RHSA-2024:5257
Vulnerability Summary
Timeline
Description
Red Hat Security Advisory: kernel security update
CVSS Metrics
- v3.1•HIGH•Score: 7.8CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected Systems
- redhat•bpftool
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•bpftool-debuginfo
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel-abi-stablelists
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel-core
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel-debug
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel-debug-core
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel-debug-debuginfo
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel-debug-devel
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel-debug-devel-matched
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel-debug-modules
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel-debug-modules-extra
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel-debuginfo
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel-debuginfo-common-aarch64
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel-debuginfo-common-ppc64le
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel-debuginfo-common-s390x
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel-debuginfo-common-x86_64
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel-devel
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel-devel-matched
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel-doc
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel-modules
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel-modules-extra
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel-tools
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel-tools-debuginfo
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel-tools-libs
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel-zfcpdump
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel-zfcpdump-core
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel-zfcpdump-debuginfo
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel-zfcpdump-devel
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel-zfcpdump-devel-matched
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel-zfcpdump-modules
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•kernel-zfcpdump-modules-extra
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•perf
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•perf-debuginfo
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•python3-perf
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
- redhat•python3-perf-debuginfo
< 0:5.14.0-70.112.1.el9_0 | < 0:5.14.0-70.112.1.el9_0
References (90)
- https://access.redhat.com/errata/RHSA-2024:5257
- https://access.redhat.com/security/updates/classification/#important
- https://bugzilla.redhat.com/show_bug.cgi?id=2270881
- https://bugzilla.redhat.com/show_bug.cgi?id=2273080
- https://bugzilla.redhat.com/show_bug.cgi?id=2273405
- https://bugzilla.redhat.com/show_bug.cgi?id=2277238
- https://bugzilla.redhat.com/show_bug.cgi?id=2278314
- https://bugzilla.redhat.com/show_bug.cgi?id=2278989
- https://bugzilla.redhat.com/show_bug.cgi?id=2280434
- https://bugzilla.redhat.com/show_bug.cgi?id=2280745
- https://bugzilla.redhat.com/show_bug.cgi?id=2281127
- https://bugzilla.redhat.com/show_bug.cgi?id=2281669
- https://bugzilla.redhat.com/show_bug.cgi?id=2281672
- https://bugzilla.redhat.com/show_bug.cgi?id=2292331
- https://bugzilla.redhat.com/show_bug.cgi?id=2297474
- https://bugzilla.redhat.com/show_bug.cgi?id=2297562
- https://bugzilla.redhat.com/show_bug.cgi?id=2298108
- https://bugzilla.redhat.com/show_bug.cgi?id=2299240
- https://bugzilla.redhat.com/show_bug.cgi?id=2299336
- https://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_5257.json
- https://access.redhat.com/security/cve/CVE-2021-47624
- https://www.cve.org/CVERecord?id=CVE-2021-47624
- https://nvd.nist.gov/vuln/detail/CVE-2021-47624
- https://lore.kernel.org/linux-cve-announce/2024071646-CVE-2021-47624-86cd@gregkh/T
