RHSA-2024:3421
Vulnerability Summary
Timeline
Description
Red Hat Security Advisory: kernel security and bug fix update
CVSS Metrics
- v3.1•HIGH•Score: 7.8CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected Systems
- redhat•bpftool
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•bpftool-debuginfo
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-abi-stablelists
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-core
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-debug
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-debug-core
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-debug-debuginfo
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-debug-devel
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-debug-devel-matched
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-debug-modules
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-debug-modules-extra
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-debuginfo
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-debuginfo-common-aarch64
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-debuginfo-common-ppc64le
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-debuginfo-common-s390x
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-debuginfo-common-x86_64
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-devel
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-devel-matched
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-doc
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-modules
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-modules-extra
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-tools
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-tools-debuginfo
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-tools-libs
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-tools-libs-devel
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-zfcpdump
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-zfcpdump-core
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-zfcpdump-debuginfo
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-zfcpdump-devel
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-zfcpdump-devel-matched
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-zfcpdump-modules
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•kernel-zfcpdump-modules-extra
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•perf
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•perf-debuginfo
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•python3-perf
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
- redhat•python3-perf-debuginfo
< 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0 | < 0:5.14.0-70.101.1.el9_0
References (81)
- https://access.redhat.com/errata/RHSA-2024:3421
- https://access.redhat.com/security/updates/classification/#important
- https://bugzilla.redhat.com/show_bug.cgi?id=2235306
- https://bugzilla.redhat.com/show_bug.cgi?id=2250843
- https://bugzilla.redhat.com/show_bug.cgi?id=2255139
- https://bugzilla.redhat.com/show_bug.cgi?id=2262126
- https://bugzilla.redhat.com/show_bug.cgi?id=2265645
- https://bugzilla.redhat.com/show_bug.cgi?id=2270836
- https://bugzilla.redhat.com/show_bug.cgi?id=2272041
- https://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_3421.json
- https://access.redhat.com/security/cve/CVE-2022-49920
- https://bugzilla.redhat.com/show_bug.cgi?id=2363410
- https://www.cve.org/CVERecord?id=CVE-2022-49920
- https://nvd.nist.gov/vuln/detail/CVE-2022-49920
- https://lore.kernel.org/linux-cve-announce/2025050108-CVE-2022-49920-667b@gregkh/T
- https://access.redhat.com/security/cve/CVE-2022-50048
- https://bugzilla.redhat.com/show_bug.cgi?id=2373580
- https://www.cve.org/CVERecord?id=CVE-2022-50048
- https://nvd.nist.gov/vuln/detail/CVE-2022-50048
- https://lore.kernel.org/linux-cve-announce/2025061845-CVE-2022-50048-40d7@gregkh/T
- https://access.redhat.com/security/cve/CVE-2022-50213
- https://bugzilla.redhat.com/show_bug.cgi?id=2373522
- https://www.cve.org/CVERecord?id=CVE-2022-50213
- https://nvd.nist.gov/vuln/detail/CVE-2022-50213
- https://lore.kernel.org/linux-cve-announce/2025061844-CVE-2022-50213-bc19@gregkh/T
- https://access.redhat.com/security/cve/CVE-2023-4244
- https://www.cve.org/CVERecord?id=CVE-2023-4244
- https://nvd.nist.gov/vuln/detail/CVE-2023-4244
- https://lore.kernel.org/netdev/20230810070830.24064-1-pablo@netfilter.org/
- https://lore.kernel.org/netdev/20230815223011.7019-1-fw@strlen.de/
- https://access.redhat.com/security/cve/CVE-2023-6240
- https://www.cve.org/CVERecord?id=CVE-2023-6240
- https://nvd.nist.gov/vuln/detail/CVE-2023-6240
- https://people.redhat.com/~hkario/marvin/
- https://securitypitfalls.wordpress.com/2023/10/16/experiment-with-side-channel-attacks-yourself/
- https://access.redhat.com/security/cve/CVE-2023-6817
- https://www.cve.org/CVERecord?id=CVE-2023-6817
- https://nvd.nist.gov/vuln/detail/CVE-2023-6817
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=317eb9685095678f2c9f5a8189de698c5354316a
- https://access.redhat.com/security/cve/CVE-2023-52628
- https://www.cve.org/CVERecord?id=CVE-2023-52628
- https://nvd.nist.gov/vuln/detail/CVE-2023-52628
- https://lore.kernel.org/linux-cve-announce/2024032850-CVE-2023-52628-14fb@gregkh/T
- https://access.redhat.com/security/cve/CVE-2023-52993
- https://bugzilla.redhat.com/show_bug.cgi?id=2355492
- https://www.cve.org/CVERecord?id=CVE-2023-52993
- https://nvd.nist.gov/vuln/detail/CVE-2023-52993
- https://lore.kernel.org/linux-cve-announce/2025032709-CVE-2023-52993-3697@gregkh/T
- https://access.redhat.com/security/cve/CVE-2023-53566
- https://bugzilla.redhat.com/show_bug.cgi?id=2401550
- https://www.cve.org/CVERecord?id=CVE-2023-53566
- https://nvd.nist.gov/vuln/detail/CVE-2023-53566
- https://lore.kernel.org/linux-cve-announce/2025100451-CVE-2023-53566-1c57@gregkh/T
- https://access.redhat.com/security/cve/CVE-2024-1086
- https://www.cve.org/CVERecord?id=CVE-2024-1086
- https://nvd.nist.gov/vuln/detail/CVE-2024-1086
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=f342de4e2f33e0e39165d8639387aa6c19dff660
- https://kernel.dance/f342de4e2f33e0e39165d8639387aa6c19dff660
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog
- https://access.redhat.com/security/cve/CVE-2024-25742
- https://www.cve.org/CVERecord?id=CVE-2024-25742
- https://nvd.nist.gov/vuln/detail/CVE-2024-25742
- https://arxiv.org/html/2404.03526v1
- https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3008.html
- https://access.redhat.com/security/cve/CVE-2024-25743
- https://www.cve.org/CVERecord?id=CVE-2024-25743
- https://nvd.nist.gov/vuln/detail/CVE-2024-25743
- https://access.redhat.com/security/cve/CVE-2024-26586
- https://www.cve.org/CVERecord?id=CVE-2024-26586
- https://nvd.nist.gov/vuln/detail/CVE-2024-26586
- https://lore.kernel.org/linux-cve-announce/2024022253-CVE-2024-26586-6632@gregkh/T/#u
- https://access.redhat.com/security/cve/CVE-2023-53304
- https://bugzilla.redhat.com/show_bug.cgi?id=2395846
- https://www.cve.org/CVERecord?id=CVE-2023-53304
- https://nvd.nist.gov/vuln/detail/CVE-2023-53304
- https://lore.kernel.org/linux-cve-announce/2025091641-CVE-2023-53304-9a57@gregkh/T
- https://access.redhat.com/security/cve/CVE-2023-54035
- https://bugzilla.redhat.com/show_bug.cgi?id=2424970
- https://www.cve.org/CVERecord?id=CVE-2023-54035
- https://nvd.nist.gov/vuln/detail/CVE-2023-54035
- https://lore.kernel.org/linux-cve-announce/2025122438-CVE-2023-54035-76a5@gregkh/T