[CLSA-2023:1701963303] kernel: Fix of 18 CVEs
Type:
security
Severity:
Critical
Release date:
2023-12-07
Description:
- net/tls: do not free tls_rec on async operation in bpf_exec_tx_verdict() {CVE-2023-6176} - wifi: mac80211: fix MBSSID parsing use-after-free {CVE-2022-42719} - mac80211: always allocate struct ieee802_11_elems {CVE-2022-42719} - x86/sev: Check for user-space IOIO pointing to kernel space {CVE-2023-46813} - x86/sev: Check IOBM for IOIO exceptions from user-space {CVE-2023-46813} - x86/sev: Disable MMIO emulation from user mode {CVE-2023-46813} - netfilter: nftables: exthdr: fix 4-byte stack OOB write {CVE-2023-4881} - net: sched: sch_qfq: Fix UAF in qfq_dequeue() {CVE-2023-4921} - netfilter: ipset: add the missing IP_SET_HASH_WITH_NET0 macro for ip_set_hash_netportnet.c {CVE-2023-42753} - net/sched: cls_tcindex: downgrade to imperfect hash {CVE-2023-1829} - USB: ene_usb6250: Allocate enough memory for full object {CVE-2023-45862} - igb: set max size RX buffer when store bad packet is enabled {CVE-2023-45871} - net/sched: sch_hfsc: Ensure inner classes have fsc curve {CVE-2023-4623} - Fix double fget() in vhost_net_set_backend() {CVE-2023-1838} - nvmet-tcp: Fix a possible UAF in queue intialization setup {CVE-2023-5178} - drm/qxl: fix UAF on handle creation {CVE-2023-39198} - net: add kerneldoc comment for sk_peer_lock {CVE-2021-4203} - af_unix: fix races in sk_peer_pid and sk_peer_cred accesses {CVE-2021-4203} - block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern {CVE-2022-0494} - media: ov519: add missing endpoint sanity checks {CVE-2020-11608} - act_mirred: use the backlog for nested calls to mirred ingress {CVE-2022-4269} - net/sched: act_mirred: better wording on protection against excessive stack growth {CVE-2022-4269} - inet: use bigger hash table for IP ID generation {CVE-2021-45486} - net: revert "net: get rid of an signed integer overflow in ip_idents_reserve()" {CVE-2021-45486}
Updated packages:
  • bpftool-4.18.0-305.25.1.el8_4.tuxcare.els12.x86_64.rpm
    sha:b9af702da340045d417e5259303b75c61036f515
  • kernel-4.18.0-305.25.1.el8_4.tuxcare.els12.x86_64.rpm
    sha:89adf3c361ebb25f4127b29a526231075d9e9da0
  • kernel-core-4.18.0-305.25.1.el8_4.tuxcare.els12.x86_64.rpm
    sha:5098a613758cf1141ac8040d8242e08703a29655
  • kernel-cross-headers-4.18.0-305.25.1.el8_4.tuxcare.els12.x86_64.rpm
    sha:38f9e7ceeaad25cba4cff76ef7182beddeb6d317
  • kernel-debug-4.18.0-305.25.1.el8_4.tuxcare.els12.x86_64.rpm
    sha:2376c0998f4662702a9fdf03c7faded92f8febf9
  • kernel-debug-core-4.18.0-305.25.1.el8_4.tuxcare.els12.x86_64.rpm
    sha:4f90432acca766ddedd078d060ef8acd9847ae0c
  • kernel-debug-devel-4.18.0-305.25.1.el8_4.tuxcare.els12.x86_64.rpm
    sha:d6962f200a164340311d1f0c22b62a1f715ac567
  • kernel-debug-modules-4.18.0-305.25.1.el8_4.tuxcare.els12.x86_64.rpm
    sha:b65f9b44a9ae879203bb49fc78e138bdb9085c86
  • kernel-debug-modules-extra-4.18.0-305.25.1.el8_4.tuxcare.els12.x86_64.rpm
    sha:11abbea110fde0d3a6051e47b2bea9bd749ef56b
  • kernel-debug-modules-internal-4.18.0-305.25.1.el8_4.tuxcare.els12.x86_64.rpm
    sha:1aafc7d9b836e0bae4e4b9c962118eaa5b1bc4c0
  • kernel-devel-4.18.0-305.25.1.el8_4.tuxcare.els12.x86_64.rpm
    sha:4783f486772fd6fc5c58e49689c5270bf599b7b7
  • kernel-headers-4.18.0-305.25.1.el8_4.tuxcare.els12.x86_64.rpm
    sha:86f976574a068ef17db59d67892fa4968078451c
  • kernel-ipaclones-internal-4.18.0-305.25.1.el8_4.tuxcare.els12.x86_64.rpm
    sha:360de844d1a72e67dcc127b696bebe495a7ea005
  • kernel-modules-4.18.0-305.25.1.el8_4.tuxcare.els12.x86_64.rpm
    sha:892b054387d0383a1a6e138588fda21068e58e9d
  • kernel-modules-extra-4.18.0-305.25.1.el8_4.tuxcare.els12.x86_64.rpm
    sha:3c9452394b8d216e96d20082390c55f2f2d539e0
  • kernel-modules-internal-4.18.0-305.25.1.el8_4.tuxcare.els12.x86_64.rpm
    sha:47fb6ccbd8cf9bd282ba407c54a8d8fa621a2fb1
  • kernel-selftests-internal-4.18.0-305.25.1.el8_4.tuxcare.els12.x86_64.rpm
    sha:254747186ce6d5b17d0591914f772dfe3b1549c7
  • kernel-tools-4.18.0-305.25.1.el8_4.tuxcare.els12.x86_64.rpm
    sha:14f35a929afe830d03eb222ed23bf0e994d89d43
  • kernel-tools-libs-4.18.0-305.25.1.el8_4.tuxcare.els12.x86_64.rpm
    sha:fca35b6a8049725a1965b7e85fb3ffcb13776eed
  • kernel-tools-libs-devel-4.18.0-305.25.1.el8_4.tuxcare.els12.x86_64.rpm
    sha:d457dfac20e9bc239f98d2a97688c1533e774b6e
  • perf-4.18.0-305.25.1.el8_4.tuxcare.els12.x86_64.rpm
    sha:cb4fdec556cb748ab340c16e816943253641704a
  • python3-perf-4.18.0-305.25.1.el8_4.tuxcare.els12.x86_64.rpm
    sha:a103b0de99de4923b58bfe0542d4f49a5c5c1956
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.