RHSA-2024:3414
Vulnerability Summary
Timeline
Description
Red Hat Security Advisory: kernel-rt security and bug fix update
CVSS Metrics
- v3.1•HIGH•Score: 7.8CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected Systems
- redhat•kernel-rt
< 0:5.14.0-70.101.1.rt21.173.el9_0 | < 0:5.14.0-70.101.1.rt21.173.el9_0
- redhat•kernel-rt-core
< 0:5.14.0-70.101.1.rt21.173.el9_0 | < 0:5.14.0-70.101.1.rt21.173.el9_0
- redhat•kernel-rt-debug
< 0:5.14.0-70.101.1.rt21.173.el9_0 | < 0:5.14.0-70.101.1.rt21.173.el9_0
- redhat•kernel-rt-debug-core
< 0:5.14.0-70.101.1.rt21.173.el9_0 | < 0:5.14.0-70.101.1.rt21.173.el9_0
- redhat•kernel-rt-debug-debuginfo
< 0:5.14.0-70.101.1.rt21.173.el9_0 | < 0:5.14.0-70.101.1.rt21.173.el9_0
- redhat•kernel-rt-debug-devel
< 0:5.14.0-70.101.1.rt21.173.el9_0 | < 0:5.14.0-70.101.1.rt21.173.el9_0
- redhat•kernel-rt-debug-kvm
< 0:5.14.0-70.101.1.rt21.173.el9_0 | < 0:5.14.0-70.101.1.rt21.173.el9_0
- redhat•kernel-rt-debug-modules
< 0:5.14.0-70.101.1.rt21.173.el9_0 | < 0:5.14.0-70.101.1.rt21.173.el9_0
- redhat•kernel-rt-debug-modules-extra
< 0:5.14.0-70.101.1.rt21.173.el9_0 | < 0:5.14.0-70.101.1.rt21.173.el9_0
- redhat•kernel-rt-debuginfo
< 0:5.14.0-70.101.1.rt21.173.el9_0 | < 0:5.14.0-70.101.1.rt21.173.el9_0
- redhat•kernel-rt-debuginfo-common-x86_64
< 0:5.14.0-70.101.1.rt21.173.el9_0 | < 0:5.14.0-70.101.1.rt21.173.el9_0
- redhat•kernel-rt-devel
< 0:5.14.0-70.101.1.rt21.173.el9_0 | < 0:5.14.0-70.101.1.rt21.173.el9_0
- redhat•kernel-rt-kvm
< 0:5.14.0-70.101.1.rt21.173.el9_0 | < 0:5.14.0-70.101.1.rt21.173.el9_0
- redhat•kernel-rt-modules
< 0:5.14.0-70.101.1.rt21.173.el9_0 | < 0:5.14.0-70.101.1.rt21.173.el9_0
- redhat•kernel-rt-modules-extra
< 0:5.14.0-70.101.1.rt21.173.el9_0 | < 0:5.14.0-70.101.1.rt21.173.el9_0
References (37)
- https://access.redhat.com/errata/RHSA-2024:3414
- https://access.redhat.com/security/updates/classification/#important
- https://bugzilla.redhat.com/show_bug.cgi?id=2235306
- https://bugzilla.redhat.com/show_bug.cgi?id=2250843
- https://bugzilla.redhat.com/show_bug.cgi?id=2255139
- https://bugzilla.redhat.com/show_bug.cgi?id=2262126
- https://bugzilla.redhat.com/show_bug.cgi?id=2265645
- https://bugzilla.redhat.com/show_bug.cgi?id=2272041
- https://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_3414.json
- https://access.redhat.com/security/cve/CVE-2023-4244
- https://www.cve.org/CVERecord?id=CVE-2023-4244
- https://nvd.nist.gov/vuln/detail/CVE-2023-4244
- https://lore.kernel.org/netdev/20230810070830.24064-1-pablo@netfilter.org/
- https://lore.kernel.org/netdev/20230815223011.7019-1-fw@strlen.de/
- https://access.redhat.com/security/cve/CVE-2023-6240
- https://www.cve.org/CVERecord?id=CVE-2023-6240
- https://nvd.nist.gov/vuln/detail/CVE-2023-6240
- https://people.redhat.com/~hkario/marvin/
- https://securitypitfalls.wordpress.com/2023/10/16/experiment-with-side-channel-attacks-yourself/
- https://access.redhat.com/security/cve/CVE-2023-6817
- https://www.cve.org/CVERecord?id=CVE-2023-6817
- https://nvd.nist.gov/vuln/detail/CVE-2023-6817
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=317eb9685095678f2c9f5a8189de698c5354316a
- https://access.redhat.com/security/cve/CVE-2023-52628
- https://www.cve.org/CVERecord?id=CVE-2023-52628
- https://nvd.nist.gov/vuln/detail/CVE-2023-52628
- https://lore.kernel.org/linux-cve-announce/2024032850-CVE-2023-52628-14fb@gregkh/T
- https://access.redhat.com/security/cve/CVE-2024-1086
- https://www.cve.org/CVERecord?id=CVE-2024-1086
- https://nvd.nist.gov/vuln/detail/CVE-2024-1086
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=f342de4e2f33e0e39165d8639387aa6c19dff660
- https://kernel.dance/f342de4e2f33e0e39165d8639387aa6c19dff660
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog
- https://access.redhat.com/security/cve/CVE-2024-26586
- https://www.cve.org/CVERecord?id=CVE-2024-26586
- https://nvd.nist.gov/vuln/detail/CVE-2024-26586
- https://lore.kernel.org/linux-cve-announce/2024022253-CVE-2024-26586-6632@gregkh/T/#u