- kernel-5.14.0-70.26.1.el9_0 (rhel9)
- 5.14.0-427.35.1.el9_4
- 2024-09-21 20:01:14
- 2024-10-01 07:17:23
- K20240921_11
- CVE-2022-2585
- Description:
posix-cpu-timers: Cleanup CPU timers before freeing them
- CVE: https://security-tracker.debian.org/tracker/CVE-2022-2585
- Patch: 5.10.0/CVE-2022-2585-posix-cpu-timers-Cleanup-CPU-timers-before-freeing-them.patch
- From: 5.10.136-1
- CVE-2022-30594
- Description:
ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on
- CVE: https://ubuntu.com/security/CVE-2022-30594
- Patch: 5.4.0/CVE-2022-30594-ptrace-check-pt_suspend_seccomp-permission-on-pt_seized.patch
- From: 5.4.0-113.127
- CVE-2022-23816
- Description:
Livepatching Retbleed may decrease kernel stability and performance. This vulnerability has medium security impact and applies to certain hardware environments only.
- CVE:
- Patch: skipped/CVE-2022-23816.patch
- From:
- CVE-2022-23825
- Description:
Livepatching Retbleed may decrease kernel stability and performance. This vulnerability has medium security impact and applies to certain hardware environments only.
- CVE:
- Patch: skipped/CVE-2022-23825.patch
- From:
- CVE-2022-26373
- Description:
Livepatching Retbleed may decrease the stability and performance of the kernel, while vulnerability has a medium security impact and only for a certain hardware environment.
- CVE:
- Patch: skipped/CVE-2022-26373.patch
- From:
- CVE-2022-29900
- Description:
Livepatching Retbleed may decrease kernel stability and performance. This vulnerability has medium security impact and applies to certain hardware environments only.
- CVE:
- Patch: skipped/CVE-2022-29900.patch
- From:
- CVE-2022-29901
- Description:
Livepatching Retbleed may decrease the stability and performance of the kernel, while vulnerability has a medium security impact and only for a certain hardware environment.
- CVE:
- Patch: skipped/CVE-2022-29901.patch
- From:
- CVE-2022-1679
- Description:
UBUNTU: SAUCE: ath9k: fix use-after-free in ath9k_hif_usb_rx_cb
- CVE: https://security-tracker.debian.org/tracker/CVE-2022-1679
- Patch: 5.15.0/CVE-2022-1679-UBUNTU-SAUCE-ath9k-fix-use-after-free-in-ath9k_hif_usb_rx_cb.patch
- From: kernel-5.15.0-43.46
- CVE-2022-1998
- Description:
fanotify: Fix stale file descriptor in copy_event_to_user()
- CVE: https://access.redhat.com/security/cve/CVE-2022-1998
- Patch: 5.14.0/CVE-2022-1998-fanotify-Fix-stale-file-descriptor-in-copy_event_to_user.patch
- From: 5.14.0-162.6.1.el9_1
- CVE-2022-2639
- Description:
openvswitch: fix OOB access in reserve_sfa_size()
- CVE: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2022-2639
- Patch: 4.18.0/CVE-2022-2639-openvswitch-fix-OOB-access-in-reserve_sfa_size.patch
- From: 4.18.0-372.26.1
- CVE-2022-20368
- Description:
net/packet: fix slab-out-of-bounds access in packet_recvmsg()
- CVE: https://access.redhat.com/security/cve/CVE-2022-20368
- Patch: 5.14.0/CVE-2022-20368-net-packet-fix-slab-out-of-bounds-access-in-packet_recvmsg.patch
- From: 5.14.0-162.6.1.el9_1
- CVE-2022-28390
- Description:
can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path
- CVE: https://nvd.nist.gov/vuln/detail/CVE-2022-28390
- Patch: 5.15.0/CVE-2022-28390-can-ems_usb-ems_usb_start_xmit-fix-double-dev_kfree_skb-in-error-path.patch
- From: 5.15.37-39
- CVE-2022-28893
- Description:
SUNRPC: Ensure we flush any closed sockets before
- CVE: https://security-tracker.debian.org/tracker/CVE-2022-28893
- Patch: 5.15.0/CVE-2022-28893-SUNRPC-Ensure-we-flush-any-closed-sockets-before-xs_xprt_free.patch
- From: kernel-5.15.0-43.46
- CVE-2022-28893
- Description:
SUNRPC: Don't leak sockets in xs_local_connect()
- CVE: https://security-tracker.debian.org/tracker/CVE-2022-28893
- Patch: 5.15.0/CVE-2022-28893-SUNRPC-Dont-leak-sockets-in-xs_local_connect.patch
- From: kernel-5.15.0-43.46
- CVE-2022-28893
- Description:
SUNRPC: Ensure we flush any closed sockets before (adaptation)
- CVE: n/1
- Patch: 5.10.0/CVE-2022-28893-SUNRPC-Ensure-we-flush-any-closed-sockets-before-kpatch.patch
- From: 5.10.120-1
- CVE-2022-29581
- Description:
net/sched: cls_u32: fix netns refcount changes in
- CVE: https://ubuntu.com/security/CVE-2022-29581
- Patch: 5.4.0/CVE-2022-29581-cls_u32-fix-netns-refcount-changes-in-u32_change.patch
- From: 5.4.0-113.127
- CVE-2022-36946
- Description:
netfilter: nf_queue: do not allow packet truncation below transport header offset
- CVE: https://ubuntu.com/security/CVE-2022-36946
- Patch: 5.15.0/CVE-2022-36946-netfilter-nf_queue-do-not-allow-packet-truncation-below-transport-header-offset.patch
- From: 5.15.0-48.54
- CVE-2021-3640
- Description:
Bluetooth: fix repeated calls to sco_sock_kill
- CVE: https://security-tracker.debian.org/tracker/CVE-2021-3640
- Patch: 5.10.0/977100-Bluetooth-fix-repeated-calls-to-sco_sock_kill.patch
- From: v5.10.64
- CVE-2021-3640
- Description:
Bluetooth: avoid circular locks in sco_sock_connect
- CVE: https://security-tracker.debian.org/tracker/CVE-2021-3640
- Patch: 5.10.0/977408-Bluetooth-avoid-circular-locks-in-sco_sock_connect.patch
- From: v5.10.66
- CVE-2021-3640
- Description:
Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg()
- CVE: https://security-tracker.debian.org/tracker/CVE-2021-3640
- Patch: 5.10.0/978504-Bluetooth-sco-Fix-lock_sock-blockage-by-memcpy_fro.patch
- From: v5.10.79
- CVE-2022-1048
- Description:
ALSA: pcm: Fix races among concurrent hw_params and hw_free calls
- CVE: https://nvd.nist.gov/vuln/detail/CVE-2022-1048
- Patch: 5.15.0/CVE-2022-1048-ALSA-pcm-Fix-races-among-concurrent-hw_params-and-hw_free-calls.patch
- From: 5.15.37-39
- CVE-2022-1048
- Description:
ALSA: pcm: Fix races among concurrent read/write and buffer changes
- CVE: https://nvd.nist.gov/vuln/detail/CVE-2022-1048
- Patch: 5.15.0/CVE-2022-1048-ALSA-pcm-Fix-races-among-concurrent-read-write-and-buffer-changes.patch
- From: 5.15.37-39
- CVE-2022-1048
- Description:
ALSA: pcm: Fix races among concurrent prepare and hw_params/hw_free calls
- CVE: https://nvd.nist.gov/vuln/detail/CVE-2022-1048
- Patch: 5.15.0/CVE-2022-1048-ALSA-pcm-Fix-races-among-concurrent-prepare-and-hw_params-hw_free-calls.patch
- From: 5.15.37-39
- CVE-2022-1048
- Description:
ALSA: pcm: Fix races among concurrent prealloc proc writes
- CVE: https://nvd.nist.gov/vuln/detail/CVE-2022-1048
- Patch: 5.15.0/CVE-2022-1048-ALSA-pcm-Fix-races-among-concurrent-prealloc-proc-writes.patch
- From: 5.15.37-39
- CVE-2022-1048
- Description:
ALSA: pcm: Fix races among concurrent hw_params and hw_free calls (adaptation)
- CVE: https://nvd.nist.gov/vuln/detail/CVE-2022-1048
- Patch: 5.15.0/CVE-2022-1048-kpatch.patch
- From: 5.15.37-39
- CVE-2022-1353
- Description:
af_key: add __GFP_ZERO flag for compose_sadb_supported in function pfkey_register
- CVE: https://nvd.nist.gov/vuln/detail/CVE-2022-1353
- Patch: 5.15.0/CVE-2022-1353-af_key-add-__GFP_ZERO-flag-for-compose_sadb_supported-in-function-pfkey_register.patch
- From: 5.15.37-39
- CVE-2020-36516
- Description:
ipv4: avoid using shared IP generator for connected sockets
- CVE: https://access.redhat.com/security/cve/CVE-2020-36516
- Patch: 5.4.17/CVE-2020-36516-ipv4-avoid-using-shared-IP-generator-for-connected-sockets.patch
- From: 5.4.17-2136.306.1.3
- CVE-2020-36516
- Description:
ipv4: tcp: send zero IPID in SYNACK messages
- CVE: https://access.redhat.com/security/cve/CVE-2020-36516
- Patch: 5.4.17/CVE-2020-36516-ipv4-tcp-send-zero-IPID-in-SYNACK-messages.patch
- From: 5.4.17-2136.306.1.3
- CVE-2022-0168
- Description:
cifs: prevent bad output lengths in smb2_ioctl_query_info()
- CVE: https://nvd.nist.gov/vuln/detail/CVE-2022-0168
- Patch: 5.15.0/CVE-2022-0168-cifs-prevent-bad-output-lengths-in-smb2_ioctl_query_info.patch
- From: 5.15.37-39
- CVE-2022-0168
- Description:
cifs: fix NULL ptr dereference in smb2_ioctl_query_info()
- CVE: https://nvd.nist.gov/vuln/detail/CVE-2022-0168
- Patch: 5.15.0/CVE-2022-0168-cifs-fix-NULL-ptr-dereference-in-smb2_ioctl_query_info.patch
- From: 5.15.37-39
- CVE-2022-0617
- Description:
udf: Restore i_lenAlloc when inode expansion fails
- CVE: https://security-tracker.debian.org/tracker/CVE-2022-0617
- Patch: 5.10.0/980398-udf-Restore-i_lenAlloc-when-inode-expansion-fails.patch
- From: v5.10.96
- CVE-2022-0617
- Description:
udf: Fix NULL ptr deref when converting from inline format
- CVE: https://security-tracker.debian.org/tracker/CVE-2022-0617
- Patch: 5.10.0/980399-udf-Fix-NULL-ptr-deref-when-converting-from-inline.patch
- From: v5.10.96
- CVE-2022-0854
- Description:
Reinstate some of "swiotlb: rework "fix info leak with
- CVE: https://security-tracker.debian.org/tracker/CVE-2022-0854
- Patch: 5.14.0/CVE-2022-0854-Reinstate-some-of-swiotlb-rework-fix-info-leak-with.patch
- From: 5.10.120-1
- CVE-2022-1016
- Description:
netfilter: nf_tables: initialize registers in nft_do_chain()
- CVE: https://access.redhat.com/security/cve/CVE-2022-1016
- Patch: 5.15.0/CVE-2022-1016-netfilter-nf_tables-initialize-registers-in-nft_do_chain.patch
- From: kernel-5.15.0-27.28
- CVE-2022-1184
- Description:
ext4: verify dir block before splitting it
- CVE: https://security-tracker.debian.org/tracker/CVE-2022-1184
- Patch: 5.14.0/CVE-2022-1184-ext4-verify-dir-block-before-splitting-it.patch
- From: 5.10.127-1
- CVE-2022-1184
- Description:
ext4: make variable "count" signed
- CVE: https://access.redhat.com/security/cve/CVE-2022-1184
- Patch: 5.10.0/CVE-2022-1184-ext4-make-variable-count-signed.patch
- From: 4.14.285-215.501.amzn2
- CVE-2022-1852
- Description:
KVM: x86: avoid calling x86 emulator without a decoded
- CVE: https://security-tracker.debian.org/tracker/CVE-2022-1852
- Patch: 5.15.0/CVE-2022-1852-KVM-x86-avoid-calling-x86-emulator-without-a-decoded-instruction.patch
- From: 5.15.0-47.50
- CVE-2022-21123 CVE-2022-21125 CVE-2022-21166 CVE-2022-21127
- Description:
x86/speculation/mmio: Add mitigation for Processor MMIO Stale Data
- CVE: https://access.redhat.com/security/cve/cve-2022-21127
- Patch: mmio-enable.patch
- From: 5.18
- CVE-2022-21499
- Description:
lockdown: also lock down previous kgdb use
- CVE: https://linux.oracle.com/cve/CVE-2022-21499.html
- Patch: 5.4.17/CVE-2022-21499-lockdown-also-lock-down-previous-kgdb-use.patch
- From: 5.4.17-2136.312.3.4.el8uek
- CVE-2022-39190
- Description:
netfilter: nf_tables: disallow binding to already bound chain
- CVE: https://security-tracker.debian.org/tracker/CVE-2022-21385
- Patch: 5.10.0/CVE-2022-39190-netfilter-nf_tables-disallow-binding-to-already-bound-chain.patch
- From: 5.10.140-1
- CVE-2022-24448
- Description:
NFSv4: Handle case where the lookup of a directory fails
- CVE: https://security-tracker.debian.org/tracker/CVE-2022-24448
- Patch: 5.10.0/CVE-2022-24448-NFSv4-Handle-case-where-the-lookup-of-a-directory-fails.patch
- From: 5.10.92-2
- CVE-2022-2586
- Description:
netfilter: nf_tables: do not allow SET_ID to refer to another
- CVE: https://access.redhat.com/security/cve/CVE-2022-2586
- Patch: 5.14.0/CVE-2022-2586-netfilter-nf_tables-do-not-allow-SET_ID-to-refer-to-another.patch
- From: 5.14.0-162.6.1
- CVE-2022-2586
- Description:
netfilter: nf_tables: do not allow CHAIN_ID to refer to
- CVE: https://access.redhat.com/security/cve/CVE-2022-2586
