- Issued:
- 2021-01-14
- Updated:
- 2021-01-14
RHSA-2021:0136 - Security Advisory
Synopsis
Moderate: kernel-rt security and bug fix update
Type/Severity
Security Advisory: Moderate
Red Hat Insights patch analysis
Identify and remediate systems affected by this advisory.
Topic
An update for kernel-rt is now available for Red Hat Enterprise Linux 8.2 Extended Update Support.
Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Description
The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements.
Security Fix(es):
- kernel: soft-lockups in iov_iter_copy_from_user_atomic() could result in DoS (CVE-2020-25641)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Bug Fix(es):
- kernel-rt: update RT source tree to the latest RHEL-8.2.z6 Batch source tree (BZ#1902783)
Solution
For details on how to apply this update, which includes the changes described in this advisory, refer to:
https://access.redhat.com/articles/11258
The system must be rebooted for this update to take effect.
Affected Products
- Red Hat Enterprise Linux for Real Time - Telecommunications Update Service 8.2 x86_64
- Red Hat Enterprise Linux for Real Time for NFV - Telecommunications Update Service 8.2 x86_64
Fixes
- BZ - 1881424 - CVE-2020-25641 kernel: soft-lockups in iov_iter_copy_from_user_atomic() could result in DoS
CVEs
Red Hat Enterprise Linux for Real Time - Telecommunications Update Service 8.2
SRPM | |
---|---|
kernel-rt-4.18.0-193.40.1.rt13.90.el8_2.src.rpm | SHA-256: c282d9d271170080c7e53e5c3b2fe62efa8b603b589650decb00b31aa5663dfa |
x86_64 | |
kernel-rt-4.18.0-193.40.1.rt13.90.el8_2.x86_64.rpm | SHA-256: 94df4cd989973511a86bfc679239fc19181819ea2edcf76ffd37fa924df00d27 |
kernel-rt-core-4.18.0-193.40.1.rt13.90.el8_2.x86_64.rpm | SHA-256: 16f72ee53afc7e11cb89346a97e3729799435552093f276c21d998a400c4dfa4 |
kernel-rt-debug-4.18.0-193.40.1.rt13.90.el8_2.x86_64.rpm | SHA-256: 232335bc5be3c2a9c6cc48616f5bf903372ff871488098ac280b0de0f79bf2cf |
kernel-rt-debug-core-4.18.0-193.40.1.rt13.90.el8_2.x86_64.rpm | SHA-256: 3455a963cd3de1435b8f81d38c1e5938fd9a8b865c4c5c8379657616fc22aa02 |
kernel-rt-debug-debuginfo-4.18.0-193.40.1.rt13.90.el8_2.x86_64.rpm | SHA-256: e0cbcc7da67f89ac06150ddfe39830bb68e0e23777e9165d06c30b59d85f3cae |
kernel-rt-debug-devel-4.18.0-193.40.1.rt13.90.el8_2.x86_64.rpm | SHA-256: c80c445d41fad8fb1a3af387a28e3f28158f4905f8c219ca3e490130e02eb515 |
kernel-rt-debug-modules-4.18.0-193.40.1.rt13.90.el8_2.x86_64.rpm | SHA-256: 3c159eb00b4ca6ac7b8a737d4ce6b919a42418f712d892fa1e593f238f2aa2e0 |
kernel-rt-debug-modules-extra-4.18.0-193.40.1.rt13.90.el8_2.x86_64.rpm | SHA-256: 05b30b8cc96668f29776908133d1ec72e1d786406a2b3bd4a071f3228487d310 |
kernel-rt-debuginfo-4.18.0-193.40.1.rt13.90.el8_2.x86_64.rpm | SHA-256: e0a21145caa15da659c974927f74a831035d0b0335fad7f0eecb29db93528333 |
kernel-rt-debuginfo-common-x86_64-4.18.0-193.40.1.rt13.90.el8_2.x86_64.rpm | SHA-256: 201658e837e051eafcd44f88cd7e0efecdec3986c6f908504c1b03eb3ee122f8 |
