Описание
Product: AndroidVersions: Android kernelAndroid ID: A-173788806References: Upstream kernel
A use-after-free flaw was found in the Linux kernel’s network scheduling subsystem due to a race condition. This flaw allows a local user to cause a denial of service (memory corruption or crash) or privilege escalation.
Отчет
This issue affected Linux kernel versions as shipped with Red Hat Enterprise Linux 7 and earlier.
Меры по смягчению последствий
Mitigation for this issue is either not available or the currently available options don't meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 6 | kernel | Out of support scope | ||
| Red Hat Enterprise Linux 7 | kernel | Out of support scope | ||
| Red Hat Enterprise Linux 7 | kernel-rt | Out of support scope | ||
| Red Hat Enterprise Linux 8 | kernel | Not affected | ||
| Red Hat Enterprise Linux 8 | kernel-rt | Not affected | ||
| Red Hat Enterprise Linux 9 | kernel | Not affected | ||
| Red Hat Enterprise Linux 9 | kernel-rt | Not affected | ||
| Red Hat Virtualization 4 | redhat-virtualization-host | Affected |
Показывать по
Ссылки на источники
Дополнительная информация
Статус:
EPSS
7 High
CVSS3
Связанные уязвимости
Product: AndroidVersions: Android kernelAndroid ID: A-173788806References: Upstream kernel
Product: AndroidVersions: Android kernelAndroid ID: A-173788806References: Upstream kernel
Product: AndroidVersions: Android kernelAndroid ID: A-173788806Referen ...
Security update for the Linux Kernel (Live Patch 45 for SLE 12 SP3)
Product: AndroidVersions: Android kernelAndroid ID: A-173788806References: Upstream kernel
EPSS
7 High
CVSS3