RHSA-2021:2314: Important: kernel security and bug fix update
The kernel packages contain the Linux kernel, the core of any Linux operating system.Security Fix(es): kernel: Integer overflow in Intel(R) Graphics Drivers (CVE-2020-12362) kernel: Use after free via PI futex state (CVE-2021-3347) kernel: use-after-free in nttyreceivebufcommon function in drivers/tty/ntty.c (CVE-2020-8648) kernel: Improper input validation in some Intel(R) Graphics Drivers (CVE-2020-12363) kernel: Null pointer dereference in some Intel(R) Graphics Drivers (CVE-2020-12364) kernel: Speculation on pointer arithmetic against bpfcontext pointer (CVE-2020-27170) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.Bug Fix(es): kernel crash when call the timer function (sctpgenerateprotounreachevent) of sctp module (BZ#1707184) SCSI error handling process on HP P440ar controller gets stuck indefinitely in device reset operation (BZ#1830268) netfilter: reproducible deadlock on nftlog module autoload (BZ#1858329) netfilter: NULL pointer dereference in nftablessetlookup() (BZ#1873171) [DELL EMC 7.9 Bug]: No acpipad threads on top command for "power cap policy equal to 0 watts" (BZ#1883174) A race between i40endosetvfmac() and i40evsiclear() in the i40e driver causes a use after free condition of the kmalloc-4096 slab cache. (BZ#1886003) netxen driver performs poorly with RT kernel (BZ#1894274) gendisk->diskparttbl->lastlookup retains pointer after partition deletion (BZ#1898596) Kernel experiences panic in updategrouppower() due to division error even with Bug 1701115 fix (BZ#1910763) RHEL7.9 - zfcp: fix handling of FCPRESIDOVER bit in fcp ingress path (BZ#1917839) RHEL7.9 - mm/THP: do not access vma->vmmm after calling handleuserfault (BZ#1917840) raid: wrong raid io account (BZ#1927106) qla2x00statuscontentry() missing upstream patch that prevents unnecessary ABRT/warnings (BZ#1933784) RHEL 7.9.z - System hang caused by workqueue stall in qla2xxx driver (BZ#1937945) selinux: setsebool can trigger a deadlock (BZ#1939091) [Hyper-V][RHEL-7] Cannot boot kernel 3.10.0-1160.21.1.el7.x8664 on Hyper-V (BZ#1941841)
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2021:2314?
The severity of RHSA-2021:2314 is critical due to multiple vulnerabilities including integer overflow and use-after-free issues.
How do I fix RHSA-2021:2314?
To fix RHSA-2021:2314, ensure you update the kernel packages to version 3.10.0-1160.31.1.el7 or higher.
What vulnerabilities are addressed in RHSA-2021:2314?
RHSA-2021:2314 addresses vulnerabilities including CVE-2020-12362 and CVE-2021-3347.
Which Red Hat products are affected by RHSA-2021:2314?
Affected products include Red Hat Enterprise Linux kernel packages and associated tools.
Is a system reboot required after applying RHSA-2021:2314?
Yes, a system reboot is typically required to ensure that the updated kernel is loaded.