kernel-rt-devel-4.18.0-193.40.1.rt13.90.el8_2.x86_64.rpm | SHA-256: 5588d73ef015bd5861cc0eb4ea99d6c00f49fdc15f8c21ba9ff8d94da7f3aa2f |
kernel-rt-modules-4.18.0-193.40.1.rt13.90.el8_2.x86_64.rpm | SHA-256: d2b46c0cb6110ed0304071da1011fccc826c9d79d866ad410f750ca30bd30ed7 |
kernel-rt-modules-extra-4.18.0-193.40.1.rt13.90.el8_2.x86_64.rpm | SHA-256: 534c121d2e89b90406926ab79cc2a80da707ee7b1e98ab6d046826c4adcf214f |
Red Hat Enterprise Linux for Real Time for NFV - Telecommunications Update Service 8.2
SRPM | |
---|---|
kernel-rt-4.18.0-193.40.1.rt13.90.el8_2.src.rpm | SHA-256: c282d9d271170080c7e53e5c3b2fe62efa8b603b589650decb00b31aa5663dfa |
x86_64 | |
kernel-rt-4.18.0-193.40.1.rt13.90.el8_2.x86_64.rpm | SHA-256: 94df4cd989973511a86bfc679239fc19181819ea2edcf76ffd37fa924df00d27 |
kernel-rt-core-4.18.0-193.40.1.rt13.90.el8_2.x86_64.rpm | SHA-256: 16f72ee53afc7e11cb89346a97e3729799435552093f276c21d998a400c4dfa4 |
kernel-rt-debug-4.18.0-193.40.1.rt13.90.el8_2.x86_64.rpm | SHA-256: 232335bc5be3c2a9c6cc48616f5bf903372ff871488098ac280b0de0f79bf2cf |
kernel-rt-debug-core-4.18.0-193.40.1.rt13.90.el8_2.x86_64.rpm | SHA-256: 3455a963cd3de1435b8f81d38c1e5938fd9a8b865c4c5c8379657616fc22aa02 |
kernel-rt-debug-debuginfo-4.18.0-193.40.1.rt13.90.el8_2.x86_64.rpm | SHA-256: e0cbcc7da67f89ac06150ddfe39830bb68e0e23777e9165d06c30b59d85f3cae |
kernel-rt-debug-devel-4.18.0-193.40.1.rt13.90.el8_2.x86_64.rpm | SHA-256: c80c445d41fad8fb1a3af387a28e3f28158f4905f8c219ca3e490130e02eb515 |
kernel-rt-debug-kvm-4.18.0-193.40.1.rt13.90.el8_2.x86_64.rpm | SHA-256: 8447bbcf990e8ec10592883ac85200d09df63efa1f8eceb27c677174ea0bffc8 |
kernel-rt-debug-modules-4.18.0-193.40.1.rt13.90.el8_2.x86_64.rpm | SHA-256: 3c159eb00b4ca6ac7b8a737d4ce6b919a42418f712d892fa1e593f238f2aa2e0 |
kernel-rt-debug-modules-extra-4.18.0-193.40.1.rt13.90.el8_2.x86_64.rpm | SHA-256: 05b30b8cc96668f29776908133d1ec72e1d786406a2b3bd4a071f3228487d310 |
kernel-rt-debuginfo-4.18.0-193.40.1.rt13.90.el8_2.x86_64.rpm | SHA-256: e0a21145caa15da659c974927f74a831035d0b0335fad7f0eecb29db93528333 |
kernel-rt-debuginfo-common-x86_64-4.18.0-193.40.1.rt13.90.el8_2.x86_64.rpm | SHA-256: 201658e837e051eafcd44f88cd7e0efecdec3986c6f908504c1b03eb3ee122f8 |
kernel-rt-devel-4.18.0-193.40.1.rt13.90.el8_2.x86_64.rpm | SHA-256: 5588d73ef015bd5861cc0eb4ea99d6c00f49fdc15f8c21ba9ff8d94da7f3aa2f |
kernel-rt-kvm-4.18.0-193.40.1.rt13.90.el8_2.x86_64.rpm | SHA-256: b61e6da34f4c53a0bc71c6fc581163f1cb71fe76804ea8f3a765c0765417fcf4 |
kernel-rt-modules-4.18.0-193.40.1.rt13.90.el8_2.x86_64.rpm | SHA-256: d2b46c0cb6110ed0304071da1011fccc826c9d79d866ad410f750ca30bd30ed7 |
kernel-rt-modules-extra-4.18.0-193.40.1.rt13.90.el8_2.x86_64.rpm | SHA-256: 534c121d2e89b90406926ab79cc2a80da707ee7b1e98ab6d046826c4adcf214f |
The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.