Out-of-bounds write in Linux kernel - CVE-2021-22555
Published: August 20, 2021 / Updated: February 8, 2024
Vulnerability details
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to a boundary error when processing untrusted input in net/netfilter/x_tables.c in Linux kernel. A local user can run a specially crafted program to trigger an out-of-bounds write and execute arbitrary code with elevated privileges.
Affected software
ClevOS
SUSE MicroOS
Anolis OS
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Power, big endian
Red Hat Enterprise Linux for Scientific Computing
Red Hat Enterprise Linux for Real Time
Red Hat Enterprise Linux for Real Time for NFV
CentOS
Red Hat Enterprise Linux Server - AUS
Red Hat Enterprise Linux Server - TUS
Red Hat Enterprise Linux for x86_64
Red Hat Enterprise Linux for ARM 64
Red Hat CodeReady Linux Builder for x86_64
Red Hat CodeReady Linux Builder for Power, little endian
Red Hat CodeReady Linux Builder for ARM 64
Red Hat Enterprise Linux for ARM 64 - Extended Update Support
Red Hat Enterprise Linux for Power, little endian - Extended Update Support
Red Hat Enterprise Linux for x86_64 - Extended Update Support
Red Hat CodeReady Linux Builder for ARM 64 - Extended Update Support
Red Hat CodeReady Linux Builder for Power, little endian - Extended Update Support
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support
Red Hat CodeReady Linux Builder for x86_64 - Extended Update Support
Red Hat Enterprise Linux for Real Time - Telecommunications Update Service
SUSE Linux Enterprise Server for SAP
SUSE Linux Enterprise Server
SUSE Linux Enterprise Live Patching
SUSE Linux Enterprise Workstation Extension
SUSE Linux Enterprise Real Time Extension
SUSE Linux Enterprise Software Development Kit
SUSE Linux Enterprise High Availability
Slackware Linux
Ubuntu
SUSE Linux Enterprise Module for Live Patching
SUSE Linux Enterprise Module for Basesystem
SUSE Linux Enterprise Module for Public Cloud
SUSE Linux Enterprise Module for Legacy Software
SUSE Linux Enterprise Module for Development Tools
SUSE Linux Enterprise Module for Realtime
openEuler
BIG-IP
kpatch-patch-3_10_0-957_65_1 (Red Hat package)
kpatch-patch-3_10_0-957_78_2 (Red Hat package)
kpatch-patch-3_10_0-957_66_1 (Red Hat package)
kpatch-patch-3_10_0-957_76_1 (Red Hat package)
kpatch-patch-3_10_0-957_61_1 (Red Hat package)
kpatch-patch-3_10_0-957_72_1 (Red Hat package)
kpatch-patch-3_10_0-957_61_2 (Red Hat package)
kpatch-patch-3_10_0-1160_24_1 (Red Hat package)
kpatch-patch-3_10_0-957_62_1 (Red Hat package)
kpatch-patch-3_10_0-1160_31_1 (Red Hat package)
kpatch-patch-3_10_0-1160_25_1 (Red Hat package)
kpatch-patch-4_18_0-193_56_1 (Red Hat package)
kpatch-patch-4_18_0-193_51_1 (Red Hat package)
kpatch-patch-3_10_0-1160_15_2 (Red Hat package)
kpatch-patch-3_10_0-1160_11_1 (Red Hat package)
kpatch-patch-3_10_0-1160_21_1 (Red Hat package)
kpatch-patch-3_10_0-957_70_1 (Red Hat package)
imgbased (Red Hat package)
kpatch-patch-3_10_0-1160_6_1 (Red Hat package)
kpatch-patch-3_10_0-1160_2_2 (Red Hat package)
kpatch-patch-3_10_0-1160 (Red Hat package)
kpatch-patch-3_10_0-1160_2_1 (Red Hat package)
kpatch-patch-4_18_0-193_29_1 (Red Hat package)
kpatch-patch-4_18_0-193_47_1 (Red Hat package)
kpatch-patch-4_18_0-193_46_1 (Red Hat package)
kpatch-patch-4_18_0-193_41_1 (Red Hat package)
kpatch-patch-4_18_0-193_40_1 (Red Hat package)
kpatch-patch-4_18_0-193_37_1 (Red Hat package)
kpatch-patch-4_18_0-193_28_1 (Red Hat package)
kpatch-patch-4_18_0-193_19_1 (Red Hat package)
kernel (Red Hat package)
kernel-rt (Red Hat package)
redhat-release-virtualization-host (Red Hat package)
redhat-virtualization-host (Red Hat package)
Red Hat Enterprise Linux Server for x86_64 - Update Services for SAP Solutions
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions
kpatch-patch-3_10_0-957_80_1 (Red Hat package)
kpatch-patch-3_10_0-1160_36_2 (Red Hat package)
kpatch-patch-4_18_0-147_51_2 (Red Hat package)
kpatch-patch-4_18_0-193_60_2 (Red Hat package)
kpatch-patch-4_18_0-305_10_2 (Red Hat package)
kpatch-patch-4_18_0-147_51_1 (Red Hat package)
kpatch-patch-4_18_0-305_7_1 (Red Hat package)
kpatch-patch-4_18_0-147_48_1 (Red Hat package)
