Release Info

Advisory: CLSA-2024:1711026811

OS: CentOS 8.5 ELS

Public date: 2024-03-21 09:13:33

Project: kernel

Version: 4.18.0-348.7.1.el8_5.tuxcare.els15

Errata link: https://errata.tuxcare.com/els_os/centos8.5els/CLSA-2024-1711026811.html

Changelog

- netfilter: conntrack: dccp: copy entire header to stack buffer, not just basic one {CVE-2023-39197} - mtd: Fix gluebi NULL pointer dereference caused by ftl notifier {CVE-2023-52449} - media: pvrusb2: fix use after free on context disconnection {CVE-2023-52445} - net: prevent mss overflow in skb_segment() {CVE-2023-52435} - RDMA/core: Update CMA destination address on rdma_resolve_addr {CVE-2023-2176} - tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux {CVE-2023-6546} - tty: n_gsm: fix restart handling via CLD command {CVE-2023-6546} - tty: n_gsm: fix deadlock in gsmtty_open() {CVE-2023-6546} - nvmet-tcp: Fix the H2C expected PDU len calculation {CVE-2023-6536} - nvmet-tcp: remove boilerplate code {CVE-2023-6536} - nvmet-tcp: add bounds check on Transfer Tag {CVE-2023-6536} - nvmet-tcp: fix a crash in nvmet_req_complete() {CVE-2023-6536} - nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length {CVE-2023-6536}

Update

Update command: dnf update kernel*

Packages list

bpftool-4.18.0-348.7.1.el8_5.tuxcare.els15.x86_64.rpm kernel-4.18.0-348.7.1.el8_5.tuxcare.els15.x86_64.rpm kernel-core-4.18.0-348.7.1.el8_5.tuxcare.els15.x86_64.rpm kernel-cross-headers-4.18.0-348.7.1.el8_5.tuxcare.els15.x86_64.rpm kernel-debug-4.18.0-348.7.1.el8_5.tuxcare.els15.x86_64.rpm kernel-debug-core-4.18.0-348.7.1.el8_5.tuxcare.els15.x86_64.rpm kernel-debug-devel-4.18.0-348.7.1.el8_5.tuxcare.els15.x86_64.rpm kernel-debug-modules-4.18.0-348.7.1.el8_5.tuxcare.els15.x86_64.rpm kernel-debug-modules-extra-4.18.0-348.7.1.el8_5.tuxcare.els15.x86_64.rpm kernel-debug-modules-internal-4.18.0-348.7.1.el8_5.tuxcare.els15.x86_64.rpm kernel-devel-4.18.0-348.7.1.el8_5.tuxcare.els15.x86_64.rpm kernel-headers-4.18.0-348.7.1.el8_5.tuxcare.els15.x86_64.rpm kernel-ipaclones-internal-4.18.0-348.7.1.el8_5.tuxcare.els15.x86_64.rpm kernel-modules-4.18.0-348.7.1.el8_5.tuxcare.els15.x86_64.rpm kernel-modules-extra-4.18.0-348.7.1.el8_5.tuxcare.els15.x86_64.rpm kernel-modules-internal-4.18.0-348.7.1.el8_5.tuxcare.els15.x86_64.rpm kernel-selftests-internal-4.18.0-348.7.1.el8_5.tuxcare.els15.x86_64.rpm kernel-tools-4.18.0-348.7.1.el8_5.tuxcare.els15.x86_64.rpm kernel-tools-libs-4.18.0-348.7.1.el8_5.tuxcare.els15.x86_64.rpm kernel-tools-libs-devel-4.18.0-348.7.1.el8_5.tuxcare.els15.x86_64.rpm perf-4.18.0-348.7.1.el8_5.tuxcare.els15.x86_64.rpm python3-perf-4.18.0-348.7.1.el8_5.tuxcare.els15.x86_64.rpm

CVEs

CVE-2023-52445
CVE-2023-52435
CVE-2023-52449
CVE-2023-6536
CVE-2023-6546
CVE-2023-39197