- Issued:
- 2023-07-18
- Updated:
- 2023-07-18
RHSA-2023:4150 - Security Advisory
Synopsis
Important: kernel-rt security and bug fix update
Type/Severity
Security Advisory: Important
Red Hat Insights patch analysis
Identify and remediate systems affected by this advisory.
Topic
An update for kernel-rt is now available for Red Hat Enterprise Linux 7.
Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Description
The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements.
Security Fix(es):
- kernel: use-after-free caused by l2cap_reassemble_sdu() in net/bluetooth/l2cap_core.c (CVE-2022-3564)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Bug Fix(es):
- kernel-rt: update to the latest RHEL7.9.z24 source tree (BZ#2212577)
Solution
For details on how to apply this update, which includes the changes described in this advisory, refer to:
https://access.redhat.com/articles/11258
The system must be rebooted for this update to take effect.
Affected Products
- Red Hat Enterprise Linux for Real Time 7 x86_64
- Red Hat Enterprise Linux for Real Time for NFV 7 x86_64
Fixes
- BZ - 2150999 - CVE-2022-3564 kernel: use-after-free caused by l2cap_reassemble_sdu() in net/bluetooth/l2cap_core.c
CVEs
Red Hat Enterprise Linux for Real Time 7
SRPM | |
---|---|
kernel-rt-3.10.0-1160.95.1.rt56.1241.el7.src.rpm | SHA-256: dd3313b749a53c995eb0cb76a3ad85045e58c78b94105162b545f4b2d693b548 |
x86_64 | |
kernel-rt-3.10.0-1160.95.1.rt56.1241.el7.x86_64.rpm | SHA-256: 661555c287e60f08c9c66bf245c00ce416f4d4dabb02ce9753885d59a878f11d |
kernel-rt-debug-3.10.0-1160.95.1.rt56.1241.el7.x86_64.rpm | SHA-256: 03af8a883fdb180b17dbc9b415f686b0c607ef49e6b654b87bf416dd188f16c2 |
kernel-rt-debug-debuginfo-3.10.0-1160.95.1.rt56.1241.el7.x86_64.rpm | SHA-256: 3ecaadfc2635bc6242071dfa2eb005e0a8a76cf0e55ef3c4fc6ede8b098a0c59 |
kernel-rt-debug-devel-3.10.0-1160.95.1.rt56.1241.el7.x86_64.rpm | SHA-256: 2c64f977cd2cbe5d77c2fd56d05304b52b85bd1776a57f0c5d7456bcbaa9dd60 |
kernel-rt-debuginfo-3.10.0-1160.95.1.rt56.1241.el7.x86_64.rpm | SHA-256: 110a5d99b2b871dca435b9ddcafee7aeacdf59345428c8d1653aeee350527119 |
kernel-rt-debuginfo-common-x86_64-3.10.0-1160.95.1.rt56.1241.el7.x86_64.rpm | SHA-256: ab72ffffe9515c434e0998d0ab78a26fbea72dda51a7a2bd97f43ad8789850b3 |
kernel-rt-devel-3.10.0-1160.95.1.rt56.1241.el7.x86_64.rpm | SHA-256: 7c7332fcad2d79e47e13425a14302a531a431a480f44665a36ea2cecff4aa5a5 |
kernel-rt-doc-3.10.0-1160.95.1.rt56.1241.el7.noarch.rpm | SHA-256: 898ba1bec1dc11a7bf59c6ae9dc171d93fc3654e397242863dc7043fc8849292 |
kernel-rt-trace-3.10.0-1160.95.1.rt56.1241.el7.x86_64.rpm | SHA-256: a164bac25b4e1db55f3e61adb30730651f0bed6a549d91dfefbebd6a6746dbc3 |
kernel-rt-trace-debuginfo-3.10.0-1160.95.1.rt56.1241.el7.x86_64.rpm | SHA-256: 50750be36315291ce26428695bb50d4b2ac06d6335718fd461e704de05803f48 |
