[CLSA-2023:1701962635] kernel: Fix of 18 CVEs
Type:
security
Severity:
Critical
Release date:
2023-12-07
Description:
- net/tls: do not free tls_rec on async operation in bpf_exec_tx_verdict() {CVE-2023-6176} - wifi: mac80211: fix MBSSID parsing use-after-free {CVE-2022-42719} - mac80211: always allocate struct ieee802_11_elems {CVE-2022-42719} - x86/sev: Check for user-space IOIO pointing to kernel space {CVE-2023-46813} - x86/sev: Check IOBM for IOIO exceptions from user-space {CVE-2023-46813} - x86/sev: Disable MMIO emulation from user mode {CVE-2023-46813} - netfilter: nftables: exthdr: fix 4-byte stack OOB write {CVE-2023-4881} - net: sched: sch_qfq: Fix UAF in qfq_dequeue() {CVE-2023-4921} - netfilter: ipset: add the missing IP_SET_HASH_WITH_NET0 macro for ip_set_hash_netportnet.c {CVE-2023-42753} - net/sched: cls_tcindex: downgrade to imperfect hash {CVE-2023-1829} - USB: ene_usb6250: Allocate enough memory for full object {CVE-2023-45862} - igb: set max size RX buffer when store bad packet is enabled {CVE-2023-45871} - net/sched: sch_hfsc: Ensure inner classes have fsc curve {CVE-2023-4623} - Fix double fget() in vhost_net_set_backend() {CVE-2023-1838} - nvmet-tcp: Fix a possible UAF in queue intialization setup {CVE-2023-5178} - drm/qxl: fix UAF on handle creation {CVE-2023-39198} - net: add kerneldoc comment for sk_peer_lock {CVE-2021-4203} - af_unix: fix races in sk_peer_pid and sk_peer_cred accesses {CVE-2021-4203} - block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern {CVE-2022-0494} - media: ov519: add missing endpoint sanity checks {CVE-2020-11608} - act_mirred: use the backlog for nested calls to mirred ingress {CVE-2022-4269} - net/sched: act_mirred: better wording on protection against excessive stack growth {CVE-2022-4269} - inet: use bigger hash table for IP ID generation {CVE-2021-45486} - net: revert "net: get rid of an signed integer overflow in ip_idents_reserve()" {CVE-2021-45486}
Updated packages:
  • bpftool-4.18.0-348.7.1.el8_5.tuxcare.els12.x86_64.rpm
    sha:676fe601f9d7e354d91cbfa2711c3a69622fc50a
  • kernel-4.18.0-348.7.1.el8_5.tuxcare.els12.x86_64.rpm
    sha:7b47e5f01c452b46991074bf09603bf5290ef8a4
  • kernel-core-4.18.0-348.7.1.el8_5.tuxcare.els12.x86_64.rpm
    sha:89ea0c34785b807d1a28f3b8fdf886c87efdb1b3
  • kernel-cross-headers-4.18.0-348.7.1.el8_5.tuxcare.els12.x86_64.rpm
    sha:58d510e48afcc675ffd311ff2ec0a14d0683e5da
  • kernel-debug-4.18.0-348.7.1.el8_5.tuxcare.els12.x86_64.rpm
    sha:bcfc9d95cd4f54c7b2d188552bc9d3c1a815a4dc
  • kernel-debug-core-4.18.0-348.7.1.el8_5.tuxcare.els12.x86_64.rpm
    sha:4fed85ceb74a4f0c6b291e7da8abfc8bf9011866
  • kernel-debug-devel-4.18.0-348.7.1.el8_5.tuxcare.els12.x86_64.rpm
    sha:bf147d87de46ce2873040e326ac279387581a4cd
  • kernel-debug-modules-4.18.0-348.7.1.el8_5.tuxcare.els12.x86_64.rpm
    sha:4638dfab9b45d9ed25ea896fa07948897cc11740
  • kernel-debug-modules-extra-4.18.0-348.7.1.el8_5.tuxcare.els12.x86_64.rpm
    sha:c03a332d82b78c3eadcafd89ad4e58160735742e
  • kernel-debug-modules-internal-4.18.0-348.7.1.el8_5.tuxcare.els12.x86_64.rpm
    sha:34d85da3f19da258505f6024bd8b396efa6860f7
  • kernel-devel-4.18.0-348.7.1.el8_5.tuxcare.els12.x86_64.rpm
    sha:ab9f519b3545c48ebe4737e6dfbe4ada3fa19158
  • kernel-headers-4.18.0-348.7.1.el8_5.tuxcare.els12.x86_64.rpm
    sha:929c4f55b4c7d354d2d9d2f1ad0826affbc5d569
  • kernel-ipaclones-internal-4.18.0-348.7.1.el8_5.tuxcare.els12.x86_64.rpm
    sha:87f11a946a0010c3034d81738e455ef366620d3b
  • kernel-modules-4.18.0-348.7.1.el8_5.tuxcare.els12.x86_64.rpm
    sha:2432d7184ecfc1fba0a1b6a8eaf63f61b3f5debd
  • kernel-modules-extra-4.18.0-348.7.1.el8_5.tuxcare.els12.x86_64.rpm
    sha:1158104898861f5b0be634340005ca03be1bfd2e
  • kernel-modules-internal-4.18.0-348.7.1.el8_5.tuxcare.els12.x86_64.rpm
    sha:af9685e35ea9ada040927b5f8d540cf2994b2b7f
  • kernel-selftests-internal-4.18.0-348.7.1.el8_5.tuxcare.els12.x86_64.rpm
    sha:9690b3fa444dba435eb37db6859fc80d08376a7f
  • kernel-tools-4.18.0-348.7.1.el8_5.tuxcare.els12.x86_64.rpm
    sha:d04406fb33ca16ee6d00d8232a79e72951937f38
  • kernel-tools-libs-4.18.0-348.7.1.el8_5.tuxcare.els12.x86_64.rpm
    sha:3578baab0de68610ddf89ee40e563bb17143f825
  • kernel-tools-libs-devel-4.18.0-348.7.1.el8_5.tuxcare.els12.x86_64.rpm
    sha:d61cd929134cada694dd8c1615ec6d87fec515ef
  • perf-4.18.0-348.7.1.el8_5.tuxcare.els12.x86_64.rpm
    sha:8d0771c562f55dd6a8bcc774f4125858ee8b7179
  • python3-perf-4.18.0-348.7.1.el8_5.tuxcare.els12.x86_64.rpm
    sha:9d3fdc38cf1fbadf3b4927a22b35effc9f2cb4a1
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.