- Patch: 5.14.0/CVE-2022-2586-netfilter-nf_tables-do-not-allow-CHAIN_ID-to-refer-to.patch
- From: 5.14.0-162.6.1
- CVE-2022-2586
- Description:
netfilter: nf_tables: do not allow RULE_ID to refer to
- CVE: https://access.redhat.com/security/cve/CVE-2022-2586
- Patch: 5.14.0/CVE-2022-2586-netfilter-nf_tables-do-not-allow-RULE_ID-to-refer-to.patch
- From: 5.14.0-162.6.1
- CVE-2022-1280
- Description:
drm: add a locked version of drm_is_current_master
- CVE: https://access.redhat.com/security/cve/CVE-2022-1280
- Patch: 5.14.0/CVE-2022-1280-0001-drm-add-a-locked-version-of-drm_is_current_master.patch
- From: 5.14.0-162.6.1.el9_1
- CVE-2022-1280
- Description:
drm: add a locked version of drm_is_current_master
- CVE: https://access.redhat.com/security/cve/CVE-2022-1280
- Patch: 5.14.0/CVE-2022-1280-0002-drm-serialize-drm_file.master-with-a-new-spinlock.patch
- From: 5.14.0-162.6.1.el9_1
- CVE-2022-1280
- Description:
drm: add a locked version of drm_is_current_master
- CVE: https://linux.oracle.com/cve/CVE-2022-1280.html
- Patch: 5.14.0/CVE-2022-1280-0003-drm-protect-drm_master-pointers-in-drm_lease.c.patch
- From: 5.4.17-2136.311.6.el8uek
- CVE-2022-1280
- Description:
drm: add a locked version of drm_is_current_master (adaptation)
- CVE: https://access.redhat.com/security/cve/CVE-2022-1280
- Patch: 5.14.0/CVE-2022-1280-kpatch.patch
- From: 5.14.0-162.6.1.el9_1
- CVE-2022-2964
- Description:
net: usb: ax88179_178a: Fix out-of-bounds accesses in RX
- CVE: https://access.redhat.com/security/cve/CVE-2022-2964
- Patch: 4.18.0/CVE-2022-2964-net-usb-ax88179_178a-Fix-out-of-bounds-accesses-in-R.patch
- From: 4.18.0-425.10.1.el8_7
- CVE-2022-43945
- Description:
NFSD: Protect against send buffer overflow in NFSv2 READ
- CVE: https://access.redhat.com/security/cve/CVE-2022-43945
- Patch: 5.14.0/CVE-2022-43945-1-NFSD-Protect-against-send-buffer-overflow-in-NFSv2-R.patch
- From: 5.14.0-162.12.1.el9_1
- CVE-2022-43945
- Description:
NFSD: Protect against send buffer overflow in NFSv2 READ
- CVE: https://access.redhat.com/security/cve/CVE-2022-43945
- Patch: 5.14.0/CVE-2022-43945-2-NFSD-Protect-against-send-buffer-overflow-in-NFSv2-R.patch
- From: 5.14.0-162.12.1.el9_1
- CVE-2022-43945
- Description:
NFSD: Protect against send buffer overflow in NFSv2 READ
- CVE: https://access.redhat.com/security/cve/CVE-2022-43945
- Patch: 5.14.0/CVE-2022-43945-3-NFSD-Protect-against-send-buffer-overflow-in-NFSv3-R.patch
- From: 5.14.0-162.12.1.el9_1
- CVE-2022-43945
- Description:
NFSD: Protect against send buffer overflow in NFSv2 READ
- CVE: https://access.redhat.com/security/cve/CVE-2022-43945
- Patch: 5.14.0/CVE-2022-43945-4-NFSD-Protect-against-send-buffer-overflow-in-NFSv3-R.patch
- From: 5.14.0-162.12.1.el9_1
- CVE-2022-43945
- Description:
NFSD: Protect against send buffer overflow in NFSv2 READ
- CVE: https://access.redhat.com/security/cve/CVE-2022-43945
- Patch: 5.14.0/CVE-2022-43945-5-SUNRPC-Fix-svcxdr_init_decode-s-end-of-buffer-calcul.patch
- From: 5.14.0-162.12.1.el9_1
- CVE-2022-43945
- Description:
NFSD: Protect against send buffer overflow in NFSv2 READ
- CVE: https://access.redhat.com/security/cve/CVE-2022-43945
- Patch: 5.14.0/CVE-2022-43945-6-SUNRPC-Fix-svcxdr_init_encode-s-buflen-calculation.patch
- From: 5.14.0-162.12.1.el9_1
- CVE-2022-2959
- Description:
pipe: Fix missing lock in pipe_resize_ring()
- CVE: https://security-tracker.debian.org/tracker/CVE-2022-2959
- Patch: 5.15.0/CVE-2022-2959-pipe-Fix-missing-lock-in-pipe_resize_ring.patch
- From: 5.15.0-47.50
- CVE-2022-4139
- Description:
drm/i915: fix TLB invalidation for Gen12 video and compute
- CVE: https://access.redhat.com/security/cve/CVE-2022-4139
- Patch: 4.18.0/CVE-2022-4139-drm-i915-fix-TLB-invalidation-for-Gen12-video-and-co-pre-425.patch
- From: 4.18.0-425.10.1.el8_7
- CVE-2022-3077
- Description:
i2c: ismt: prevent memory corruption in ismt_access()
- CVE: https://access.redhat.com/security/cve/CVE-2022-3077
- Patch: 5.14.0/CVE-2022-3077-i2c-ismt-prevent-memory-corruption-in-ismt_access.patch
- From: 5.14.0-162.12.1.el9_1
- CVE-2022-4378
- Description:
proc: proc_skip_spaces() shouldn't think it is working on C strings
- CVE: https://access.redhat.com/security/cve/CVE-2022-4378
- Patch: rhel9/5.14.0-162.18.1.el9_1/CVE-2022-4378-proc-proc_skip_spaces-shouldn-t-think-it-is-working.patch
- From: 5.14.0-162.18.1.el9_1
- CVE-2022-4378
- Description:
proc: avoid integer type confusion in get_proc_long
- CVE: https://access.redhat.com/security/cve/CVE-2022-4378
- Patch: rhel9/5.14.0-162.18.1.el9_1/CVE-2022-4378-proc-avoid-integer-type-confusion-in-get_proc_long.patch
- From: 5.14.0-162.18.1.el9_1
- CVE-2023-0179
- Description:
netfilter: nft_payload: incorrect arithmetics when fetching
- CVE: https://ubuntu.com/security/CVE-2023-0179
- Patch: rhel9/5.14.0-162.18.1.el9_1/CVE-2023-0179-netfilter-nft_payload-incorrect-arithmetics-when-fetching-VLAN-header-bits.patch
- From: 5.14.0-162.18.1.el9_1
- CVE-2022-4379
- Description:
NFSD: fix use-after-free in __nfs42_ssc_open()
- CVE: https://access.redhat.com/security/cve/CVE-2022-4379
- Patch: rhel9/5.14.0-162.18.1.el9_1/CVE-2022-4379-NFSD-fix-use-after-free-in-__nfs42_ssc_open.patch
- From: 5.14.0-162.18.1.el9_1
- CVE-2022-3564
- Description:
Bluetooth: L2CAP: Fix use-after-free caused by l2cap_reassemble_sdu
- CVE: https://ubuntu.com/security/CVE-2022-3564
- Patch: rhel9/5.14.0-162.18.1.el9_1/CVE-2022-3564-Bluetooth-L2CAP-Fix-use-after-free-caused-by-l2cap_r.patch
- From: 5.14.0-162.18.1.el9_1
- CVE-2022-2873
- Description:
i2c: ismt: Fix an out-of-bounds bug in ismt_access()
- CVE: https://ubuntu.com/security/CVE-2022-2873
- Patch: rhel9/5.14.0-162.18.1.el9_1/CVE-2022-2873-i2c-ismt-fix-an-out-of-bounds-bug-in-ismt_access.patch
- From: 5.14.0-162.18.1.el9_1
- CVE-2023-0266
- Description:
ALSA: pcm: Move rwsem lock inside snd_ctl_elem_read to prevent UAF
- CVE: https://access.redhat.com/security/cve/CVE-2023-0266
- Patch: rhel9/5.14.0-162.18.1.el9_1/CVE-2023-0266.patch
- From: 5.14.0-162.18.1.el9_1
- CVE-2022-4269
- Description:
act_mirred: use the backlog for nested calls to mirred ingress
- CVE: https://access.redhat.com/security/cve/CVE-2022-4269
- Patch: rhel9/5.14.0-162.18.1.el9_1/CVE-2022-4269.patch
- From: 5.14.0-162.18.1.el9_1
- CVE-2022-4744
- Description:
tun: avoid double free in tun_free_netdev
- CVE: https://access.redhat.com/security/cve/CVE-2022-4744
- Patch: rhel9/5.14.0-162.18.1.el9_1/CVE-2022-4744.patch
- From: v5.16
- CVE-2022-4744 (adaptation)
- Description:
tun: avoid double free in tun_free_netdev
- CVE: https://access.redhat.com/security/cve/CVE-2022-4744
- Patch: rhel9/5.14.0-162.18.1.el9_1/CVE-2022-4744-kpatch.patch
- From: v5.16
- CVE-2023-0386
- Description:
ovl: fail on invalid uid/gid mapping at copy up
- CVE: https://access.redhat.com/security/cve/CVE-2023-0386
- Patch: rhel8/4.18.0-425.19.2.el8_7/CVE-2023-0386-ovl-fail-on-invalid-uid-gid-mapping-at-copy-up.patch
- From: 4.18.0-425.19.2.el8_7
- CVE-2022-2196
- Description:
KVM: VMX: Execute IBPB on emulated VM-exit when guest has IBRS
- CVE: https://access.redhat.com/security/cve/CVE-2022-2196
- Patch: rhel9/5.14.0-284.11.1.el9_2/CVE-2022-2196-KVM-VMX-Execute-IBPB-on-emulated-VM-exit-when-guest-has-IBRS.patch
- From: 5.14.0-284.11.1.el9_2
- CVE-2022-3640
- Description:
Bluetooth: L2CAP: fix use-after-free in l2cap_conn_del()
- CVE: https://access.redhat.com/security/cve/CVE-2022-3640
- Patch: rhel9/5.14.0-284.11.1.el9_2/CVE-2022-3640-bluetooth-l2cap-fix-use-after-free-in-l2cap-conn-del.patch
- From: 5.14.0-284.11.1.el9_2
- CVE-2022-42896
- Description:
Bluetooth: L2CAP: Fix accepting connection request for invalid SPSM
- CVE: https://access.redhat.com/security/cve/CVE-2022-42896
- Patch: rhel9/5.14.0-284.11.1.el9_2/CVE-2022-42896-0001-Bluetooth-L2CAP-Fix-accepting-connection-request-for.patch
- From: 5.14.0-284.11.1.el9_2
- CVE-2022-42896
- Description:
Bluetooth: L2CAP: Fix l2cap_global_chan_by_psm
- CVE: https://access.redhat.com/security/cve/CVE-2022-42896
- Patch: rhel9/5.14.0-284.11.1.el9_2/CVE-2022-42896-0002-Bluetooth-L2CAP-Fix-l2cap_global_chan_by_psm.patch
- From: 5.14.0-284.11.1.el9_2
- CVE-2022-41674
- Description:
wifi: cfg80211: fix u8 overflow in cfg80211_update_notlisted_nontrans()
- CVE: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2022-41674
- Patch: rhel9/5.14.0-284.11.1.el9_2/CVE-2022-41674-wifi-cfg80211-fix-u8-overflow-in-cfg80211_update_notlisted_nontrans.patch
- From: 5.14.0-284.11.1.el9_2
- CVE-2022-1882
- Description:
watchqueue: make sure to serialize 'wqueue->defunct' properly
- CVE: https://security-tracker.debian.org/tracker/CVE-2022-1882
- Patch: rhel9/5.14.0-284.11.1.el9_2/CVE-2022-1882-watchqueue-make-sure-to-serialize-wqueue-defunct-properly.patch
- From: 5.14.0-284.11.1.el9_2
- CVE-2022-3625
- Description:
devlink: Fix use-after-free after a failed reload
- CVE: https://access.redhat.com/security/cve/CVE-2022-3625
- Patch: rhel9/5.14.0-284.11.1.el9_2/CVE-2022-3625-devlink-Fix-use-after-free-after-a-failed-reload.patch
- From: 5.14.0-284.11.1.el9_2
- CVE-2022-33743
- Description:
xen-netfront: restore __skb_queue_tail() positioning in xennet_get_responses()
- CVE: https://access.redhat.com/security/cve/CVE-2022-33743
- Patch: rhel9/5.14.0-284.11.1.el9_2/CVE-2022-33743-xen-netfront-restore-__skb_queue_tail-positioning-in-xennet_get_responses.patch
- From: 5.14.0-284.11.1.el9_2
- CVE-2022-42720
- Description:
wifi: cfg80211: fix BSS refcounting bugs
- CVE: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2022-42720
- Patch: rhel9/5.14.0-284.11.1.el9_2/CVE-2022-42720-wifi-cfg80211-fix-BSS-refcounting-bugs-70.patch
- From: 5.14.0-284.11.1.el9_2
- CVE-2023-0461
- Description:
net/ulp: prevent ULP without clone op from entering the LISTEN status
- CVE: https://access.redhat.com/security/cve/CVE-2023-0461
- Patch: rhel9/5.14.0-284.11.1.el9_2/CVE-2023-0461-net-ulp-prevent-ULP-without-clone-op-from-entering-the-LISTEN-status.patch
- From: 5.14.0-284.11.1.el9_2
- CVE-2022-3028
- Description:
af_key: Do not call xfrm_probe_algs in parallel
- CVE: https://security-tracker.debian.org/tracker/CVE-2022-3028
- Patch: rhel9/5.14.0-284.11.1.el9_2/CVE-2022-3028-af_key-Do-not-call-xfrm_probe_algs-in-parallel.patch
- From: 5.14.0-284.11.1.el9_2
- CVE-2022-3522
- Description:
mm/hugetlb: fix race condition of uffd missing/minor handling
- CVE: https://access.redhat.com/security/cve/CVE-2022-3522
- Patch: rhel9/5.14.0-284.11.1.el9_2/CVE-2022-3522-mm-hugetlb-fix-race-condition-of-uffd-missing-minor-.patch
- From: 5.14.0-284.11.1.el9_2
- CVE-2022-20141
- Description:
igmp: Add ip_mc_list lock in ip_check_mc_rcu
- CVE: https://security-tracker.debian.org/tracker/CVE-2022-20141
- Patch: rhel9/5.14.0-284.11.1.el9_2/CVE-2022-20141-igmp-Add-ip_mc_list-lock-in-ip_check_mc_rcu.patch
- From: 5.14.0-284.11.1.el9_2
- CVE-2022-1789
- Description:
KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID
- CVE: https://security-tracker.debian.org/tracker/CVE-2022-1789
- Patch: rhel9/5.14.0-284.11.1.el9_2/CVE-2022-1789-KVM-x86-mmu-fix-NULL-pointer-dereference-on-guest-INVPCID-pre-162.patch
- From: 5.14.0-284.11.1.el9_2
- CVE-2022-21505
- Description:
Kernel lockdown bypass when UEFI secure boot is disabled / unavailable and IMA appraisal is enabled.
