RHSA-2021:2714: Important: kernel security and bug fix update
The kernel packages contain the Linux kernel, the core of any Linux operating system.Security Fix(es): kernel: sizet-to-int conversion vulnerability in the filesystem layer (CVE-2021-33909) kernel: race condition for removal of the HCI controller (CVE-2021-32399) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.Bug Fix(es): pinctrlemmitsburg: improper configuration (BZ#1963984) [Ampere] locking/qrwlock: Fix ordering in queuedwritelockslowpath (BZ#1964419) RHEL8.4 - [P10] [NPIV Multi queue Test kernel- 4.18.0-283.el8.ibmvfc11022021.ppc64le] DLPAR operation fails for ibmvfc on Denali (ibmvfc/dlpar/RHEL8.4) (BZ#1964697) Every server is displaying the same power levels for all of our i40e 25G interfaces. 10G interfaces seem to be correct. Ethtool version is 5.0 (BZ#1967099) backport fixes for Connection Tracking offload (BZ#1968679) fm10k: removal of MODULEVERSION deemed improper for y-stream release (BZ#1969910) ixgbevf: removal of MODULEVERSION deemed improper for y-stream release (BZ#1969911) ena: removal of MODULEVERSION deemed improper for y-stream release (BZ#1969913) b44, bnx2, bnx2x, bnxt, tg3: removal of MODULEVERSION deemed improper for y-stream release (BZ#1969914) e1000, e1000e: removal of MODULEVERSION deemed improper for y-stream release (BZ#1969915) ice: removal of MODULEVERSION deemed improper for y-stream release (BZ#1969917) igb: removal of MODULEVERSION deemed improper for y-stream release (BZ#1969919) igbvf: removal of MODULEVERSION deemed improper for y-stream release (BZ#1969920) igc: removal of MODULEVERSION deemed improper for y-stream release (BZ#1969921) ixgbe: removal of MODULEVERSION deemed improper for y-stream release (BZ#1969922) i40e: removal of MODULEVERSION deemed improper for y-stream release (BZ#1969923) iavf: removal of MODULEVERSION deemed improper for y-stream release (BZ#1969925) Backport netlink extack tracepoint (BZ#1972938) [RHEL8.4] kernel panic when create NPIV port on qedf driver (BZ#1974968)
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2021:2714?
The severity of RHSA-2021:2714 is classified as important.
How do I fix RHSA-2021:2714?
To fix RHSA-2021:2714, update your system to kernel version 4.18.0-305.10.2.el8_4 or newer.
What vulnerabilities are addressed in RHSA-2021:2714?
RHSA-2021:2714 addresses a size_t-to-int conversion vulnerability (CVE-2021-33909) and a race condition vulnerability.
Which packages are affected by RHSA-2021:2714?
The affected packages include kernel, bpftool, kernel-debug, and several other kernel-related packages.
Is there a workaround for RHSA-2021:2714?
There is no specific workaround for RHSA-2021:2714; the recommended action is to apply the necessary updates.