kernel-rt-trace-devel-3.10.0-1160.95.1.rt56.1241.el7.x86_64.rpm | SHA-256: d9f558748aef994363416b7c7c39ce012b544d3e8aa49b10164ab3c10dcd6f35 |
Red Hat Enterprise Linux for Real Time for NFV 7
SRPM | |
---|---|
kernel-rt-3.10.0-1160.95.1.rt56.1241.el7.src.rpm | SHA-256: dd3313b749a53c995eb0cb76a3ad85045e58c78b94105162b545f4b2d693b548 |
x86_64 | |
kernel-rt-3.10.0-1160.95.1.rt56.1241.el7.x86_64.rpm | SHA-256: 661555c287e60f08c9c66bf245c00ce416f4d4dabb02ce9753885d59a878f11d |
kernel-rt-debug-3.10.0-1160.95.1.rt56.1241.el7.x86_64.rpm | SHA-256: 03af8a883fdb180b17dbc9b415f686b0c607ef49e6b654b87bf416dd188f16c2 |
kernel-rt-debug-debuginfo-3.10.0-1160.95.1.rt56.1241.el7.x86_64.rpm | SHA-256: 3ecaadfc2635bc6242071dfa2eb005e0a8a76cf0e55ef3c4fc6ede8b098a0c59 |
kernel-rt-debug-devel-3.10.0-1160.95.1.rt56.1241.el7.x86_64.rpm | SHA-256: 2c64f977cd2cbe5d77c2fd56d05304b52b85bd1776a57f0c5d7456bcbaa9dd60 |
kernel-rt-debug-kvm-3.10.0-1160.95.1.rt56.1241.el7.x86_64.rpm | SHA-256: c935f380255b564794424d23732ceaa0edbee37e77e1c92816a3d3b50fe6c5f2 |
kernel-rt-debug-kvm-debuginfo-3.10.0-1160.95.1.rt56.1241.el7.x86_64.rpm | SHA-256: b173ce91231c565a35ecd005f1f0afeb2ffa0b55df256f28cfc5bcd779bec92b |
kernel-rt-debuginfo-3.10.0-1160.95.1.rt56.1241.el7.x86_64.rpm | SHA-256: 110a5d99b2b871dca435b9ddcafee7aeacdf59345428c8d1653aeee350527119 |
kernel-rt-debuginfo-common-x86_64-3.10.0-1160.95.1.rt56.1241.el7.x86_64.rpm | SHA-256: ab72ffffe9515c434e0998d0ab78a26fbea72dda51a7a2bd97f43ad8789850b3 |
kernel-rt-devel-3.10.0-1160.95.1.rt56.1241.el7.x86_64.rpm | SHA-256: 7c7332fcad2d79e47e13425a14302a531a431a480f44665a36ea2cecff4aa5a5 |
kernel-rt-doc-3.10.0-1160.95.1.rt56.1241.el7.noarch.rpm | SHA-256: 898ba1bec1dc11a7bf59c6ae9dc171d93fc3654e397242863dc7043fc8849292 |
kernel-rt-kvm-3.10.0-1160.95.1.rt56.1241.el7.x86_64.rpm | SHA-256: 4b8ecbfc3d50cce1940a4dbc30d824d3fec5671fe1544cfa1c5a4e8996e0c1ae |
kernel-rt-kvm-debuginfo-3.10.0-1160.95.1.rt56.1241.el7.x86_64.rpm | SHA-256: b8670143f5439c0c61e359d149c5d6055e9ba734d915cd979a9513f82bcb7b91 |
kernel-rt-trace-3.10.0-1160.95.1.rt56.1241.el7.x86_64.rpm | SHA-256: a164bac25b4e1db55f3e61adb30730651f0bed6a549d91dfefbebd6a6746dbc3 |
kernel-rt-trace-debuginfo-3.10.0-1160.95.1.rt56.1241.el7.x86_64.rpm | SHA-256: 50750be36315291ce26428695bb50d4b2ac06d6335718fd461e704de05803f48 |
kernel-rt-trace-devel-3.10.0-1160.95.1.rt56.1241.el7.x86_64.rpm | SHA-256: d9f558748aef994363416b7c7c39ce012b544d3e8aa49b10164ab3c10dcd6f35 |
kernel-rt-trace-kvm-3.10.0-1160.95.1.rt56.1241.el7.x86_64.rpm | SHA-256: 04ff3d0e00cec46268d4d242c2b24b638da6a7c991180510da2cd14e83b816e6 |
kernel-rt-trace-kvm-debuginfo-3.10.0-1160.95.1.rt56.1241.el7.x86_64.rpm | SHA-256: 0fabb3512aef230eeb39d8b9e2ece8afc7b092ac301d59b89d9c44f7d92dee56 |
The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.