Lucene search

K
redhatRedHatRHSA-2016:0064
HistoryJan 25, 2016 - 6:47 p.m.

(RHSA-2016:0064) Important: kernel security update

2016-01-2518:47:36
access.redhat.com
29

0.0004 Low

EPSS

Percentile

0.4%

The kernel packages contain the Linux kernel, the core of any Linux
operating system.

  • A use-after-free flaw was found in the way the Linux kernel’s key
    management subsystem handled keyring object reference counting in certain
    error path of the join_session_keyring() function. A local, unprivileged
    user could use this flaw to escalate their privileges on the system.
    (CVE-2016-0728, Important)

Red Hat would like to thank the Perception Point research team for
reporting this issue.

All kernel users are advised to upgrade to these updated packages, which
contain a backported patch to correct this issue. The system must be
rebooted for this update to take effect.