RHSA-2018:1318: Important: kernel security, bug fix, and enhancement update
The kernel packages contain the Linux kernel, the core of any Linux operating system.<br>Security Fix(es):<br><li> Kernel: KVM: error in exception handling leads to wrong debug stack value (CVE-2018-1087)</li> <li> Kernel: error in exception handling leads to DoS (CVE-2018-8897)</li> <li> Kernel: ipsec: xfrm: use-after-free leading to potential privilege escalation (CVE-2017-16939)</li> <li> kernel: Out-of-bounds write via userland offsets in ebtentry struct in netfilter/ebtables.c (CVE-2018-1068)</li> <li> kernel: ptrace() incorrect error handling leads to corruption and DoS (CVE-2018-1000199)</li> <li> kernel: guest kernel crash during core dump on POWER9 host (CVE-2018-1091)</li> For more details about the security issue(s), including the impact, a CVSS score, and other related information, refer to the CVE page(s) listed in the References section.<br>Red Hat would like to thank Andy Lutomirski for reporting CVE-2018-1087 and CVE-2018-1000199 and Nick Peterson (Everdox Tech LLC) and Andy Lutomirski for reporting CVE-2018-8897.<br>Bug Fix(es):<br>These updated kernel packages include also numerous bug fixes. Space precludes documenting all of these bug fixes in this advisory. See the bug fix descriptions in the related Knowledge Article: <a href="https://access.redhat.com/articles/3431641" target="blank">https://access.redhat.com/articles/3431641</a>
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2018:1318?
The severity of RHSA-2018:1318 is considered moderate due to potential Denial of Service attacks.
How do I fix RHSA-2018:1318?
To fix RHSA-2018:1318, you should update the kernel packages to version 3.10.0-862.2.3.el7 or later.
What vulnerabilities are addressed in RHSA-2018:1318?
RHSA-2018:1318 addresses the vulnerabilities CVE-2018-1087 and CVE-2018-8897 in the Linux kernel.
Which packages are affected by RHSA-2018:1318?
Packages affected by RHSA-2018:1318 include kernel, kernel-debug, kernel-devel, and several others associated with the kernel.
Is there a workaround for RHSA-2018:1318?
There are no official workarounds for RHSA-2018:1318; applying the update is the recommended action.