- CVE: https://linux.oracle.com/cve/CVE-2022-21505.html
- Patch: rhel9/5.14.0-284.11.1.el9_2/CVE-2022-21505-lockdown-Fix-kexec-lockdown-bypass-with-ima-policy.patch
- From: 5.14.0-284.11.1.el9_2
- CVE-2022-43750
- Description:
usb: mon: make mmapped memory read only
- CVE: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-43750
- Patch: rhel9/5.14.0-284.11.1.el9_2/CVE-2022-43750-usb-mon-make-mmapped-memory-read-only.patch
- From: 5.14.0-284.11.1.el9_2
- CVE-2022-3628
- Description:
wifi: brcmfmac: Fix potential buffer overflow in brcmf_fweh_event_worker()
- CVE: https://security-tracker.debian.org/tracker/CVE-2022-3628
- Patch: rhel9/5.14.0-284.11.1.el9_2/CVE-2022-3628-wifi-brcmfmac-Fix-potential-buffer-overflow-in-brcmf.patch
- From: 5.14.0-284.11.1.el9_2
- CVE-2022-1462
- Description:
tty: use new tty_insert_flip_string_and_push_buffer() in pty_write()
- CVE: https://nvd.nist.gov/vuln/detail/CVE-2022-1462
- Patch: rhel9/5.14.0-284.11.1.el9_2/CVE-2022-1462-tty-use-new-tty_insert_flip_string_and_push_buffer-in-pty_write.patch
- From: 5.14.0-284.11.1.el9_2
- CVE-2022-1462
- Description:
tty: extract tty_flip_buffer_commit() from tty_flip_buffer_push()
- CVE: https://nvd.nist.gov/vuln/detail/CVE-2022-1462
- Patch: rhel9/5.14.0-284.11.1.el9_2/CVE-2022-1462-tty-extract-tty_flip_buffer_commit-from-tty_flip_buffer_push.patch
- From: 5.14.0-284.11.1.el9_2
- CVE-2022-3524
- Description:
tcp/udp: Fix memory leak in ipv6_renew_options().
- CVE: https://access.redhat.com/security/cve/CVE-2022-3524
- Patch: rhel9/5.14.0-284.11.1.el9_2/CVE-2022-3524-tcp-udp-Fix-memory-leak-in-ipv6_renew_options.patch
- From: 5.14.0-284.11.1.el9_2
- CVE-2022-3707
- Description:
drm/i915/gvt: fix double free bug in split_2MB_gtt_entry
- CVE: https://access.redhat.com/security/cve/CVE-2022-3707
- Patch: rhel9/5.14.0-284.11.1.el9_2/CVE-2022-3707-drm-i915-gvt-fix-double-free-bug-in-split_2MB_gtt_entry.patch
- From: 5.14.0-284.11.1.el9_2
- CVE-2022-4128
- Description:
mptcp: fix subflow traversal at disconnect time
- CVE: https://access.redhat.com/security/cve/CVE-2022-4128
- Patch: rhel9/5.14.0-284.11.1.el9_2/CVE-2022-4128-mptcp-fix-subflow-traversal-at-disconnect-time-1.patch
- From: 5.14.0-284.11.1.el9_2
- CVE-2022-4129
- Description:
l2tp: Serialize access to sk_user_data with sk_callback_lock
- CVE: https://alas.aws.amazon.com/cve/html/CVE-2022-4129.html
- Patch: rhel9/5.14.0-284.11.1.el9_2/CVE-2022-4129-l2tp-Serialize-access-to-sk_user_data-with-sk_callback_lock.patch
- From: 5.14.0-284.11.1.el9_2
- CVE-2022-4129
- Description:
l2tp: Don't sleep and disable BH under writer-side sk_callback_lock
- CVE: https://alas.aws.amazon.com/cve/html/CVE-2022-4129.html
- Patch: rhel9/5.14.0-284.11.1.el9_2/CVE-2022-4129-l2tp-Don-t-sleep-and-disable-BH-under-writer-side-sk_callback_lock.patch
- From: 5.14.0-284.11.1.el9_2
- CVE-2022-28388
- Description:
can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path
- CVE: https://nvd.nist.gov/vuln/detail/CVE-2022-28388
- Patch: rhel9/5.14.0-284.11.1.el9_2/CVE-2022-28388-can-usb_8dev-usb_8dev_start_xmit-fix-double-dev_kfree_skb-in-error-path.patch
- From: 5.14.0-284.11.1.el9_2
- CVE-2022-42721
- Description:
wifi: cfg80211: avoid nontransmitted BSS list corruption
- CVE: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2022-42721
- Patch: rhel9/5.14.0-284.11.1.el9_2/CVE-2022-42721-wifi-cfg80211-avoid-nontransmitted-BSS-list-corruption.patch
- From: 5.14.0-284.11.1.el9_2
- CVE-2021-33631
- Description:
ext4: fix kernel BUG in 'ext4_write_inline_data_end()'
- CVE: https://access.redhat.com/security/cve/CVE-2021-33631
- Patch: rhel9/5.14.0-284.11.1.el9_2/CVE-2021-33631-ext4-fix-kernel-BUG-in-ext4_write_inline_data_end.patch
- From: 5.14.0-284.11.1.el9_2
- CVE-2023-2002
- Description:
bluetooth: Perform careful capability checks in hci_sock_ioctl()
- CVE: https://access.redhat.com/security/cve/CVE-2023-2002
- Patch: rhel9/5.14.0-284.18.1.el9_2/CVE-2023-2002-bluetooth-Perform-careful-capability-checks-in-hci_sock_ioctl.patch
- From: 5.14.0-284.18.1
- CVE-2023-2124
- Description:
xfs: verify buffer contents when we skip log replay
- CVE: https://access.redhat.com/security/cve/CVE-2023-2124
- Patch: rhel9/5.14.0-284.18.1.el9_2/CVE-2023-2124-xfs-verify-buffer-contents-when-we-skip-log-replay.patch
- From: 5.14.0-284.18.1
- CVE-2023-2194
- Description:
i2c: xgene-slimpro: Fix out-of-bounds bug in xgene_slimpro_i2c_xfer()
- CVE: https://access.redhat.com/security/cve/CVE-2023-2194
- Patch: rhel9/5.14.0-284.18.1.el9_2/CVE-2023-2194-i2c-xgene-slimpro-Fix-out-of-bounds-bug-in-xgene_slimpro_i2c_xfer.patch
- From: 5.14.0-284.18.1
- CVE-2023-2235
- Description:
perf: Fix check before add_event_to_groups() in perf_group_detach()
- CVE: https://access.redhat.com/security/cve/CVE-2023-2235
- Patch: rhel9/5.14.0-284.18.1.el9_2/CVE-2023-2235-perf-Fix-check-before-add_event_to_groups-in-perf_group_detach.patch
- From: 5.14.0-284.18.1
- CVE-2023-28466
- Description:
net: tls: fix possible race condition between do_tls_getsockopt_conf() and do_tls_setsockopt_conf()
- CVE: https://access.redhat.com/security/cve/CVE-2023-28466
- Patch: rhel9/5.14.0-284.18.1.el9_2/CVE-2023-28466-net-tls-fix-possible-race-condition-between-do_tls_getsockopt_conf-and-do_tls_setsockopt_conf-162.patch
- From: 5.14.0-284.18.1
- CVE-2023-32233
- Description:
netfilter: nf_tables: deactivate anonymous set from preparation phase
- CVE: https://linux.oracle.com/cve/CVE-2023-32233.html
- Patch: rhel9/5.14.0-284.18.1.el9_2/CVE-2023-32233-patch-netfilter-nf-tables-deactivate-anonymous-set-from.patch
- From: 5.14.0-284.18.1
- CVE-2022-45869
- Description:
KVM: x86/mmu: Fix race condition in direct_page_fault
- CVE: https://access.redhat.com/security/cve/CVE-2022-45869
- Patch: rhel9/5.14.0-284.25.1.el9_2/CVE-2022-45869-KVM-x86-mmu-Fix-race-condition-in-direct_page_fault-pre-162.patch
- From: 5.14.0-284.25.1
- CVE-2023-0458
- Description:
prlimit: do_prlimit needs to have a speculation check
- CVE: https://access.redhat.com/security/cve/CVE-2023-0458
- Patch: rhel9/5.14.0-284.25.1.el9_2/CVE-2023-0458-prlimit-do_prlimit-needs-to-have-a-speculation-chec.patch
- From: 5.14.0-284.25.1
- CVE-2023-3090
- Description:
ipvlan:Fix out-of-bounds caused by unclear skb->cb
- CVE: https://access.redhat.com/security/cve/CVE-2023-3090
- Patch: rhel9/5.14.0-284.25.1.el9_2/CVE-2023-3090-ipvlan-Fix-out-of-bounds-caused-by-unclear-skb-cb.patch
- From: 5.14.0-284.25.1
- CVE-2023-35788
- Description:
net/sched: flower: fix possible OOB write in fl_set_geneve_opt()
- CVE: https://access.redhat.com/security/cve/CVE-2023-35788
- Patch: rhel9/5.14.0-284.25.1.el9_2/CVE-2023-35788-net-sched-flower-fix-possible-OOB-write-in-fl_set_g.patch
- From: 5.14.0-284.25.1
- CVE-2023-4147
- Description:
nf_tables: disallow rule addition to bound chain via NFTA_RULE_CHAIN_ID
- CVE: https://access.redhat.com/security/cve/CVE-2023-4147
- Patch: rhel9/5.14.0-284.30.1.el9_2/CVE-2023-4147-netfilter-nf-tables-disallow-rule-addition-to-bound-chain-via.patch
- From: 5.14.0-284.30.1
- CVE-2023-3776
- Description:
net/sched: cls_fw: Fix improper refcount update leads to use-after-free
- CVE: https://access.redhat.com/security/cve/CVE-2023-3776
- Patch: rhel9/5.14.0-284.30.1.el9_2/CVE-2023-3776-net-sched-cls-fw-fix-improper-refcount-update-leads-to.patch
- From: 5.14.0-284.30.1
- CVE-2023-21102
- Description:
out of scope, ARM EFI related
- CVE:
- Patch: skipped/CVE-2023-21102.patch
- From:
- CVE-2023-1637
- Description:
x86/speculation: Restore speculation related MSRs during S3 resume
- CVE: https://access.redhat.com/security/cve/CVE-2023-1637
- Patch: rhel9/5.14.0-284.30.1.el9_2/CVE-2023-1637-x86-speculation-restore-speculation-related-msrs-during-s3-resume.patch
- From: 5.14.0-284.30.1
- CVE-2023-20593
- Description:
hw: amd: Cross-Process Information Leak
- CVE: https://access.redhat.com/security/cve/cve-2023-20593
- Patch: rhel9/5.14.0-284.30.1.el9_2/CVE-2023-20593-x86-cpu-amd-add-a-zenbleed-fix.patch
- From: 5.14.0-284.30.1.el9_2
- CVE-2023-4004
- Description:
netfilter: nft_set_pipapo: fix improper element removal
- CVE: https://access.redhat.com/security/cve/CVE-2023-3776
- Patch: rhel9/5.14.0-284.30.1.el9_2/CVE-2023-4004-netfilter-nft-set-pipapo-fix-improper-element-removal.patch
- From: 5.14.0-284.30.1
- CVE-2023-3390
- Description:
netfilter: nf_tables: incorrect error path handling with NFT_MSG_NEWRULE
- CVE: https://access.redhat.com/security/cve/CVE-2023-3390
- Patch: rhel9/5.14.0-284.30.1.el9_2/CVE-2023-3390-netfilter-nf-tables-incorrect-error-path-handling-with.patch
- From: 5.14.0-284.30.1
- CVE-2023-31248
- Description:
nf_tables: disallow rule addition to bound chain via NFTA_RULE_CHAIN_ID
- CVE: https://access.redhat.com/security/cve/CVE-2023-31248
- Patch: rhel9/5.14.0-284.30.1.el9_2/CVE-2023-31248-netfilter-nf_tables-do-not-ignore-genmask-when-looki.patch
- From: 5.14.0-284.30.1
- CVE-2023-35001
- Description:
netfilter: nf_tables: prevent OOB access in nft_byteorder_eval
- CVE: https://access.redhat.com/security/cve/CVE-2023-35001
- Patch: rhel9/5.14.0-284.30.1.el9_2/CVE-2023-35001-netfilter-nf_tables-prevent-OOB-access-in-nft_byteor.patch
- From: 5.14.0-284.30.1
- CVE-2023-3610
- Description:
netfilter: nf_tables: fix chain binding transaction logic
- CVE: https://access.redhat.com/security/cve/cve-2023-3610
- Patch: rhel9/5.14.0-284.30.1.el9_2/CVE-2023-3610-netfilter-nf_tables-fix-chain-binding-transaction-lo.patch
- From: 5.14.0-284.30.1.el9_2
- CVE-2023-3610
- Description:
netfilter: nf_tables: fix chain binding transaction logic
- CVE: https://access.redhat.com/security/cve/cve-2023-3610
- Patch: rhel9/5.14.0-284.30.1.el9_2/CVE-2023-3610-netfilter-nf_tables-fix-chain-binding-transaction-lo-kpatch.patch
- From: 5.14.0-284.30.1.el9_2
- CVE-2023-3609
- Description:
net/sched: cls_u32: Fix reference counter leak leading to overflow
- CVE: https://access.redhat.com/security/cve/CVE-2023-3609
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-3609-net-sched-cls-u32-fix-reference-counter-leak-leading-to-overflow-1.patch
- From: v5.14.0-362.8.1.el9
- CVE-2023-1652
- Description:
NFSD: fix use-after-free in nfsd4_ssc_setup_dul()
- CVE: https://access.redhat.com/security/cve/CVE-2023-1652
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-1652-nfsd-fix-use-after-free-in-nfsd4-ssc-setup-dul.patch
- From: v5.14.0-362.8.1.el9
- CVE-2023-1989
- Description:
Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinished work
- CVE: https://access.redhat.com/security/cve/CVE-2023-1989
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-1989-bluetooth-btsdio-fix-use-after-free-bug-in-btsdio-remove-due-to.patch
- From: v5.14.0-362.8.1.el9
- CVE-2023-3141 CVE-2023-35825
- Description:
memstick: r592: Fix UAF bug in r592_remove due to race condition
- CVE: https://access.redhat.com/security/cve/CVE-2023-35825
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-3141-memstick-r592-fix-uaf-bug-in-r592-remove-due-to-race-condition.patch
- From: v5.14.0-362.8.1.el9
- CVE-2023-3268
- Description:
relayfs: fix out-of-bounds access in relay_file_read
- CVE: https://access.redhat.com/security/cve/CVE-2023-3268
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-3268-relayfs-fix-out-of-bounds-access-in-relay-file-read.patch
- From: v5.14.0-362.8.1.el9
- CVE-2023-4207 CVE-2023-4128 CVE-2023-4208 CVE-2023-4206
- Description:
net/sched: cls_fw: No longer copy tcf_result on update to avoid use-after-free
- CVE: https://access.redhat.com/security/cve/CVE-2023-4128
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-4128-CVE-2023-4206-CVE-2023-4207-CVE-2023-4208-net-sched-cls-fw-no-longer-copy-tcf-result-on-update-to-avoid.patch
- From: v5.14.0-362.8.1.el9
- CVE-2023-4207 CVE-2023-4128 CVE-2023-4208 CVE-2023-4206
- Description:
net/sched: cls_route: No longer copy tcf_result on update to avoid use-after-free
- CVE: https://access.redhat.com/security/cve/CVE-2023-4128
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-4128-CVE-2023-4206-CVE-2023-4207-CVE-2023-4208-net-sched-cls-route-no-longer-copy-tcf-result-on-update-to-avoid.patch
- From: v5.14.0-362.8.1.el9
- CVE-2023-4207 CVE-2023-4128 CVE-2023-4208 CVE-2023-4206
- Description:
net/sched: cls_u32: No longer copy tcf_result on update to avoid
- CVE: https://access.redhat.com/security/cve/CVE-2023-4128
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-4128-CVE-2023-4206-CVE-2023-4207-CVE-2023-4208-net-sched-cls-u32-no-longer-copy-tcf-result-on-update-to-avoid.patch
- From: v5.14.0-362.8.1.el9
- CVE-2023-44466
- Description:
libceph: harden msgr2.1 frame segment length checks
- CVE: https://access.redhat.com/security/cve/CVE-2023-44466
