RHSA-2020:4182: Important: kernel security and bug fix update
The kernel packages contain the Linux kernel, the core of any Linux operating system.Security Fix(es): kernel: Count overflow in FUSE request leading to use-after-free issues. (CVE-2019-11487) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.Bug Fix(es): NULL sdev dereference race in atapiqccomplete() (BZ#1876296)
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2020:4182?
The severity of RHSA-2020:4182 is classified as critical due to the potential for use-after-free vulnerabilities in the Linux kernel.
How do I fix RHSA-2020:4182?
To fix RHSA-2020:4182, upgrade the kernel packages to version 2.6.32-754.35.1.el6 or later.
Which systems are affected by RHSA-2020:4182?
RHSA-2020:4182 affects systems running the Red Hat Enterprise Linux 6 kernel prior to version 2.6.32-754.35.1.el6.
What are the vulnerabilities addressed in RHSA-2020:4182?
RHSA-2020:4182 addresses a use-after-free vulnerability caused by a count overflow in FUSE requests, identified by CVE-2019-11487.
Is there a workaround for RHSA-2020:4182?
There are no known workarounds for RHSA-2020:4182, and users are advised to apply the security update as soon as possible.