RHSA-2018:1354: Important: kernel-rt security update
The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements.Security Fix(es): Kernel: error in exception handling leads to DoS (CVE-2018-8897) kernel: ptrace() incorrect error handling leads to corruption and DoS (CVE-2018-1000199) For more details about the security issue(s), including the impact, a CVSS score, and other related information, refer to the CVE page(s) listed in the References section.Red Hat would like to thank Nick Peterson (Everdox Tech LLC) and Andy Lutomirski for reporting CVE-2018-8897 and Andy Lutomirski for reporting CVE-2018-1000199.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2018:1354?
The severity of RHSA-2018:1354 is classified as important.
How do I fix RHSA-2018:1354?
To fix RHSA-2018:1354, update the kernel-rt package to version 3.10.0-693.25.4.rt56.613.el6.
What are the main vulnerabilities addressed in RHSA-2018:1354?
The main vulnerabilities addressed in RHSA-2018:1354 include a denial of service issue related to exception handling (CVE-2018-8897).
Which packages are affected by RHSA-2018:1354?
The affected packages include kernel-rt, kernel-rt-debug, and several other kernel-rt related packages.
When was RHSA-2018:1354 released?
RHSA-2018:1354 was released on April 18, 2018.