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-44466-libceph-harden-msgr2.1-frame-segment-length-checks.patch
- From: v5.14.0-362.8.1.el9
- CVE-2023-1073
- Description:
HID: check empty report_list in hid_validate_values()
- CVE: https://access.redhat.com/security/cve/CVE-2023-1073
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-1073-hid-check-empty-report-list-in-hid-validate-values.patch
- From: v5.14.0-362.8.1.el9
- CVE-2023-1079
- Description:
HID: asus: use spinlock to safely schedule workers
- CVE: https://access.redhat.com/security/cve/CVE-2023-1079
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-1079-HID-asus-use-spinlock-to-protect-concurrent-accesses.patch
- From: v5.14.0-362.8.1.el9
- CVE-2023-1079
- Description:
HID: asus: use spinlock to safely schedule workers
- CVE: https://access.redhat.com/security/cve/CVE-2023-1079
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-1079-HID-asus-use-spinlock-to-safely-schedule-workers.patch
- From: v5.14.0-362.8.1.el9
- CVE-2023-1079
- Description:
HID: asus: use spinlock to safely schedule workers
- CVE: https://access.redhat.com/security/cve/CVE-2023-1079
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-1079-HID-asus-use-spinlock-to-safely-schedule-workers-kpatch.patch
- From: v5.14.0-362.8.1.el9
- CVE-2023-30456
- Description:
KVM: nVMX: add missing consistency checks for CR0 and CR4
- CVE: https://access.redhat.com/security/cve/CVE-2023-30456
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-30456-kvm-nvmx-add-missing-consistency-checks-for-cr0-and-cr4.patch
- From: v5.14.0-362.8.1.el9
- CVE-2023-33203
- Description:
net: qcom/emac: Fix use after free bug in emac_remove due to race condition
- CVE: https://access.redhat.com/security/cve/CVE-2023-33203
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-33203-net-qcom-emac-fix-use-after-free-bug-in-emac-remove-due-to-race.patch
- From: v5.14.0-362.8.1.el9
- CVE-2023-40982
- Description:
Fixes require microcode updates
- CVE:
- Patch: skipped/CVE-2023-40982.patch
- From:
- CVE-2023-1252
- Description:
ovl: fix use after free in struct ovl_aio_req
- CVE: https://access.redhat.com/security/cve/CVE-2023-1252
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-1252-ovl-fix-use-after-free-in-struct-ovl_aio_req-1.patch
- From: 5.14.0-362.8.1.el9_3
- CVE-2023-1252
- Description:
ovl: fix use after free in struct ovl_aio_req
- CVE: https://access.redhat.com/security/cve/CVE-2023-1252
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-1252-ovl-fix-use-after-free-in-struct-ovl_aio_req-kpatch.patch
- From: 4.18.0-513.5.1.el8_9
- CVE-2023-1074
- Description:
sctp: fail if no bound addresses can be used for a given scope
- CVE: https://access.redhat.com/security/cve/CVE-2023-1074
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-1074-sctp-fail-if-no-bound-addresses-can-be-used-for-a-given-scope.patch
- From: v5.14.0-362.8.1.el9
- CVE-2023-1076
- Description:
net: add sock_init_data_uid()
- CVE: https://access.redhat.com/security/cve/CVE-2023-1076
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-1076-net-add-sock_init_data_uid.patch
- From: v5.14.0-362.8.1.el9
- CVE-2023-1076
- Description:
tap: tap_open(): correctly initialize socket uid
- CVE: https://access.redhat.com/security/cve/CVE-2023-1076
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-1076-tap-tap-open-correctly-initialize-socket-uid.patch
- From: v5.14.0-362.8.1.el9
- CVE-2023-1076
- Description:
tun: tun_chr_open(): correctly initialize socket uid
- CVE: https://access.redhat.com/security/cve/CVE-2023-1076
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-1076-tun-tun-chr-open-correctly-initialize-socket-uid.patch
- From: v5.14.0-362.8.1.el9
- CVE-2023-1206
- Description:
This is a low priority CVE & the patch impacts many critical components of the networking subsystem & it requires multiple complex adaptations in those components to avoid losing existing connections on patch/unpatch.
- CVE:
- Patch: skipped/CVE-2023-1206.patch
- From:
- CVE-2023-1855
- Description:
hwmon: (xgene) Fix use after free bug in xgene_hwmon_remove due to race condition
- CVE: https://access.redhat.com/security/cve/CVE-2023-1855
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-1855-hwmon-xgene-fix-use-after-free-bug-in-xgene-hwmon-remove-due-to.patch
- From: v5.14.0-362.8.1.el9
- CVE-2023-3161
- Description:
fbcon: Check font dimension limits
- CVE: https://access.redhat.com/security/cve/CVE-2023-3161
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-3161-fbcon-check-font-dimension-limits-1.patch
- From: v5.14.0-362.8.1.el9
- CVE-2023-3358
- Description:
fbcon: HID: intel_ish-hid: Add check for ishtp_dma_tx_map
- CVE: https://access.redhat.com/security/cve/CVE-2023-3358
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-3358-hid-intel-ish-hid-add-check-for-ishtp-dma-tx-map.patch
- From: v5.14.0-362.8.1.el9
- CVE-2023-3772
- Description:
xfrm: add NULL check in xfrm_update_ae_params
- CVE: https://access.redhat.com/security/cve/CVE-2023-3772
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-3772-xfrm-add-NULL-check-in-xfrm_update_ae_params.patch
- From: v5.14.0-362.8.1.el9
- CVE-2023-4273
- Description:
Smart Patch for fs/exfat/dir.c
- CVE: https://access.redhat.com/security/cve/CVE-2023-4273
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-4273-smart-patch-for-fs-exfat-dir-c.patch
- From: 5.14.0-362.8.1.el9_3
- CVE-2022-3594
- Description:
r8152: Rate limit overflow messages
- CVE: https://access.redhat.com/security/cve/CVE-2022-3594
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2022-3594-r8152-rate-limit-overflow-messages.patch
- From: v5.14.0-362.8.1.el9
- CVE-2022-42895
- Description:
Bluetooth: L2CAP: Fix attempting to access uninitialized memory
- CVE: https://access.redhat.com/security/cve/CVE-2022-42895
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2022-42895-bluetooth-l2cap-fix-attempting-to-access-uninitialized-memory.patch
- From: v5.14.0-362.8.1.el9
- CVE-2022-3523
- Description:
mm/memory.c: fix race when faulting a device private page
- CVE: https://access.redhat.com/security/cve/CVE-2022-3523
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2022-3523-mm-memory.c-fix-race-when-faulting-a-device-private-page.patch
- From: 5.14.0-362.8.1.el9_3
- CVE-2022-3523
- Description:
nouveau: Fix migrate_to_ram() for faulting page
- CVE: https://access.redhat.com/security/cve/CVE-2022-3523
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2022-3523-7043-nouveau-Fix-migrate_to_ram-for-faulting-page.patch
- From: 5.14.0-362.8.1.el9_3
- CVE-2022-3523
- Description:
mm/memory: return vm_fault_t result from migrate_to_ram() callback
- CVE: https://access.redhat.com/security/cve/CVE-2022-3523
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2022-3523-7044-mm-memory-return-vm_fault_t-result-from-migrate_to_ram()-callback.patch
- From: 5.14.0-362.8.1.el9_3
- CVE-2023-1075
- Description:
net/tls: tls_is_tx_ready() checked list_entry
- CVE: https://access.redhat.com/security/cve/CVE-2023-1075
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-1075-net-tls-tls-is-tx-ready-checked-list-entry-1.patch
- From: v5.14.0-362.8.1.el9
- CVE-2023-26545
- Description:
net: mpls: fix stale pointer if allocation fails during device rename
- CVE: https://access.redhat.com/security/cve/CVE-2023-26545
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-26545-net-mpls-fix-stale-pointer-if-allocation-fails-during-device-rename.patch
- From: v5.14.0-362.8.1.el9
- CVE-2023-3212
- Description:
gfs2: Don't deref jdesc in evict
- CVE: https://access.redhat.com/security/cve/CVE-2023-3212
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-3212-gfs2-don-t-deref-jdesc-in-evict-1.patch
- From: v5.14.0-362.8.1.el9
- CVE-2023-4194
- Description:
net: tap_open(): set sk_uid from current_fsuid()
- CVE: https://access.redhat.com/security/cve/CVE-2023-4194
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-4194-net-tap-open-set-sk-uid-from-current-fsuid.patch
- From: v5.14.0-362.8.1.el9
- CVE-2023-4194
- Description:
net: tun_chr_open(): set sk_uid from current_fsuid()
- CVE: https://access.redhat.com/security/cve/CVE-2023-4194
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-4194-net-tun-chr-open-set-sk-uid-from-current-fsuid.patch
- From: v5.14.0-362.8.1.el9
- CVE-2023-4155
- Description:
KVM: SEV: only access GHCB fields once
- CVE: https://access.redhat.com/security/cve/CVE-2023-4155
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-4155-kvm-sev-only-access-ghcb-fields-once-1.patch
- From: v5.14.0-362.8.1.el9
- CVE-2023-0597
- Description:
Medium severity vulnerability CVE requiring extremely complex adaptation (if at all possible)
- CVE:
- Patch: skipped/CVE-2023-0597.patch
- From:
- CVE-2022-3565
- Description:
In RHEL9 (and derivatives) isdn/mISDN driver is absent, not compiled.
- CVE:
- Patch: skipped/CVE-2022-3565.patch
- From:
- CVE-2023-1249
- Description:
coredump/elf: Pass coredump_params into fill_note_info
- CVE:
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-1249-18879-coredump-elf-Pass-coredump_params-into-fill_note_info.patch
- From: 5.14.0-362.8.1.el9_3
- CVE-2023-1249
- Description:
coredump: fix memleak in dump_vma_snapshot()
- CVE: https://access.redhat.com/security/cve/CVE-2023-1249
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-1249-2270-coredump-fix-memleak-in-dump_vma_snapshot.patch
- From: 5.14.0-362.8.1.el9_3
- CVE-2023-1249
- Description:
coredump: Snapshot the vmas in do_coredump
- CVE: https://access.redhat.com/security/cve/CVE-2023-1249
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-1249-2274-coredump-Snapshot-the-vmas-in-do_coredump-pre284.patch
- From: 5.14.0-362.8.1.el9_3
- CVE-2023-1249
- Description:
coredump: Remove the WARN_ON in dump_vma_snapshot
- CVE: https://access.redhat.com/security/cve/CVE-2023-1249
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-1249-3426-coredump-Remove-the-WARN_ON-in-dump_vma_snapshot.patch
- From: 5.14.0-362.8.1.el9_3
- CVE-2023-1249
- Description:
coredump: Use the vma snapshot in fill_files_note
- CVE: https://access.redhat.com/security/cve/CVE-2023-1249
- Patch: rhel9/5.14.0-362.8.1.el9_3/CVE-2023-1249-3427-coredump-Use-the-vma-snapshot-in-fill_files_note.patch
- From: 5.14.0-362.8.1.el9_3
- CVE-2023-45871
- Description:
igb: set max size RX buffer when store bad packet is enabled
- CVE: https://access.redhat.com/security/cve/CVE-2023-45871
- Patch: rhel9/5.14.0-362.13.1.el9_3/CVE-2023-45871-igb-set-max-size-rx-buffer-when-store-bad-packet-is-enabled.patch
- From: 5.14.0-362.13.1.el9_3
- CVE-2023-45871
- Description:
igb: set max size RX buffer when store bad packet is enabled
- CVE: https://access.redhat.com/security/cve/CVE-2023-45871
- Patch: rhel9/5.14.0-362.13.1.el9_3/CVE-2023-45871-igb-set-max-size-rx-buffer-when-store-bad-packet-is-enabled-kpatch.patch
- From: 5.14.0-362.13.1.el9_3
- CVE-2023-1192
- Description:
cifs: Fix UAF in cifs_demultiplex_thread()
- CVE: https://access.redhat.com/security/cve/CVE-2023-1192
- Patch: rhel9/5.14.0-362.18.1.el9_3/CVE-2023-1192-cifs-Fix-UAF-in-cifs_demultiplex_thread-162.patch
- From: 5.14.0-362.13.1.el9_3
- CVE-2023-5178
- Description:
x86/sev: Disable MMIO emulation from user mode
- CVE: https://access.redhat.com/security/cve/CVE-2023-5178
- Patch: rhel9/5.14.0-362.18.1.el9_3/CVE-2023-5178-nvmet-tcp-fix-a-possible-uaf-in-queue-intialization-setup.patch
- From: 5.14.0-362.18.1.el9_3
- CVE-2022-3545
- Description:
nfp: fix use-after-free in area_cache_get()
- CVE: https://access.redhat.com/security/cve/CVE-2022-3545
- Patch: rhel9/5.14.0-362.18.1.el9_3/CVE-2022-3545-nfp-fix-use-after-free-in-area-cache-get.patch
- From: 5.14.0-362.18.1.el9_3
- CVE-2023-3777
- Description:
netfilter: nf_tables: skip bound chain on rule flush
- CVE: https://access.redhat.com/security/cve/CVE-2023-3777
- Patch: rhel9/5.14.0-362.18.1.el9_3/CVE-2023-3777-netfilter-nf-tables-skip-bound-chain-on-rule-flush.patch
- From: 5.14.0-362.18.1.el9_3
- CVE-2023-3812
- Description:
net: tun: fix bugs for oversize packet when napi frags enabled
- CVE: https://access.redhat.com/security/cve/CVE-2023-3812
- Patch: rhel9/5.14.0-362.18.1.el9_3/CVE-2023-3812-net-tun-fix-bugs-for-oversize-packet-when-napi-frags-enabled.patch
- From: 5.14.0-362.18.1.el9_3
- CVE-2023-4015
- Description:
kernel-5.14.0-284.11.1.el9_2 and earlier are not vulnerable because they don't have the commit 4bedf9eee016 (netfilter: nf_tables: fix chain binding transaction logic) that introduced the vulnerability
- CVE:
- Patch: skipped/CVE-2023-4015.patch
- From:
- CVE-2023-4622
- Description:
af_unix: Fix null-ptr-deref in unix_stream_sendpage().