- https://access.redhat.com/security/cve/CVE-2023-52639
- https://www.cve.org/CVERecord?id=CVE-2023-52639
- https://nvd.nist.gov/vuln/detail/CVE-2023-52639
- https://lore.kernel.org/linux-cve-announce/2024040335-CVE-2023-52639-5b67@gregkh/T
- https://access.redhat.com/security/cve/CVE-2024-21823
- https://www.cve.org/CVERecord?id=CVE-2024-21823
- https://nvd.nist.gov/vuln/detail/CVE-2024-21823
- https://access.redhat.com/security/cve/CVE-2024-26642
- https://www.cve.org/CVERecord?id=CVE-2024-26642
- https://nvd.nist.gov/vuln/detail/CVE-2024-26642
- https://lore.kernel.org/linux-cve-announce/2024032150-CVE-2024-26642-3549@gregkh/T
- https://access.redhat.com/security/cve/CVE-2024-26808
- https://www.cve.org/CVERecord?id=CVE-2024-26808
- https://nvd.nist.gov/vuln/detail/CVE-2024-26808
- https://lore.kernel.org/linux-cve-announce/2024040458-CVE-2024-26808-2df2@gregkh/T
- https://access.redhat.com/security/cve/CVE-2024-26993
- https://www.cve.org/CVERecord?id=CVE-2024-26993
- https://nvd.nist.gov/vuln/detail/CVE-2024-26993
- https://lore.kernel.org/linux-cve-announce/2024050144-CVE-2024-26993-fe52@gregkh/T
- https://access.redhat.com/security/cve/CVE-2024-27393
- https://www.cve.org/CVERecord?id=CVE-2024-27393
- https://nvd.nist.gov/vuln/detail/CVE-2024-27393
- https://lore.kernel.org/linux-cve-announce/2024050835-CVE-2024-27393-b804@gregkh/T
- https://access.redhat.com/security/cve/CVE-2024-27397
- https://www.cve.org/CVERecord?id=CVE-2024-27397
- https://nvd.nist.gov/vuln/detail/CVE-2024-27397
- https://lore.kernel.org/linux-cve-announce/2024050837-CVE-2024-27397-fd1e@gregkh/T
- https://access.redhat.com/security/cve/CVE-2024-27403
- https://www.cve.org/CVERecord?id=CVE-2024-27403
- https://nvd.nist.gov/vuln/detail/CVE-2024-27403
- https://lore.kernel.org/linux-cve-announce/2024051738-CVE-2024-27403-c4ba@gregkh/T
- https://access.redhat.com/security/cve/CVE-2024-35897
- https://www.cve.org/CVERecord?id=CVE-2024-35897
- https://nvd.nist.gov/vuln/detail/CVE-2024-35897
- https://lore.kernel.org/linux-cve-announce/2024051951-CVE-2024-35897-1585@gregkh/T
- https://access.redhat.com/security/cve/CVE-2024-35898
- https://www.cve.org/CVERecord?id=CVE-2024-35898
- https://nvd.nist.gov/vuln/detail/CVE-2024-35898
- https://lore.kernel.org/linux-cve-announce/2024051951-CVE-2024-35898-a10e@gregkh/T
- https://access.redhat.com/security/cve/CVE-2024-36886
- https://www.cve.org/CVERecord?id=CVE-2024-36886
- https://nvd.nist.gov/vuln/detail/CVE-2024-36886
- https://lore.kernel.org/all/752f1ccf762223d109845365d07f55414058e5a3.1714484273.git.pabeni@redhat.com/
- https://lore.kernel.org/linux-cve-announce/2024053033-CVE-2024-36886-dd83@gregkh/T/#u
- https://access.redhat.com/security/cve/CVE-2024-36971
- https://www.cve.org/CVERecord?id=CVE-2024-36971
- https://nvd.nist.gov/vuln/detail/CVE-2024-36971
- https://lore.kernel.org/linux-cve-announce/20240610090330.1347021-2-lee@kernel.org/T
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog
- https://access.redhat.com/security/cve/CVE-2024-39502
- https://www.cve.org/CVERecord?id=CVE-2024-39502
- https://nvd.nist.gov/vuln/detail/CVE-2024-39502
- https://lore.kernel.org/linux-cve-announce/2024071204-CVE-2024-39502-afe9@gregkh/T
- https://access.redhat.com/security/cve/CVE-2024-40978
- https://www.cve.org/CVERecord?id=CVE-2024-40978
- https://nvd.nist.gov/vuln/detail/CVE-2024-40978
- https://lore.kernel.org/linux-cve-announce/2024071231-CVE-2024-40978-d135@gregkh/T
- https://access.redhat.com/security/cve/CVE-2024-41090
- https://www.cve.org/CVERecord?id=CVE-2024-41090
- https://nvd.nist.gov/vuln/detail/CVE-2024-41090
- https://lore.kernel.org/linux-cve-announce/2024072916-CVE-2024-41090-9830@gregkh
- https://www.openwall.com/lists/oss-security/2024/07/24/4
- https://access.redhat.com/security/cve/CVE-2024-41091
- https://www.cve.org/CVERecord?id=CVE-2024-41091
- https://nvd.nist.gov/vuln/detail/CVE-2024-41091
- https://lore.kernel.org/linux-cve-announce/2024072918-CVE-2024-41091-35b7@gregkh