Release Info

Advisory: CLSA-2024:1726651745

OS: CentOS 7 ELS

Public date: 2024-09-18 05:29:07

Project: kernel

Version: 3.10.0-1160.119.1.el7.tuxcare.els6

Errata link: https://errata.tuxcare.com/els_os/centos7els/CLSA-2024-1726651745.html

Changelog

- drm/vmwgfx: Validate the box size for the snooped cursor {CVE-2022-36280} - USB: ene_usb6250: Allocate enough memory for full object {CVE-2023-45862} - Bluetooth: L2CAP: Fix attempting to access uninitialized memory {CVE-2022-42895} - stm class: Fix a double free in stm_register_device() {CVE-2024-38627}

Update

Update command: yum update kernel*

Packages list

bpftool-3.10.0-1160.119.1.el7.tuxcare.els6.x86_64.rpm kernel-3.10.0-1160.119.1.el7.tuxcare.els6.x86_64.rpm kernel-debug-3.10.0-1160.119.1.el7.tuxcare.els6.x86_64.rpm kernel-debug-devel-3.10.0-1160.119.1.el7.tuxcare.els6.x86_64.rpm kernel-devel-3.10.0-1160.119.1.el7.tuxcare.els6.x86_64.rpm kernel-headers-3.10.0-1160.119.1.el7.tuxcare.els6.x86_64.rpm kernel-tools-3.10.0-1160.119.1.el7.tuxcare.els6.x86_64.rpm kernel-tools-libs-3.10.0-1160.119.1.el7.tuxcare.els6.x86_64.rpm kernel-tools-libs-devel-3.10.0-1160.119.1.el7.tuxcare.els6.x86_64.rpm perf-3.10.0-1160.119.1.el7.tuxcare.els6.x86_64.rpm python-perf-3.10.0-1160.119.1.el7.tuxcare.els6.x86_64.rpm

CVEs

CVE-2022-36280
CVE-2022-42895
CVE-2023-45862
CVE-2024-38627