- CVE: https://access.redhat.com/security/cve/CVE-2023-4622
- Patch: rhel9/5.14.0-362.18.1.el9_3/CVE-2023-4622-af-unix-fix-null-ptr-deref-in-unix-stream-sendpage.patch
- From: 5.14.0-362.18.1.el9_3
- CVE-2023-4623
- Description:
net/sched: sch_hfsc: Ensure inner classes have fsc curve
- CVE: https://access.redhat.com/security/cve/CVE-2023-4623
- Patch: rhel9/5.14.0-362.18.1.el9_3/CVE-2023-4623-net-sched-sch-hfsc-ensure-inner-classes-have-fsc-curve.patch
- From: 5.14.0-362.18.1.el9_3
- CVE-2023-40283
- Description:
Bluetooth: L2CAP: Fix use-after-free in l2cap_sock_ready_cb
- CVE: https://access.redhat.com/security/cve/CVE-2023-40283
- Patch: rhel9/5.14.0-362.18.1.el9_3/CVE-2023-40283-bluetooth-l2cap-fix-use-after-free-in-l2cap-sock-ready-cb.patch
- From: 5.14.0-362.18.1.el9_3
- CVE-2022-41858
- Description:
drivers: net: slip: fix NPD bug in sl_tx_timeout()
- CVE: https://access.redhat.com/security/cve/CVE-2022-41858
- Patch: rhel9/5.14.0-362.18.1.el9_3/CVE-2022-41858-drivers-net-slip-fix-npd-bug-in-sl-tx-timeout.patch
- From: 5.14.0-362.18.1.el9_3
- CVE-2023-46813
- Description:
x86/sev: Disable MMIO emulation from user mode
- CVE: https://access.redhat.com/security/cve/CVE-2023-46813
- Patch: rhel9/5.14.0-362.18.1.el9_3/CVE-2023-46813-x86-sev-disable-mmio-emulation-from-user-mode-1.patch
- From: 5.14.0-362.18.1.el9_3
- CVE-2023-46813
- Description:
x86/sev: Check IOBM for IOIO exceptions from user-space
- CVE: https://access.redhat.com/security/cve/CVE-2023-46813
- Patch: rhel9/5.14.0-362.18.1.el9_3/CVE-2023-46813-x86-sev-check-iobm-for-ioio-exceptions-from-user-space.patch
- From: 5.14.0-362.18.1.el9_3
- CVE-2023-46813
- Description:
x86/sev: Check for user-space IOIO pointing to kernel space
- CVE: https://access.redhat.com/security/cve/CVE-2023-46813
- Patch: rhel9/5.14.0-362.18.1.el9_3/CVE-2023-46813-x86-sev-check-for-user-space-ioio-pointing-to-kernel-space-1.patch
- From: 5.14.0-362.18.1.el9_3
- CVE-2023-42753
- Description:
netfilter: ipset: add the missing IP_SET_HASH_WITH_NET0 macro for ip_set_hash_netportnet.c
- CVE: https://access.redhat.com/security/cve/CVE-2023-42753
- Patch: rhel9/5.14.0-362.18.1.el9_3/CVE-2023-42753-netfilter-ipset-add-the-missing-IP_SET_HASH_WITH_NET0-macro-for-ip_set_hash_netportnet-c.patch
- From: 5.14.0-362.18.1.el9_3
- CVE-2022-36402
- Description:
drm/vmwgfx: Fix shader stage validation
- CVE: https://access.redhat.com/security/cve/CVE-2022-36402
- Patch: rhel9/5.14.0-362.18.1.el9_3/CVE-2022-36402-drm-vmwgfx-Fix-shader-stage-validation-1.patch
- From: 5.14.0-362.18.1.el9_3
- CVE-2023-2166
- Description:
can: af_can: fix NULL pointer dereference in can_rcv_filter
- CVE: https://access.redhat.com/security/cve/CVE-2023-2166
- Patch: rhel9/5.14.0-362.18.1.el9_3/CVE-2023-2166-can-af_can-fix-NULL-pointer-dereference-in-can_rcv_f-1.patch
- From: 5.14.0-362.18.1.el9_3
- CVE-2023-6679
- Description:
Affected device driver does not exist in supported kernels.
- CVE:
- Patch: skipped/CVE-2023-6679.patch
- From:
- CVE-2023-4244
- Description:
An introduction of required changes through KernelCare could cause unavoidable problems to applications which use netfilter functionality.
- CVE:
- Patch: skipped/CVE-2023-4244.patch
- From:
- CVE-2023-51042
- Description:
drm/amdgpu: Fix potential fence use-after-free v2
- CVE: https://access.redhat.com/security/cve/CVE-2023-51042
- Patch: rhel9/5.14.0-362.24.1.el9_3/CVE-2023-51042-patch-drm-amdgpu-fix-potential-fence-use-after-free-v2.patch
- From: 5.14.0-362.24.1.el9_3
- CVE-2023-5717
- Description:
perf: Disallow mis-matched inherited group reads
- CVE: https://access.redhat.com/security/cve/CVE-2023-5717
- Patch: rhel9/5.14.0-362.24.1.el9_3/CVE-2023-5717-perf-disallow-mis-matched-inherited-group-reads-162.patch
- From: 5.14.0-362.24.1.el9_3
- CVE-2023-5717
- Description:
perf: Disallow mis-matched inherited group reads (adaptation)
- CVE: https://access.redhat.com/security/cve/CVE-2023-5717
- Patch: rhel9/5.14.0-362.24.1.el9_3/CVE-2023-5717-perf-disallow-mis-matched-inherited-group-reads-kpatch-162.patch
- From: 4.18.0-513.18.1.el8_9
- CVE-2023-6606
- Description:
smb: client: fix OOB in smbCalcSize()
- CVE: https://access.redhat.com/security/cve/CVE-2023-6606
- Patch: rhel9/5.14.0-362.24.1.el9_3/CVE-2023-6606-smb-client-fix-oob-in-smbcalcsize.patch
- From: 5.14.0-362.24.1.el9_3
- CVE-2023-6610
- Description:
smb: client: fix potential OOB in smb2_dump_detail()
- CVE: https://access.redhat.com/security/cve/CVE-2023-6610
- Patch: rhel9/5.14.0-362.24.1.el9_3/CVE-2023-6610-smb-client-fix-potential-oob-in-smb2-dump-detail-70.26.patch
- From: 5.14.0-362.24.1.el9_3
- CVE-2023-6817
- Description:
netfilter: nft_set_pipapo: skip inactive elements during set walk
- CVE: https://access.redhat.com/security/cve/CVE-2023-6817
- Patch: rhel9/5.14.0-362.24.1.el9_3/CVE-2023-6817-netfilter-nft-set-pipapo-skip-inactive-elements-during-set-walk.patch
- From: 5.14.0-362.24.1.el9_3
- CVE-2024-0193
- Description:
Vulnerable commit 5f68718b34a5 (netfilter: nf_tables: GC transaction API to avoid race with control plane) was introduced later than kernel-5.14.0-362.18.1.el9_3. None of our kernels are vulnerable.
- CVE:
- Patch: skipped/CVE-2024-0193.patch
- From:
- CVE-2024-0646
- Description:
net: tls, update curr on splice as well
- CVE: https://access.redhat.com/security/cve/CVE-2024-0646
- Patch: rhel9/5.14.0-362.24.1.el9_3/CVE-2024-0646-net-tls-update-curr-on-splice-as-well.patch
- From: 5.14.0-362.24.1.el9_3
- CVE-2023-6356 CVE-2023-6536 CVE-2023-6535
- Description:
nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length
- CVE: https://access.redhat.com/security/cve/CVE-2023-6535
- Patch: rhel9/5.14.0-362.24.1.el9_3/CVE-2023-6535-6536-6356-nvmet-tcp-Fix-a-kernel-panic-when-host-sends-an-inv-162.patch
- From: 5.14.0-362.24.1.el9_3
- CVE-2023-6356 CVE-2023-6536 CVE-2023-6535
- Description:
nvmet-tcp: fix a crash in nvmet_req_complete()
- CVE: https://access.redhat.com/security/cve/CVE-2023-6535
- Patch: rhel9/5.14.0-362.24.1.el9_3/CVE-2023-6535-6536-6356-nvmet-tcp-fix-a-crash-in-nvmet_req_complete.patch
- From: 5.14.0-362.24.1.el9_3
- CVE-2023-6356 CVE-2023-6536 CVE-2023-6535
- Description:
nvmet-tcp: remove boilerplate code
- CVE: https://access.redhat.com/security/cve/CVE-2023-6535
- Patch: rhel9/5.14.0-362.24.1.el9_3/CVE-2023-6535-6536-6356-nvmet-tcp-remove-boilerplate-code-162.patch
- From: 5.14.0-362.24.1.el9_3
- CVE-2023-6356 CVE-2023-6536 CVE-2023-6535
- Description:
nvmet-tcp: Fix the H2C expected PDU len calculation
- CVE: https://access.redhat.com/security/cve/CVE-2023-6535
- Patch: rhel9/5.14.0-362.24.1.el9_3/CVE-2023-6535-6536-6356-nvmet-tcp-Fix-the-H2C-expected-PDU-len-calculation-162.patch
- From: 5.14.0-362.24.1.el9_3
- CVE-2022-45934
- Description:
Bluetooth: L2CAP: Fix u8 overflow
- CVE: https://access.redhat.com/security/cve/CVE-2022-45934
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2022-45934-bluetooth-l2cap-fix-u8-overflow.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-51780
- Description:
atm: Fix Use-After-Free in do_vcc_ioctl
- CVE: https://access.redhat.com/security/cve/CVE-2023-51780
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-51780-atm-Fix-Use-After-Free-in-do_vcc_ioctl.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-6931
- Description:
perf: Fix perf_event_validate_size()
- CVE: https://access.redhat.com/security/cve/CVE-2023-6931
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-6931-perf-fix-perf-event-validate-size-162.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-6931
- Description:
perf: Fix perf_event_validate_size() lockdep
- CVE: https://access.redhat.com/security/cve/CVE-2023-6931
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-6931-perf-fix-perf-event-validate-size-lockdep-splat.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-6040
- Description:
netfilter: nf_tables: Reject tables of
- CVE: https://access.redhat.com/security/cve/CVE-2023-6040
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-6040-netfilter-nf-tables-reject-tables-of-unsupported-family.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-6932
- Description:
ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet
- CVE: https://access.redhat.com/security/cve/CVE-2023-6932
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-6932-ipv4-igmp-fix-refcnt-uaf-issue-when-receiving-igmp-query-packet.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-6546
- Description:
tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux
- CVE: https://access.redhat.com/security/cve/CVE-2023-6546
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-6546-tty-n-gsm-fix-the-uaf-caused-by-race-condition-in-gsm_cleanup_mux.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-6176
- Description:
net/tls: do not free tls_rec on async operation in bpf_exec_tx_verdict()
- CVE: https://access.redhat.com/security/cve/CVE-2023-6176
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-6176-net-tls-do-not-free-tls-rec-on-async-operation-in-bpf_exec_tx_verdict.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-25775
- Description:
RDMA/irdma: Prevent zero-length STAG registration
- CVE: https://access.redhat.com/security/cve/CVE-2023-25775
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-25775-RDMA-irdma-Prevent-zero-length-STAG-registration-70.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-25775
- Description:
RDMA/irdma: Prevent zero-length STAG registration
- CVE: https://access.redhat.com/security/cve/CVE-2023-25775
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-25775-RDMA-irdma-Prevent-zero-length-STAG-registration-kpatch.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2024-0565
- Description:
smb: client: fix OOB in receive_encrypted_standard()
- CVE: https://access.redhat.com/security/cve/CVE-2024-0565
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2024-0565-smb-client-fix-OOB-in-receive_encrypted_standard-70.26.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-52434
- Description:
smb: client: fix potential OOBs in smb2_parse_contexts()
- CVE: https://access.redhat.com/security/cve/CVE-2023-52434
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-52434-smb-client-fix-potential-OOBs-in-smb2_parse_context-162.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-52434
- Description:
smb: client: fix parsing of SMB3.1.1 POSIX create context
- CVE: https://access.redhat.com/security/cve/CVE-2023-52434
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-52434-smb-client-fix-parsing-of-SMB3.1.1-POSIX-create-context.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2024-1085
- Description:
netfilter: nf_tables: check if catch-all set element is active in next generation
- CVE: https://access.redhat.com/security/cve/CVE-2024-1085
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2024-1085-netfilter-nf-tables-check-if-catch-all-set-5.14.0-362.18.1.el9_3.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-51779
- Description:
Bluetooth: af_bluetooth: Fix Use-After-Free in
- CVE: https://access.redhat.com/security/cve/CVE-2023-51779
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-51779-bluetooth-af-bluetooth-fix-use-after-free-in-5.14.0-162.23.1.el9_1.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-6531
- Description:
io_uring/af_unix: disable sending io_uring over sockets
- CVE: https://access.redhat.com/security/cve/CVE-2023-6531
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-6531-io-uring-af-unix-disable-sending-io-uring-over-5.14.0-284.30.1.el9_2.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-3567
- Description:
vc_screen: move load of struct vc_data pointer in
- CVE: https://access.redhat.com/security/cve/CVE-2023-3567
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-3567-vc-screen-move-load-of-struct-vc-data-pointer-in.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-3567
- Description:
vc_screen: don't clobber return value in vcs_read
- CVE: https://access.redhat.com/security/cve/CVE-2023-3567
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-3567-vc-screen-don-t-clobber-return-value-in-vcs-read.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-39198
- Description:
drm/qxl: fix UAF on handle creation
- CVE: https://access.redhat.com/security/cve/CVE-2023-39198
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-39198-drm-qxl-fix-uaf-on-handle-creation.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2024-26593
- Description:
i2c: i801: Fix block process call transactions
- CVE: https://access.redhat.com/security/cve/CVE-2024-26593
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2024-26593-i2c-i801-fix-block-process-call-transactions-5.14.0-70.30.1.el9_0.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-6915
- Description:
ida: Fix crash in ida_free when the bitmap is empty
- CVE: https://access.redhat.com/security/cve/CVE-2023-6915
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-6915-ida-fix-crash-in-ida-free-when-the-bitmap-is.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2024-0841
- Description:
fs,hugetlb: fix NULL pointer dereference in hugetlbs_fill_super {CVE-2024-0841}
- CVE: https://access.redhat.com/security/cve/CVE-2024-0841
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2024-0841-fs-hugetlb-fix-null-pointer-dereference-in.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-28464
- Description:
Bluetooth: Fix double free in hci_conn_cleanup
- CVE: https://access.redhat.com/security/cve/CVE-2023-28464
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-28464-bluetooth-fix-double-free-in-hci-conn-cleanu-pre5.14.0-362.24.1.el9_3.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-52581
- Description:
The patch for this CVE already present in kernel-5.14.0-362.24.1.el9_3 version. The kernel-5.14.0-362.18.1.el9_3 version and below are not vulnerable because they don't have commit 5f68718b34a5 (netfilter: nf_tables: GC transaction API to avoid race with control plane) which introduced the vulnerability.
