RHSA-2021:3725: Important: kernel security and bug fix update
The kernel packages contain the Linux kernel, the core of any Linux operating system.Security Fix(es): kernel: Improper handling of VMIO|VMPFNMAP vmas in KVM can bypass RO checks (CVE-2021-22543) kernel: out-of-bounds write in xtcompattargetfromuser() in net/netfilter/xtables.c (CVE-2021-22555) kernel: race condition for removal of the HCI controller (CVE-2021-32399) kernel: powerpc: KVM guest OS users can cause host OS memory corruption (CVE-2021-37576) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.Bug Fix(es): [CKI kernel builds]: x86 binaries in non-x86 kernel rpms breaks systemtap [7.9.z] (BZ#1975161)
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2021:3725?
RHSA-2021:3725 is classified as a moderate severity vulnerability affecting the Linux kernel.
How do I fix RHSA-2021:3725?
To fix RHSA-2021:3725, you should update your kernel package to version 3.10.0-693.94.1.el7.
What vulnerabilities are addressed by RHSA-2021:3725?
RHSA-2021:3725 addresses an improper handling of VM_IO|VM_PFNMAP vmas in KVM (CVE-2021-22543) and an out-of-bounds write vulnerability.
What systems are affected by RHSA-2021:3725?
Affected systems include those running the kernel version up to 3.10.0-693.94.1.el7, particularly in Red Hat Enterprise Linux environments.
Is it necessary to reboot after applying the fix for RHSA-2021:3725?
Yes, a reboot is necessary to apply the updated kernel and ensure the protection against vulnerabilities in RHSA-2021:3725.