Risk | High |
Patch available | YES |
Number of vulnerabilities | 4 |
CVE-ID | CVE-2021-4037 CVE-2021-20322 CVE-2022-27666 CVE-2018-13405 |
CWE-ID | CWE-284 CWE-330 CWE-122 CWE-264 |
Exploitation vector | Network |
Public exploit | Public exploit code for vulnerability #3 is available. |
Vulnerable software Subscribe |
kernel-rt (Red Hat package) Operating systems & Components / Operating system package or component Red Hat Enterprise Linux for Real Time Operating systems & Components / Operating system Red Hat Enterprise Linux for Real Time for NFV Operating systems & Components / Operating system |
Vendor | Red Hat Inc. |
Security Bulletin
This security bulletin contains information about 4 vulnerabilities.
EUVDB-ID: #VU63923
Risk: Low
CVSSv3.1:
CVE-ID: CVE-2021-4037
CWE-ID:
Exploit availability:
DescriptionThe vulnerability allows a local user to gain unauthorized access to otherwise restricted functionality.
The vulnerability exists due to improper access restrictions in the fs/inode.c:inode_init_owner() function logic of the Linux kernel. A local user can create files for the XFS file-system with an unintended group ownership and with group execution and SGID permission bits set to bypass implemented security restrictions and gain unauthorized access to the application.
MitigationInstall updates from vendor's website.
kernel-rt (Red Hat package): 4.18.0-305.7.1.rt7.79.el8_4 - 4.18.0-305.45.1.rt7.117.el8_4
Red Hat Enterprise Linux for Real Time: 8.4
Red Hat Enterprise Linux for Real Time for NFV: 8.4
Fixed software versionsCPE2.3 External links
http://access.redhat.com/errata/RHSA-2022:4835
Q & A
Can this vulnerability be exploited remotely?
Is there known malware, which exploits this vulnerability?
EUVDB-ID: #VU63839
Risk: Medium
CVSSv3.1:
CVE-ID: CVE-2021-20322
CWE-ID:
Exploit availability:
DescriptionThe vulnerability allows a remote attacker to gain access to sensitive information.
The vulnerability exists due to an error when processing received ICMP errors. A remote attacker can effectively bypass the source port UDP randomization to gain access to sensitive information.
MitigationInstall updates from vendor's website.
kernel-rt (Red Hat package): 4.18.0-305.7.1.rt7.79.el8_4 - 4.18.0-305.45.1.rt7.117.el8_4
Red Hat Enterprise Linux for Real Time: 8.4
Red Hat Enterprise Linux for Real Time for NFV: 8.4
Fixed software versionsCPE2.3 External links
http://access.redhat.com/errata/RHSA-2022:4835
Q & A
Can this vulnerability be exploited remotely?
Is there known malware, which exploits this vulnerability?
EUVDB-ID: #VU61672
Risk: Low
CVSSv3.1:
CVE-ID: CVE-2022-27666
CWE-ID:
Exploit availability:
DescriptionThe vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to a boundary error within IPsec ESP transformation code in net/ipv4/esp4.c and net/ipv6/esp6.c in Linux kernel. A local unprivileged user can pass specially crafted data to the system, trigger a heap-based buffer overflow and execute arbitrary code with elevated privileges.
Install updates from vendor's website.
kernel-rt (Red Hat package): 4.18.0-305.7.1.rt7.79.el8_4 - 4.18.0-305.45.1.rt7.117.el8_4
Red Hat Enterprise Linux for Real Time: 8.4
Red Hat Enterprise Linux for Real Time for NFV: 8.4
Fixed software versionsCPE2.3 External links
http://access.redhat.com/errata/RHSA-2022:4835
Q & A
Can this vulnerability be exploited remotely?
Is there known malware, which exploits this vulnerability?
EUVDB-ID: #VU13631
Risk: Low
CVSSv3.1:
CVE-ID: CVE-2018-13405
CWE-ID:
Exploit availability:
DescriptionThe vulnerability allows a local attacker to create arbitrary files on the target system.
The vulnerability exists due to the inode_init_owner function, as defined in the fs/inode.c source code file, allows the creation of arbitrary files in set-group identification (SGID) directories. A local attacker can create arbitrary files with unintended group ownership.
MitigationInstall updates from vendor's website.
kernel-rt (Red Hat package): 4.18.0-305.7.1.rt7.79.el8_4 - 4.18.0-305.45.1.rt7.117.el8_4
Red Hat Enterprise Linux for Real Time: 8.4
Red Hat Enterprise Linux for Real Time for NFV: 8.4
Fixed software versionsCPE2.3 External links
http://access.redhat.com/errata/RHSA-2022:4835
Q & A
Can this vulnerability be exploited remotely?
Is there known malware, which exploits this vulnerability?