- CVE:
- Patch: skipped/CVE-2023-52581.patch
- From:
- CVE-2023-24023
- Description:
Bluetooth: Add more enc key size check
- CVE: https://access.redhat.com/security/cve/CVE-2023-24023
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-24023-Bluetooth-Add-more-enc-key-size-check.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-39189
- Description:
netfilter: nfnetlink_osf: avoid OOB read
- CVE: https://access.redhat.com/security/cve/CVE-2023-39189
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-39189-netfilter-nfnetlink-osf-avoid-oob-read.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-39193
- Description:
netfilter: xt_sctp: validate the flag_info count
- CVE: https://access.redhat.com/security/cve/CVE-2023-39193
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-39193-netfilter-xt-sctp-validate-the-flag-info-count.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-45863
- Description:
kobject: Fix slab-out-of-bounds in fill_kobj_path()
- CVE: https://access.redhat.com/security/cve/CVE-2023-45863
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-45863-kobject-fix-slab-out-of-bounds-in-fill_kobj_path.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-45863
- Description:
kobject: modify kobject_get_path() to take a const *
- CVE: https://access.redhat.com/security/cve/CVE-2023-45863
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-45863-kobject-modify-kobject-get-path-to-take-a-const-70.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2022-0480
- Description:
Reapply "memcg: enable accounting for file lock
- CVE: https://access.redhat.com/security/cve/CVE-2022-0480
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2022-0480-reapply-memcg-enable-accounting-for-file-lock-caches.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-6622
- Description:
netfilter: nf_tables: bail out on mismatching
- CVE: https://access.redhat.com/security/cve/CVE-2023-6622
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-6622-netfilter-nf-tables-bail-out-on-mismatching-dynset-and-set-expressions.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-52529
- Description:
HID: sony: Fix a potential memory leak in sony_probe()
- CVE: https://access.redhat.com/security/cve/CVE-2023-52529
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-52529-hid-sony-fix-a-potential-memory-leak-in-sony_probe-70.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-52610
- Description:
net/sched: act_ct: fix skb leak and crash on ooo frags
- CVE: https://access.redhat.com/security/cve/CVE-2023-52610
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-52610-net-sched-act-ct-fix-skb-leak-and-crash-on-ooo-frags-284.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2022-38096
- Description:
drm/vmwgfx: Fix possible null pointer derefence with invalid contexts
- CVE: https://access.redhat.com/security/cve/CVE-2022-38096
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2022-38096-drm-vmwgfx-Fix-possible-null-pointer-derefence-with-invalid-contexts-70.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-4133
- Description:
Complex adaptation required to add timer_shutdown_sync() in timers subsystem.
- CVE:
- Patch: skipped/CVE-2023-4133.patch
- From:
- CVE-2024-26602
- Description:
sched/membarrier: reduce the ability to hammer on sys_membarrier
- CVE: https://access.redhat.com/security/cve/CVE-2024-26602
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2024-26602-sched-membarrier-reduce-the-ability-to-hammer-on-5.14.0-70.30.1.el9_0.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-42754
- Description:
ipv4: fix null-deref in ipv4_link_failure
- CVE: https://access.redhat.com/security/cve/CVE-2023-42754
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-42754-ipv4-fix-null-deref-in-ipv4-link-failure.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-52448
- Description:
gfs2: Fix kernel NULL pointer dereference in gfs2_rgrp_dump
- CVE: https://access.redhat.com/security/cve/CVE-2023-52448
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-52448-gfs2-fix-kernel-null-pointer-dereference-in.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-52476
- Description:
The given kernel version isn't vulnerable.
- CVE:
- Patch: skipped/CVE-2023-52476.patch
- From:
- CVE-2023-52522
- Description:
neigh: make sure used and confirmed times are valid
- CVE: https://access.redhat.com/security/cve/CVE-2023-52522
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-52522-neigh-make-sure-used-and-confirmed-times-are-valid.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-52522
- Description:
net: fix possible store tearing in neigh_periodic_work()
- CVE: https://access.redhat.com/security/cve/CVE-2023-52522
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-52522-net-fix-possible-store-tearing-in.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-52580
- Description:
net/core: Fix ETH_P_1588 flow dissector
- CVE: https://access.redhat.com/security/cve/CVE-2023-52580
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-52580-net-core-fix-eth-p-1588-flow-dissector.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-52620
- Description:
netfilter: nf_tables: disallow timeout for anonymous sets
- CVE: https://access.redhat.com/security/cve/CVE-2023-52620
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-52620-netfilter-nf-tables-disallow-timeout-for-5.14.0-162.23.1.el9_1.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2024-26633
- Description:
ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim()
- CVE: https://access.redhat.com/security/cve/CVE-2024-26633
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2024-26633-ip6-tunnel-fix-nexthdr-fragment-handling-in.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2024-26582
- Description:
net: tls: fix use-after-free with partial reads
- CVE: https://access.redhat.com/security/cve/CVE-2024-26582
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2024-26582-net-tls-fix-use-after-free-with-partial-reads.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2024-26583
- Description:
Low-severity patch proven to suffer from stack-unsafety problem when patching during network load.
- CVE:
- Patch: skipped/CVE-2024-26583.patch
- From:
- CVE-2024-26584
- Description:
Low-severity patch proven to suffer from stack-unsafety problem when patching during network load.
- CVE:
- Patch: skipped/CVE-2024-26584.patch
- From:
- CVE-2024-26585
- Description:
Low-severity patch proven to suffer from stack-unsafety problem when patching during network load.
- CVE:
- Patch: skipped/CVE-2024-26585.patch
- From:
- CVE-2023-52489
- Description:
The modified structure mem_section_usage is used only during bootup time. As we patch the changes after booting they will have no effect. Therefore we cannot patch this CVE.
- CVE:
- Patch: skipped/CVE-2023-52489.patch
- From:
- CVE-2020-26555
- Description:
Bluetooth: hci_event: Ignore NULL link key
- CVE: https://access.redhat.com/security/cve/CVE-2020-26555
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2020-26555-bluetooth-hci-event-ignore-null-link-key.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2020-26555
- Description:
Bluetooth: Reject connection with the device
- CVE: https://access.redhat.com/security/cve/CVE-2020-26555
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2020-26555-bluetooth-reject-connection-with-the-device.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2020-26555
- Description:
Bluetooth: hci_event: Fix using memcmp when
- CVE: https://access.redhat.com/security/cve/CVE-2020-26555
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2020-26555-bluetooth-hci-event-fix-using-memcmp-when.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2020-26555
- Description:
Bluetooth: hci_event: Fix coding style
- CVE: https://access.redhat.com/security/cve/CVE-2020-26555
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2020-26555-bluetooth-hci-event-fix-coding-style.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2020-26555
- Description:
Bluetooth: avoid memcmp() out of bounds warning
- CVE: https://access.redhat.com/security/cve/CVE-2020-26555
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2020-26555-bluetooth-avoid-memcmp-out-of-bounds-warning.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-31083
- Description:
Bluetooth: hci_ldisc: check HCI_UART_PROTO_READY
- CVE: https://access.redhat.com/security/cve/CVE-2023-31083
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-31083-bluetooth-hci-ldisc-check-hci-uart-proto-ready.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-42756
- Description:
The given kernel version isn't vulnerable (Netfilter).
- CVE:
- Patch: skipped/CVE-2023-42756.patch
- From:
- CVE-2023-46862
- Description:
io_uring/fdinfo: lock SQ thread while retrieving thread cpu/pid
- CVE: https://ubuntu.com/security/CVE-2023-46862
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-46862-patch-io-uring-fdinfo-lock-sq-thread-while-retrieving-thread.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-52578
- Description:
net: add atomic_long_t to net_device_stats fields
- CVE: https://access.redhat.com/security/cve/CVE-2023-52578
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-52578-net-add-atomic_long_t-to-net_device_stats-fields.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-52578
- Description:
net: bridge: use DEV_STATS_INC()
- CVE: https://access.redhat.com/security/cve/CVE-2023-52578
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-52578-net-bridge-use-dev-stats-inc.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-52578
- Description:
net: bridge: use DEV_STATS_INC()
- CVE: https://access.redhat.com/security/cve/CVE-2023-52578
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-52578-net-bridge-use-dev-stats-inc-oldest-kpatch.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-37453
- Description:
USB: core: Unite old scheme and new scheme
- CVE: https://access.redhat.com/security/cve/CVE-2023-37453
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-37453-0001-Unite-old-scheme-and-new-scheme-descriptor-reads.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-37453
- Description:
USB: core: Change usb_get_device_descriptor() API
- CVE: https://access.redhat.com/security/cve/CVE-2023-37453
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-37453-0002-Change-usb_get_device_descriptor-API.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-37453
- Description:
USB: core: Fix race by not overwriting
- CVE: https://access.redhat.com/security/cve/CVE-2023-37453
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-37453-0003-Fix-race-by-not-overwriting-udev-descriptor-in-hub_p.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-37453
- Description:
USB: core: Fix race by not overwriting udev->descriptor in hub_port_init()
- CVE: https://access.redhat.com/security/cve/CVE-2023-37453
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-37453-0004-Fix-oversight-in-SuperSpeed-initialization-my-cherry.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-39194
- Description:
net: xfrm: Fix xfrm_address_filter OOB read
- CVE: https://access.redhat.com/security/cve/CVE-2023-39194
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-39194-net-xfrm-fix-xfrm-address-filter-oob-read.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-52574
- Description:
team: fix null-ptr-deref when team device type is changed
- CVE: https://access.redhat.com/security/cve/CVE-2023-52574
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-52574-0725-team-fix-null-ptr-deref-when-team-device-type-is-cha.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-52574
- Description:
team: fix null-ptr-deref when team device type is changed
- CVE: https://access.redhat.com/security/cve/CVE-2023-52574
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-52574-0725-team-fix-null-ptr-deref-when-team-device-type-is-cha-kpatch.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2023-6121
- Description:
nvmet: nul-terminate the NQNs passed in the
- CVE: https://access.redhat.com/security/cve/CVE-2023-6121
- Patch: rhel9/5.14.0-427.13.1.el9_4/CVE-2023-6121-nvmet-nul-terminate-the-nqns-passed-in-the.patch
- From: 5.14.0-427.13.1.el9_4
- CVE-2024-26609
- Description:
CVE has been marked as REJECTED on the NVD website.
