/security/cve/CVE-2023-40283
- https://www.cve.org/CVERecord?id=CVE-2023-40283
- https://nvd.nist.gov/vuln/detail/CVE-2023-40283
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=1728137b33c00d5a2b5110ed7aafb42e7c32e4a1
- https://access.redhat.com/security/cve/CVE-2023-45862
- https://www.cve.org/CVERecord?id=CVE-2023-45862
- https://nvd.nist.gov/vuln/detail/CVE-2023-45862
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=ce33e64c1788912976b61314b56935abd4bc97ef
- https://access.redhat.com/security/cve/CVE-2023-51042
- https://www.cve.org/CVERecord?id=CVE-2023-51042
- https://nvd.nist.gov/vuln/detail/CVE-2023-51042
- https://github.com/torvalds/linux/commit/2e54154b9f27262efd0cb4f903cc7d5ad1fe9628
- https://access.redhat.com/security/cve/CVE-2023-51043
- https://www.cve.org/CVERecord?id=CVE-2023-51043
- https://nvd.nist.gov/vuln/detail/CVE-2023-51043
- https://github.com/torvalds/linux/commit/4e076c73e4f6e90816b30fcd4a0d7ab365087255
- https://access.redhat.com/security/cve/CVE-2023-53421
- https://bugzilla.redhat.com/show_bug.cgi?id=2396500
- https://www.cve.org/CVERecord?id=CVE-2023-53421
- https://nvd.nist.gov/vuln/detail/CVE-2023-53421
- https://lore.kernel.org/linux-cve-announce/2025091855-CVE-2023-53421-0dd9@gregkh/T
- https://access.redhat.com/security/cve/CVE-2024-0565
- https://www.cve.org/CVERecord?id=CVE-2024-0565
- https://nvd.nist.gov/vuln/detail/CVE-2024-0565
- https://www.spinics.net/lists/stable-commits/msg328851.html
- https://access.redhat.com/security/cve/CVE-2024-0646
- https://www.cve.org/CVERecord?id=CVE-2024-0646
- https://nvd.nist.gov/vuln/detail/CVE-2024-0646
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=c5a595000e267
- https://access.redhat.com/security/cve/CVE-2024-1086
- https://www.cve.org/CVERecord?id=CVE-2024-1086
- https://nvd.nist.gov/vuln/detail/CVE-2024-1086
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=f342de4e2f33e0e39165d8639387aa6c19dff660
- https://kernel.dance/f342de4e2f33e0e39165d8639387aa6c19dff660
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog