AlmaLinux 2325 Published by

A kernel security and bug fix update has been released for AlmaLinux.



ALSA-2021:2570 Important: kernel security and bug fix update


Type:
security

Severity:
important

Release date:
2021-06-29

Description
Security Fix(es):
* kernel: use-after-free in net/bluetooth/hci_event.c when destroying an hci_chan (CVE-2021-33034)
* kernel: security bypass in certs/blacklist.c and certs/system_keyring.c (CVE-2020-26541)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Bug Fix(es):
* ESXiRHEL-8 VMXNET3 v4 causes invalid checksums of inner packets of VXLAN tunnel (BZ#1960702)
* fnic crash from invalid request pointer (BZ#1961705)
* GFS2: Failed FS thaw call makes the entire snapshot failed. (BZ#1961849)
* dm writecache: fix performance degradation in ssd mode (BZ#1962241)
* Kernel BUG with act_ct and IP fragments (BZ#1963940)
* core: backports from upstream (BZ#1963952)
* Hibernate resume on RHEL fails in Amazon EC2 C5.18xlarge instance (BZ#1964930)
* SanityOnly panic caused by i40e_msix_clean_rings (BZ#1964962)
* tc reclassification limit is too low for OVN (BZ#1965148)
* tc action ct nat src addr does not work while used with ct nat dst addr together (BZ#1965150)
* CNB: Rebase/update TC subsystem for RHEL 8.5 (BZ#1965457)
* sctp: crash due to use after free of sctp_transport structure (BZ#1965632)

References:
CVE-2020-26541
CVE-2021-33034

Updates packages:
bpftool-4.18.0-305.7.1.el8_4.x86_64.rpm
kernel-4.18.0-305.7.1.el8_4.x86_64.rpm
kernel-abi-stablelists-4.18.0-305.7.1.el8_4.noarch.rpm
kernel-core-4.18.0-305.7.1.el8_4.x86_64.rpm
kernel-cross-headers-4.18.0-305.7.1.el8_4.x86_64.rpm
kernel-debug-4.18.0-305.7.1.el8_4.x86_64.rpm
kernel-debug-core-4.18.0-305.7.1.el8_4.x86_64.rpm
kernel-debug-devel-4.18.0-305.7.1.el8_4.x86_64.rpm
kernel-debug-modules-4.18.0-305.7.1.el8_4.x86_64.rpm
kernel-debug-modules-extra-4.18.0-305.7.1.el8_4.x86_64.rpm
kernel-devel-4.18.0-305.7.1.el8_4.x86_64.rpm
kernel-doc-4.18.0-305.7.1.el8_4.noarch.rpm
kernel-headers-4.18.0-305.7.1.el8_4.x86_64.rpm
kernel-modules-4.18.0-305.7.1.el8_4.x86_64.rpm
kernel-modules-extra-4.18.0-305.7.1.el8_4.x86_64.rpm
kernel-tools-4.18.0-305.7.1.el8_4.x86_64.rpm
kernel-tools-libs-4.18.0-305.7.1.el8_4.x86_64.rpm
kernel-tools-libs-devel-4.18.0-305.7.1.el8_4.x86_64.rpm
perf-4.18.0-305.7.1.el8_4.x86_64.rpm
python3-perf-4.18.0-305.7.1.el8_4.x86_64.rpm

Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.

  ALSA-2021:2570 Important: kernel security and bug fix update