- CVE:
- Patch: skipped/CVE-2024-26609.patch
- From:
- CVE-2023-51043
- Description:
drm/atomic: Fix potential use-after-free in nonblocking commits
- CVE: https://access.redhat.com/security/cve/CVE-2023-51043
- Patch: kc/CVE-2023-51043-drm-atomic-Fix-potential-use-after-free-in-nonblocking-commits-old.patch
- From: 4.18.0-372.95.1.el8_6
- CVE-2023-51043
- Description:
drm/atomic: Fix potential use-after-free in nonblocking commits
- CVE: https://access.redhat.com/security/cve/CVE-2023-51043
- Patch: kc/CVE-2023-51043-drm-atomic-Fix-potential-use-after-free-in-nonblocking-commits-old-kpatch.patch
- From: 4.18.0-372.95.1.el8_6
- CVE-2023-6240
- Description:
crypto: akcipher - Disable signing and decryption
- CVE: https://access.redhat.com/security/cve/CVE-2023-6240
- Patch: rhel9/5.14.0-427.16.1.el9_4/CVE-2023-6240-crypto-akcipher-Disable-signing-and-decryption.patch
- From: 5.14.0-427.16.1.el9_4
- CVE-2024-25742 CVE-2024-25743
- Description:
x86/sev: Harden #VC instruction emulation somewhat
- CVE: https://access.redhat.com/security/cve/CVE-2024-25743
- Patch: rhel9/5.14.0-427.16.1.el9_4/CVE-2024-25742-CVE-2024-25743-x86-sev-harden-vc-instruction-emulation-70.patch
- From: 5.14.0-427.16.1.el9_4
- CVE-2024-26642
- Description:
netfilter: nf_tables: disallow anonymous set with timeout flag
- CVE: https://access.redhat.com/security/cve/CVE-2024-26642
- Patch: rhel9/5.14.0-427.18.1.el9_4/CVE-2024-26642-netfilter-nf_tables-disallow-anonymous-set-with-timeout-flag-162.patch
- From: 5.14.0-427.18.1.el9_4
- CVE-2024-26673
- Description:
netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations
- CVE: https://access.redhat.com/security/cve/CVE-2024-26673
- Patch: rhel9/5.14.0-427.18.1.el9_4/CVE-2024-26673-netfilter-nft_ct-sanitize-layer-3-and-4-protocol-number-in-custom-expectations.patch
- From: 5.14.0-427.18.1.el9_4
- CVE-2024-26673
- Description:
netfilter: nft_ct: fix l3num expectations with inet pseudo family
- CVE: https://access.redhat.com/security/cve/CVE-2024-26673
- Patch: rhel9/5.14.0-427.18.1.el9_4/CVE-2024-26673-netfilter-nft_ct-fix-l3num-expectations-with-inet-pseudo-family.patch
- From: 5.14.0-427.18.1.el9_4
- CVE-2024-26804
- Description:
net: ip_tunnel: prevent perpetual headroom growth
- CVE: https://access.redhat.com/security/cve/CVE-2024-26804
- Patch: rhel9/5.14.0-427.18.1.el9_4/CVE-2024-26804-net-ip_tunnel-prevent-perpetual-headroom-growth-284.patch
- From: 5.14.0-427.18.1.el9_4
- CVE-2024-26735
- Description:
ipv6: sr: fix possible use-after-free and null-ptr-deref
- CVE: https://access.redhat.com/security/cve/CVE-2024-26735
- Patch: rhel9/5.14.0-427.20.1.el9_4/CVE-2024-26735-ipv6-sr-fix-possible-use-after-free-and.patch
- From: 5.14.0-427.20.1.el9_4
- CVE-2024-26993
- Description:
fs: sysfs: Fix reference leak in sysfs_break_active_protection()
- CVE: https://access.redhat.com/security/cve/CVE-2024-26993
- Patch: rhel9/5.14.0-427.20.1.el9_4/CVE-2024-26993-fs-sysfs-fix-reference-leak-in.patch
- From: 5.14.0-427.20.1.el9_4
- CVE-2023-52667
- Description:
net/mlx5e: fix a potential double-free in fs_any_create_groups
- CVE: https://access.redhat.com/security/cve/CVE-2023-52667
- Patch: rhel9/5.14.0-427.24.1.el9_4/CVE-2023-52667-net-mlx5e-fix-a-potential-double-free-in.patch
- From: 5.14.0-427.24.1.el9_4
- CVE-2024-26801
- Description:
Bluetooth: Avoid potential use-after-free in hci_error_reset
- CVE: https://access.redhat.com/security/cve/CVE-2024-26801
- Patch: rhel9/5.14.0-427.24.1.el9_4/CVE-2024-26801-bluetooth-avoid-potential-use-after-free-in.patch
- From: 5.14.0-427.24.1.el9_4
- CVE-2024-35960
- Description:
net/mlx5: Properly link new fs rules into the tree
- CVE: https://access.redhat.com/security/cve/CVE-2024-35960
- Patch: rhel9/5.14.0-427.24.1.el9_4/CVE-2024-35960-net-mlx5-properly-link-new-fs-rules-into-the.patch
- From: 5.14.0-427.24.1.el9_4
- CVE-2021-47400
- Description:
net: hns3: do not allow call hns3_nic_net_open repeatedly
- CVE: https://access.redhat.com/security/cve/CVE-2021-47400
- Patch: rhel9/5.14.0-427.24.1.el9_4/CVE-2021-47400-net-hns3-do-not-allow-call-hns3-nic-net-open.patch
- From: 5.14.0-427.24.1.el9_4
- CVE-2024-27393
- Description:
xen-netfront: Add missing skb_mark_for_recycle
- CVE: https://access.redhat.com/security/cve/CVE-2024-27393
- Patch: rhel9/5.14.0-427.24.1.el9_4/CVE-2024-27393-xen-netfront-add-missing-skb-mark-for-recycle-70.patch
- From: 5.14.0-427.24.1.el9_4
- CVE-2024-35870
- Description:
smb: client: fix UAF in smb2_reconnect_server()
- CVE: https://access.redhat.com/security/cve/CVE-2024-35870
- Patch: rhel9/5.14.0-427.24.1.el9_4/CVE-2024-35870-smb-client-fix-uaf-in-smb2-reconnect-server-70.26.patch
- From: 5.14.0-427.24.1.el9_4
- CVE-2024-26974
- Description:
crypto: qat - resolve race condition during AER recovery
- CVE: https://access.redhat.com/security/cve/CVE-2024-26974
- Patch: rhel9/5.14.0-427.24.1.el9_4/CVE-2024-26974-crypto-qat-resolve-race-condition-during-aer-recovery-362.patch
- From: 5.14.0-427.24.1.el9_4
- CVE-2024-26974
- Description:
crypto: qat - Fix ADF_DEV_RESET_SYNC memory leak
- CVE: https://access.redhat.com/security/cve/CVE-2024-26974
- Patch: rhel9/5.14.0-427.24.1.el9_4/CVE-2024-26974-crypto-qat-fix-adf-dev-reset-sync-memory-leak-362.patch
- From: 5.14.0-427.24.1.el9_4
- CVE-2024-38580
- Description:
epoll: be better about file lifetimes
- CVE: https://access.redhat.com/security/cve/CVE-2024-38580
- Patch: rhel9/5.14.0-427.28.1.el9_4/CVE-2024-38580-epoll-be-better-about-file-lifetimes.patch
- From: 5.14.0-427.28.1.el9_4
- CVE-2024-35885
- Description:
mlxbf_gige: stop interface during shutdown
- CVE: https://access.redhat.com/security/cve/CVE-2024-35885
- Patch: rhel9/5.14.0-427.28.1.el9_4/CVE-2024-35885-mlxbf-gige-stop-interface-during-shutdown.patch
- From: 5.14.0-427.28.1.el9_4
- CVE-2022-48743
- Description:
net: amd-xgbe: Fix skb data length underflow
- CVE: https://access.redhat.com/security/cve/CVE-2022-48743
- Patch: rhel9/5.14.0-427.28.1.el9_4/CVE-2022-48743-net-amd-xgbe-fix-skb-data-length-underflow.patch
- From: 5.14.0-427.28.1.el9_4
- CVE-2024-26880
- Description:
dm: call the resume method on internal suspend
- CVE: https://access.redhat.com/security/cve/CVE-2024-26880
- Patch: rhel9/5.14.0-427.28.1.el9_4/CVE-2024-26880-dm-call-the-resume-method-on-internal-suspend.patch
- From: 5.14.0-427.28.1.el9_4
- CVE-2024-27046
- Description:
nfp: flower: handle acti_netdevs allocation failure
- CVE: https://access.redhat.com/security/cve/CVE-2024-27046
- Patch: rhel9/5.14.0-427.28.1.el9_4/CVE-2024-27046-nfp-flower-handle-acti-netdevs-allocation-failure.patch
- From: 5.14.0-427.28.1.el9_4
- CVE-2024-26852
- Description:
net/ipv6: avoid possible UAF in ip6_route_mpath_notify()
- CVE: https://access.redhat.com/security/cve/CVE-2024-26852
- Patch: rhel9/5.14.0-427.28.1.el9_4/CVE-2024-26852-net-ipv6-avoid-possible-uaf-in-ip6_route_mpath_notify.patch
- From: 5.14.0-427.28.1.el9_4
- CVE-2024-35857
- Description:
icmp: prevent possible NULL dereferences from icmp_build_probe()
- CVE: https://access.redhat.com/security/cve/CVE-2024-35857
- Patch: rhel9/5.14.0-427.28.1.el9_4/CVE-2024-35857-icmp-prevent-possible-null-dereferences-from-icmp_build_probe.patch
- From: 5.14.0-427.28.1.el9_4
- CVE-2021-47459
- Description:
can: j1939: j1939_netdev_start(): fix UAF for
- CVE: https://access.redhat.com/security/cve/CVE-2021-47459
- Patch: rhel9/5.14.0-427.28.1.el9_4/CVE-2021-47459-can-j1939-j1939-netdev-start-fix-uaf-for-rx_kref-of-j1939_priv.patch
- From: 5.14.0-427.28.1.el9_4
- CVE-2024-26982
- Description:
Squashfs: check the inode number is not the invalid value of zero
- CVE: https://access.redhat.com/security/cve/CVE-2024-26982
- Patch: rhel9/5.14.0-427.28.1.el9_4/CVE-2024-26982-squashfs-check-the-inode-number-is-not-the-invalid-value-of-zero.patch
- From: 5.14.0-427.28.1.el9_4
- CVE-2023-52809
- Description:
scsi: libfc: Fix potential NULL pointer
- CVE: https://access.redhat.com/security/cve/CVE-2023-52809
- Patch: rhel9/5.14.0-427.28.1.el9_4/CVE-2023-52809-scsi-libfc-fix-potential-null-pointer-dereference-in-fc_lport_ptp_setup.patch
- From: 5.14.0-427.28.1.el9_4
- CVE-2024-36952
- Description:
scsi: lpfc: Move NPIV's transport unregistration to after resource clean up
- CVE: https://access.redhat.com/security/cve/CVE-2024-36952
- Patch: rhel9/5.14.0-427.28.1.el9_4/CVE-2024-36952-scsi-lpfc-move-npivs-transport-unregistration-to-after-resource-clean-up.patch
- From: 5.14.0-427.28.1.el9_4
- CVE-2023-52458
- Description:
block: add check that partition length needs to be aligned with block size
- CVE: https://access.redhat.com/security/cve/CVE-2023-52458
- Patch: rhel9/5.14.0-427.28.1.el9_4/CVE-2023-52458-block-add-check-that-partition-length-needs-to-be-aligned-with-block-size.patch
- From: 5.14.0-427.28.1.el9_4
- CVE-2024-35907
- Description:
mlxbf_gige: call request_irq() after NAPI initialized
- CVE: https://access.redhat.com/security/cve/CVE-2024-35907
- Patch: rhel9/5.14.0-427.28.1.el9_4/CVE-2024-35907-mlxbf-gige-call-request-irq-after-napi-initialized-362.patch
- From: 5.14.0-427.28.1.el9_4
- CVE-2024-36924
- Description:
scsi: lpfc: Release hbalock before calling
- CVE: https://access.redhat.com/security/cve/CVE-2024-36924
- Patch: rhel9/5.14.0-427.28.1.el9_4/CVE-2024-36924-scsi-lpfc-release-hbalock-before-calling-lpfc_worker_wake_up-70.patch
- From: 5.14.0-427.28.1.el9_4
- CVE-2024-26773
- Description:
ext4: avoid allocating blocks from corrupted group in ext4_mb_try_best_found()
- CVE: https://access.redhat.com/security/cve/CVE-2024-26773
- Patch: rhel9/5.14.0-427.28.1.el9_4/CVE-2024-26773-ext4-avoid-allocating-blocks-from-corrupted-group-in-ext4_mb_try_best_found-362.patch
- From: 5.14.0-427.28.1.el9_4
- CVE-2024-27030
- Description:
octeontx2: CVE patch is outside the scope.
- CVE:
- Patch: skipped/CVE-2024-27030.patch
- From:
- CVE-2024-26737
- Description:
eBPF: low score UAF with CONFIG_BPF_UNPRIV_DEFAULT_OFF=y by default but needs complex adaptation.
- CVE:
- Patch: skipped/CVE-2024-26737.patch
- From:
- CVE-2024-21823
- Description:
VFIO: Add the SPR_DSA and SPR_IAX devices to the
- CVE: https://access.redhat.com/security/cve/CVE-2024-21823
- Patch: rhel9/5.14.0-427.31.1.el9_4/CVE-2024-21823-vfio-add-the-spr-dsa-and-spr-iax-devices-to-the-70.patch
- From: 5.14.0-427.31.1.el9_4
- CVE-2024-27052
- Description:
wifi: rtl8xxxu: add cancel_work_sync() for
- CVE: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2024-27052
- Patch: rhel9/5.14.0-427.31.1.el9_4/CVE-2024-27052-wifi-rtl8xxxu-add-cancel-work-sync-for.patch
- From: 5.14.0-427.31.1.el9_4
- CVE-2024-35845
- Description:
wifi: iwlwifi: dbg-tlv: ensure NUL termination
- CVE: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2024-35845
- Patch: rhel9/5.14.0-427.31.1.el9_4/CVE-2024-35845-wifi-iwlwifi-dbg-tlv-ensure-nul-termination.patch
- From: 5.14.0-427.31.1.el9_4
- CVE-2024-36971
- Description:
net: annotate data-races around
- CVE: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2024-36971
- Patch: rhel9/5.14.0-427.31.1.el9_4/CVE-2024-36971-net-annotate-data-races-around.patch
- From: 5.14.0-427.31.1.el9_4
- CVE-2024-36971
- Description:
net: fix __dst_negative_advice() race
- CVE: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2024-36971
- Patch: rhel9/5.14.0-427.31.1.el9_4/CVE-2024-36971-net-fix-dst-negative-advice-race.patch
- From: 5.14.0-427.31.1.el9_4
- CVE-2024-39487
- Description:
bonding: Fix out-of-bounds read in
- CVE: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2024-39487
- Patch: rhel9/5.14.0-427.31.1.el9_4/CVE-2024-39487-bonding-fix-out-of-bounds-read-in.patch
- From: 5.14.0-427.31.1.el9_4
- CVE-2024-35937
- Description:
wifi: cfg80211: check A-MSDU format more
- CVE: https://access.redhat.com/security/cve/CVE-2024-35937
- Patch: rhel9/5.14.0-427.31.1.el9_4/CVE-2024-35937-wifi-cfg80211-check-a-msdu-format-more-5.14.0-284.30.1.el9_2.patch
- From: 5.14.0-427.31.1.el9_4
- CVE-2021-47606
- Description:
net: netlink: af_netlink: Prevent empty skb by
- CVE: https://access.redhat.com/security/cve/CVE-2021-47606
- Patch: rhel9/5.14.0-427.31.1.el9_4/CVE-2021-47606-net-netlink-af-netlink-prevent-empty-skb-by.patch
- From: 5.14.0-427.31.1.el9_4
- CVE-2023-52651
- Description:
wifi: ath10k: fix NULL pointer dereference in
- CVE: https://access.redhat.com/security/cve/CVE-2023-52651
- Patch: rhel9/5.14.0-427.31.1.el9_4/CVE-2023-52651-wifi-ath10k-fix-null-pointer-dereference-in.patch
- From: 5.14.0-427.31.1.el9_4
