Sunday, February 27, 2022

Red Hat: CVE-2021-4028: Important: kpatch-patch security update (Multiple Advisories)

Description
A flaw in the Linux kernel's implementation of RDMA communications manager listener code allowed an attacker with local access to setup a socket to listen on a high port allowing for a list element to be used after free. Given the ability to execute code, a local attacker could leverage this use-after-free to crash the system or possibly escalate privileges on the system.
Solution(s)
  • redhat-upgrade-kernel
  • redhat-upgrade-kpatch-patch-4_18_0-193_46_1
  • redhat-upgrade-kpatch-patch-4_18_0-193_46_1-debuginfo
  • redhat-upgrade-kpatch-patch-4_18_0-193_46_1-debugsource
  • redhat-upgrade-kpatch-patch-4_18_0-193_47_1
  • redhat-upgrade-kpatch-patch-4_18_0-193_47_1-debuginfo
  • redhat-upgrade-kpatch-patch-4_18_0-193_47_1-debugsource
  • redhat-upgrade-kpatch-patch-4_18_0-193_51_1
  • redhat-upgrade-kpatch-patch-4_18_0-193_51_1-debuginfo
  • redhat-upgrade-kpatch-patch-4_18_0-193_51_1-debugsource
  • redhat-upgrade-kpatch-patch-4_18_0-193_56_1
  • redhat-upgrade-kpatch-patch-4_18_0-193_56_1-debuginfo
  • redhat-upgrade-kpatch-patch-4_18_0-193_56_1-debugsource
  • redhat-upgrade-kpatch-patch-4_18_0-193_60_2
  • redhat-upgrade-kpatch-patch-4_18_0-193_60_2-debuginfo
  • redhat-upgrade-kpatch-patch-4_18_0-193_60_2-debugsource
  • redhat-upgrade-kpatch-patch-4_18_0-193_64_1
  • redhat-upgrade-kpatch-patch-4_18_0-193_64_1-debuginfo
  • redhat-upgrade-kpatch-patch-4_18_0-193_64_1-debugsource
  • redhat-upgrade-kpatch-patch-4_18_0-193_65_2
  • redhat-upgrade-kpatch-patch-4_18_0-193_65_2-debuginfo
  • redhat-upgrade-kpatch-patch-4_18_0-193_65_2-debugsource
  • redhat-upgrade-kpatch-patch-4_18_0-193_68_1
  • redhat-upgrade-kpatch-patch-4_18_0-193_68_1-debuginfo
  • redhat-upgrade-kpatch-patch-4_18_0-193_68_1-debugsource
  • redhat-upgrade-kpatch-patch-4_18_0-193_70_1
  • redhat-upgrade-kpatch-patch-4_18_0-193_70_1-debuginfo
  • redhat-upgrade-kpatch-patch-4_18_0-193_70_1-debugsource
  • redhat-upgrade-kpatch-patch-4_18_0-193_71_1
  • redhat-upgrade-kpatch-patch-4_18_0-193_71_1-debuginfo
  • redhat-upgrade-kpatch-patch-4_18_0-193_71_1-debugsource


  • References
  • CVE-2021-4028
  • RHSA-2022:0590
  • RHSA-2022:0636




  •  

    Copyright © 2021 Vulnerability Database | Cyber Details™

    thank you Templateism for the design - You should have written the code a little more complicated - Nothing Encrypted anymore