Lucene search

K
osvGoogleOSV:RLSA-2022:1550
HistoryApr 26, 2022 - 1:49 p.m.

Important: kernel security and bug fix update

2022-04-2613:49:36
Google
osv.dev
11

7.7 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

12.9%

The kernel packages contain the Linux kernel, the core of any Linux operating system.

Security Fix(es):

  • kernel: use-after-free in RDMA listen() (CVE-2021-4028)

  • kernel: heap out of bounds write in nf_dup_netdev.c (CVE-2022-25636)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Bug Fix(es):

  • Backport DFS fixes from upstream (BZ#2056329)

  • [Rocky Linux8.5] lpfc driver often fails to detect storage directly connected to Broadcom FC HBA (BZ#2058193)

  • nf_reinject calls nf_queue_entry_free on an already freed entry->state (BZ#2061446)

  • gfs2 blocking in gdlm_lock (BZ#2069750)