- CVE-2023-52864
- Description:
platform/x86: wmi: remove unnecessary initializations
- CVE: https://access.redhat.com/security/cve/CVE-2023-52864
- Patch: rhel9/5.14.0-427.31.1.el9_4/CVE-2023-52864-platform-x86-wmi-remove-unnecessary.patch
- From: 5.14.0-427.31.1.el9_4
- CVE-2023-52864
- Description:
platform/x86: wmi: Fix opening of char device
- CVE: https://access.redhat.com/security/cve/CVE-2023-52864
- Patch: rhel9/5.14.0-427.31.1.el9_4/CVE-2023-52864-platform-x86-wmi-fix-opening-of-char-device.patch
- From: 5.14.0-427.31.1.el9_4
- CVE-2024-26600
- Description:
phy: ti: phy-omap-usb2: Fix NULL pointer
- CVE: https://access.redhat.com/security/cve/CVE-2024-26600
- Patch: rhel9/5.14.0-427.31.1.el9_4/CVE-2024-26600-phy-ti-phy-omap-usb2-fix-null-pointer.patch
- From: 5.14.0-427.31.1.el9_4
- CVE-2024-26808
- Description:
netfilter: nft_chain_filter: handle
- CVE: https://access.redhat.com/security/cve/CVE-2024-26808
- Patch: rhel9/5.14.0-427.31.1.el9_4/CVE-2024-26808-netfilter-nft-chain-filter-handle.patch
- From: 5.14.0-427.31.1.el9_4
- CVE-2024-27065
- Description:
netfilter: nf_tables: do not compare internal
- CVE: https://access.redhat.com/security/cve/CVE-2024-27065
- Patch: rhel9/5.14.0-427.31.1.el9_4/CVE-2024-27065-netfilter-nf-tables-do-not-compare-internal.patch
- From: 5.14.0-427.31.1.el9_4
- CVE-2024-27417
- Description:
ipv6: fix potential "struct net" leak in
- CVE: https://access.redhat.com/security/cve/CVE-2024-27417
- Patch: rhel9/5.14.0-427.31.1.el9_4/CVE-2024-27417-ipv6-fix-potential-struct-net-leak-in.patch
- From: 5.14.0-427.31.1.el9_4
- CVE-2024-36922
- Description:
wifi: iwlwifi: read txq->read_ptr under lock
- CVE: https://access.redhat.com/security/cve/CVE-2024-36922
- Patch: rhel9/5.14.0-427.31.1.el9_4/CVE-2024-36922-wifi-iwlwifi-read-txq-read-ptr-under-lock-284.patch
- From: 5.14.0-427.31.1.el9_4
- CVE-2024-36489
- Description:
tls: fix missing memory barrier in tls_init
- CVE: https://access.redhat.com/security/cve/CVE-2024-36489
- Patch: rhel9/5.14.0-427.31.1.el9_4/CVE-2024-36489-tls-fix-missing-memory-barrier-in-tls-init.patch
- From: 5.14.0-427.31.1.el9_4
- CVE-2024-37353
- Description:
virtio: delete vq in vp_find_vqs_msix() when request_irq() fails
- CVE: https://access.redhat.com/security/cve/CVE-2024-37353
- Patch: rhel9/5.14.0-427.31.1.el9_4/CVE-2024-37353-virtio-delete-vq-in-vp-find-vqs-msix-when.patch
- From: 5.14.0-427.31.1.el9_4
- CVE-2024-36941
- Description:
wifi: nl80211: don't free NULL coalescing rule
- CVE: https://access.redhat.com/security/cve/CVE-2024-36941
- Patch: rhel9/5.14.0-427.31.1.el9_4/CVE-2024-36941-wifi-nl80211-don-t-free-null-coalescing-rule.patch
- From: 5.14.0-427.31.1.el9_4
- CVE-2024-36929
- Description:
net: core: reject skb_copy(_expand) for fraglist GSO skbs
- CVE: https://access.redhat.com/security/cve/CVE-2024-36929
- Patch: rhel9/5.14.0-427.31.1.el9_4/CVE-2024-36929-net-core-reject-skb-copy-expand-for-fraglist.patch
- From: 5.14.0-427.31.1.el9_4
- CVE-2024-36017
- Description:
rtnetlink: Correct nested IFLA_VF_VLAN_LIST attribute validation
- CVE: https://access.redhat.com/security/cve/CVE-2024-36017
- Patch: rhel9/5.14.0-427.31.1.el9_4/CVE-2024-36017-rtnetlink-correct-nested-ifla-vf-vlan-list.patch
- From: 5.14.0-427.31.1.el9_4
- CVE-2024-36005
- Description:
netfilter: nf_tables: honor table dormant flag from netdev release event path
- CVE: https://access.redhat.com/security/cve/CVE-2024-36005
- Patch: rhel9/5.14.0-427.31.1.el9_4/CVE-2024-36005-netfilter-nf-tables-honor-table-dormant-flag.patch
- From: 5.14.0-427.31.1.el9_4
- CVE-2024-41090
- Description:
tap: add missing verification for short frame
- CVE: https://access.redhat.com/security/cve/CVE-2024-41090
- Patch: rhel9/5.14.0-427.33.1.el9_4/CVE-2024-41090-tap-add-missing-verification-for-short-frame.patch
- From: 5.14.0-427.33.1.el9_4
- CVE-2024-41091
- Description:
tun: add missing verification for short frame
- CVE: https://access.redhat.com/security/cve/CVE-2024-41091
- Patch: rhel9/5.14.0-427.33.1.el9_4/CVE-2024-41091-tun-add-missing-verification-for-short-frame.patch
- From: 5.14.0-427.33.1.el9_4
- CVE-2024-26668
- Description:
netfilter: nft_limit: reject configurations that cause integer overflow
- CVE: https://access.redhat.com/security/cve/CVE-2024-26668
- Patch: rhel9/5.14.0-427.33.1.el9_4/CVE-2024-26668-netfilter-nft-limit-reject-configurations-that.patch
- From: 5.14.0-427.33.1.el9_4
- CVE-2024-38538
- Description:
net: bridge: xmit: make sure we have at least eth
- CVE: https://access.redhat.com/security/cve/CVE-2024-38538
- Patch: rhel9/5.14.0-427.33.1.el9_4/CVE-2024-38538-net-bridge-xmit-make-sure-we-have-at-least-eth-362.patch
- From: 5.14.0-427.33.1.el9_4
- CVE-2023-52880
- Description:
tty: n_gsm: require CAP_NET_ADMIN to attach
- CVE: https://access.redhat.com/security/cve/CVE-2023-52880
- Patch: rhel9/5.14.0-427.33.1.el9_4/CVE-2023-52880-tty-n-gsm-require-cap-net-admin-to-attach-427.patch
- From: 5.14.0-427.33.1.el9_4
- CVE-2024-26908
- Description:
CVE marked as rejected by vendor
- CVE:
- Patch: skipped/CVE-2024-26908.patch
- From:
- CVE-2024-27016
- Description:
netfilter: flowtable: Fix QinQ and pppoe support for inet table
- CVE: https://access.redhat.com/security/cve/CVE-2024-27016
- Patch: rhel9/5.14.0-427.33.1.el9_4/CVE-2024-27016-netfilter-flowtable-Fix-QinQ-and-pppoe-support-for-inet-table.patch
- From: 5.14.0-427.33.1.el9_4
- CVE-2024-27016
- Description:
netfilter: flowtable: validate pppoe header
- CVE: https://access.redhat.com/security/cve/CVE-2024-27016
- Patch: rhel9/5.14.0-427.33.1.el9_4/CVE-2024-27016-netfilter-flowtable-validate-pppoe-header-284.patch
- From: 5.14.0-427.33.1.el9_4
- CVE-2024-27019
- Description:
netfilter: nf_tables: Fix potential data-race in
- CVE: https://access.redhat.com/security/cve/CVE-2024-27019
- Patch: rhel9/5.14.0-427.33.1.el9_4/CVE-2024-27019-netfilter-nf-tables-fix-potential-data-race-in.patch
- From: 5.14.0-427.33.1.el9_4
- CVE-2024-35896
- Description:
netfilter: validate user input for expected length
- CVE: https://access.redhat.com/security/cve/CVE-2024-35896
- Patch: rhel9/5.14.0-427.33.1.el9_4/CVE-2024-35896-netfilter-validate-user-input-for-expected.patch
- From: 5.14.0-427.33.1.el9_4
- CVE-2024-35896
- Description:
netfilter: complete validation of user input
- CVE: https://access.redhat.com/security/cve/CVE-2024-35896
- Patch: rhel9/5.14.0-427.33.1.el9_4/CVE-2024-35896-netfilter-complete-validation-of-user-input.patch
- From: 5.14.0-427.33.1.el9_4
- CVE-2024-35897
- Description:
nf_tables: disable toggling dormant table state more than once
- CVE: https://access.redhat.com/security/cve/CVE-2024-35897
- Patch: rhel9/5.14.0-427.33.1.el9_4/CVE-2024-35897-netfilter-nf_tables-disable-toggling-dormant-table-state-more-than-once.patch
- From: 5.14.0-427.33.1.el9_4
- CVE-2024-35897
- Description:
netfilter: nf_tables: discard table flag update
- CVE: https://access.redhat.com/security/cve/CVE-2024-35897
- Patch: rhel9/5.14.0-427.33.1.el9_4/CVE-2024-35897-netfilter-nf_tables-reject-table-flag-and-netdev-basechain-updates.patch
- From: 5.14.0-427.33.1.el9_4
- CVE-2024-35897
- Description:
netfilter: nf_tables: discard table flag update
- CVE: https://access.redhat.com/security/cve/CVE-2024-35897
- Patch: rhel9/5.14.0-427.33.1.el9_4/CVE-2024-35897-netfilter-nf-tables-discard-table-flag-update.patch
- From: 5.14.0-427.33.1.el9_4
- CVE-2024-1086
- Description:
netfilter: nf_tables: reject QUEUE/DROP verdict parameters
- CVE: https://access.redhat.com/security/cve/CVE-2024-1086
- Patch: rhel9/CVE-2024-1086-netfilter-nf_tables-reject-QUEUE-DROP-verdict-parameters-362.18.patch
- From: v6.7
- CVE-2024-38663
- Description:
Not vulnerable: buggy commit 3b8cc6298 (blk-cgroup: Optimize blkcg_rstat_flush) was introduced in v6.2 upstream and appeared in RHEL9's 284.11.1
- CVE:
- Patch: skipped/CVE-2024-38663.patch
- From:
- CVE-2024-26858
- Description:
Not vulnerable: mapping mechanism that the bug applies to was introduced in v6.6 upstream (3178308ad4c) and appeared in RHEL9's since -427
- CVE:
- Patch: skipped/CVE-2024-26858.patch
- From:
- CVE-2024-27397
- Description:
netfilter: nf_tables: use timestamp to check for
- CVE: https://access.redhat.com/security/cve/CVE-2024-27397
- Patch: rhel9/5.14.0-427.26.1.el9_4/CVE-2024-27397-netfilter-nf-tables-use-timestamp-to-check-for-upto-162.23.1.patch
- From: 5.14.0-427.26.1.el9_4
- CVE-2024-27397
- Description:
netfilter: nf_tables: use timestamp to check for
- CVE: https://access.redhat.com/security/cve/CVE-2024-27397
- Patch: rhel9/5.14.0-427.26.1.el9_4/CVE-2024-27397-netfilter-nf-tables-use-timestamp-to-check-for-kpatch-upto-162.23.1.patch
- From: 5.14.0-427.26.1.el9_4
- CVE-2024-27435
- Description:
nvme: fix reconnection fail due to reserved tag
- CVE: https://access.redhat.com/security/cve/CVE-2024-27435
- Patch: rhel9/5.14.0-427.26.1.el9_4/CVE-2024-27435-nvme-fix-reconnection-fail-due-to-reserved-tag-upto-162.23.1.patch
- From: 5.14.0-427.26.1.el9_4
- CVE-2024-38543
- Description:
Not vulnerable: function with the buggy code `dmirror_device_evict_chunk()` exists since 362.8.1
- CVE:
- Patch: skipped/CVE-2024-38543.patch
- From:
- CVE-2024-38593
- Description:
Not vulnerable: buggy function was introduced in v6.5 upsteam (or RHEL9's 427.13.1), and no similar code patterns existed before for this module
- CVE:
- Patch: skipped/CVE-2024-38593.patch
- From:
- CVE-2024-26783
- Description:
Not vulnerable: vulnerable calls to `wakeup_kswapd()` did not exist prior to 284.11.1
- CVE:
- Patch: skipped/CVE-2024-26783.patch
- From:
- CVE-2024-36886
- Description:
tipc: fix UAF in error path
- CVE: https://access.redhat.com/security/cve/CVE-2024-36886
- Patch: rhel9/5.14.0-427.26.1.el9_4/CVE-2024-36886-tipc-fix-uaf-in-error-path.patch
- From: 5.14.0-427.26.1.el9_4
- CVE-2021-47548
- Description:
ethernet: hisilicon: hns: hns_dsaf_misc: fix a
- CVE: https://access.redhat.com/security/cve/CVE-2021-47548
- Patch: rhel9/5.14.0-427.26.1.el9_4/CVE-2021-47548-ethernet-hisilicon-hns-hns-dsaf-misc-fix-a.patch
- From: 5.14.0-427.26.1.el9_4
- CVE-2024-36957
- Description:
octeontx2-af: avoid off-by-one read from
- CVE: https://access.redhat.com/security/cve/CVE-2024-36957
- Patch: rhel9/5.14.0-427.26.1.el9_4/CVE-2024-36957-octeontx2-af-avoid-off-by-one-read-from.patch
- From: 5.14.0-427.26.1.el9_4
- CVE-2024-35958
- Description:
net: ena: Fix incorrect descriptor free behavior
- CVE: https://access.redhat.com/security/cve/CVE-2024-35958
- Patch: rhel9/5.14.0-427.26.1.el9_4/CVE-2024-35958-net-ena-fix-incorrect-descriptor-free-behavior.patch
- From: 5.14.0-427.26.1.el9_4
- CVE-2022-48627
- Description:
vt: fix memory overlapping when deleting chars in
- CVE: https://access.redhat.com/security/cve/CVE-2022-48627
- Patch: rhel9/5.14.0-427.26.1.el9_4/CVE-2022-48627-vt-fix-memory-overlapping-when-deleting-chars-in.patch
- From: 5.14.0-427.26.1.el9_4
- CVE-2024-36904
- Description:
tcp: Use refcount_inc_not_zero() in
- CVE: https://access.redhat.com/security/cve/CVE-2024-36904
- Patch: rhel9/5.14.0-427.26.1.el9_4/CVE-2024-36904-tcp-use-refcount-inc-not-zero-in.patch
- From: 5.14.0-427.26.1.el9_4
- CVE-2023-52638
- Description:
can: j1939: prevent deadlock by changing
- CVE: https://access.redhat.com/security/cve/CVE-2023-52638
- Patch: rhel9/5.14.0-427.26.1.el9_4/CVE-2023-52638-can-j1939-prevent-deadlock-by-changing.patch
- From: 5.14.0-427.26.1.el9_4
- CVE-2023-52638
- Description:
can: j1939: prevent deadlock by changing
- CVE: https://access.redhat.com/security/cve/CVE-2023-52638
- Patch: rhel9/5.14.0-427.26.1.el9_4/CVE-2023-52638-can-j1939-prevent-deadlock-by-changing-kpatch.patch
- From: 5.14.0-427.26.1.el9_4
- CVE-2024-38586
- Description:
r8169: Fix possible ring buffer corruption on
- CVE: https://access.redhat.com/security/cve/CVE-2024-38586
- Patch: rhel9/5.14.0-427.26.1.el9_4/CVE-2024-38586-r8169-fix-possible-ring-buffer-corruption-on.patch
- From: 5.14.0-427.26.1.el9_4
- CVE-2021-47596
- Description:
net: hns3: fix use-after-free bug in
- CVE: https://access.redhat.com/security/cve/CVE-2021-47596
- Patch: rhel9/5.14.0-427.26.1.el9_4/CVE-2021-47596-net-hns3-fix-use-after-free-bug-in.patch
- From: 5.14.0-427.26.1.el9_4
- CVE-2024-36270
- Description:
netfilter: tproxy: bail out if IP has been
- CVE: https://access.redhat.com/security/cve/CVE-2024-36270
- Patch: rhel9/5.14.0-427.26.1.el9_4/CVE-2024-36270-netfilter-tproxy-bail-out-if-ip-has-been.patch
- From: 5.14.0-427.26.1.el9_4