RHSA-2023:1466: Important: kpatch-patch security update
This is a kernel live patch module which is automatically loaded by the RPM post-install script to modify the code of a running kernel.Security Fix(es): kernel: tun: avoid double free in tunfreenetdev (CVE-2022-4744) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2023:1466?
The severity of RHSA-2023:1466 is classified as important.
How do I fix RHSA-2023:1466?
To fix RHSA-2023:1466, you need to update the kpatch-patch package to the specific remedied version provided by Red Hat.
What does CVE-2022-4744 in RHSA-2023:1466 refer to?
CVE-2022-4744 refers to a double free vulnerability in the tun_free_netdev function that can lead to potential security issues.
Which systems are affected by RHSA-2023:1466?
RHSA-2023:1466 affects systems running specific versions of the kpatch-patch package on Red Hat's enterprise Linux.
Is RHSA-2023:1466 a critical vulnerability?
While RHSA-2023:1466 is important, it is not classified as critical but still requires prompt attention.