kpatch-patch-4_18_0-305_3_1 (Red Hat package)
kpatch-patch-4_18_0-305 (Red Hat package)
kernel-livepatch-SLE15-SP2_Update_17-debugsource
kernel-livepatch-5_3_18-24_75-default
kernel-livepatch-5_3_18-24_75-default-debuginfo
kpatch-patch-4_18_0-147_44_1 (Red Hat package)
kpatch-patch-4_18_0-147_43_1 (Red Hat package)
kernel-livepatch-5_3_18-59_16-default
kgraft-patch-4_12_14-122_80-default
kpatch-patch-4_18_0-147_38_1 (Red Hat package)
kpatch-patch-4_18_0-147_32_1 (Red Hat package)
kpatch-patch-4_18_0-147_34_1 (Red Hat package)
kpatch-patch-4_18_0-147_27_1 (Red Hat package)
kernel-livepatch-SLE15-SP3_Update_2-debugsource
kernel-livepatch-SLE15-SP2_Update_14-debugsource
kernel-livepatch-5_3_18-59_10-default-debuginfo
kernel-livepatch-5_3_18-59_10-default
kernel-livepatch-5_3_18-24_70-default
kgraft-patch-4_12_14-122_77-default
kgraft-patch-4_12_14-122_74-default
kernel-livepatch-5_3_18-24_70-default-debuginfo
kernel-livepatch-SLE15-SP2_Update_16-debugsource
kernel-livepatch-5_3_18-24_67-default
kernel-livepatch-5_3_18-24_67-default-debuginfo
kernel-livepatch-SLE15-SP2_Update_15-debugsource
kernel-livepatch-5_3_18-24_53_4-default-debuginfo
kernel-livepatch-SLE15-SP3_Update_3-debugsource
kernel-livepatch-SLE15-SP3_Update_1-debugsource
kernel-livepatch-5_3_18-59_5-default-debuginfo
kernel-livepatch-5_3_18-24_53_4-default
kernel-livepatch-5_3_18-59_5-default
kernel-livepatch-5_3_18-59_13-default-debuginfo
kernel-livepatch-5_3_18-59_13-default
kgraft-patch-4_12_14-95_77-default
kernel-livepatch-4_12_14-197_92-default
kernel-livepatch-SLE15-SP2_Update_12-debugsource
kgraft-patch-4_12_14-95_74-default
kgraft-patch-4_12_14-122_71-default
kernel-livepatch-4_12_14-150_72-default-debuginfo
kgraft-patch-4_4_180-94_144-default
kgraft-patch-4_4_180-94_144-default-debuginfo
kernel-livepatch-5_3_18-24_61-default
kernel-livepatch-5_3_18-24_61-default-debuginfo
kernel-livepatch-5_3_18-24_64-default
kernel-livepatch-5_3_18-24_64-default-debuginfo
kernel-livepatch-4_12_14-150_72-default
kernel-livepatch-4_12_14-197_89-default
kernel-livepatch-SLE15-SP2_Update_13-debugsource
kernel-livepatch-SLE15-SP3_Update_0-debugsource
kernel-livepatch-5_3_18-57-default-debuginfo
kernel-livepatch-5_3_18-57-default
linux-4.4.276/kernel-modules
linux-4.4.276/kernel-huge
linux-4.4.276/kernel-generic
linux-4.4.276/kernel-headers
linux-image-4.4.0-1096-kvm (Ubuntu package)
linux-image-virtual-lts-xenial (Ubuntu package)
linux-image-4.4.0-1131-aws (Ubuntu package)
linux-image-4.4.0-213-generic (Ubuntu package)
linux-image-4.4.0-213-lowlatency (Ubuntu package)
linux-image-aws (Ubuntu package)
linux-image-generic (Ubuntu package)
linux-image-kvm (Ubuntu package)
linux-image-lowlatency (Ubuntu package)
linux-image-virtual (Ubuntu package)
linux-image-3.13.0-187-generic (Ubuntu package)
linux-image-3.13.0-187-generic-lpae (Ubuntu package)
linux-image-3.13.0-187-lowlatency (Ubuntu package)
linux-image-4.4.0-1095-aws (Ubuntu package)
linux-image-generic-lpae (Ubuntu package)
linux-image-generic-lts-xenial (Ubuntu package)
linux-image-lowlatency-lts-xenial (Ubuntu package)
linux-image-server (Ubuntu package)
kernel-rt-debuginfo
kernel-devel-rt
kernel-source-rt
cluster-md-kmp-rt
cluster-md-kmp-rt-debuginfo
dlm-kmp-rt
dlm-kmp-rt-debuginfo
gfs2-kmp-rt
gfs2-kmp-rt-debuginfo
kernel-rt
kernel-rt-base
kernel-rt-base-debuginfo
kernel-rt-debugsource
kernel-rt-devel
kernel-rt-devel-debuginfo
kernel-rt_debug
kernel-rt_debug-debuginfo
kernel-rt_debug-debugsource
kernel-rt_debug-devel
kernel-rt_debug-devel-debuginfo
kernel-syms-rt
ocfs2-kmp-rt
ocfs2-kmp-rt-debuginfo
kernel-azure-base
kernel-azure-base-debuginfo
kernel-syms-azure
kernel-azure-debuginfo
kernel-azure-debugsource
kernel-azure-devel
kernel-azure
kernel-source-azure
kernel-devel-azure
kernel-default-devel-debuginfo
kernel-default-devel
kernel-devel
kernel-syms
kernel-default-kgraft-devel
kernel-macros
kernel-source
kernel-default-man
kernel-default-kgraft
cluster-md-kmp-default
kernel-default-base-debuginfo
kernel-default-base
kernel-default
kernel-docs
kernel-obs-build-debugsource
kernel-obs-build
kernel-default-extra-debuginfo
kernel-default-extra
kernel-default-debugsource
kernel-default-debuginfo
cluster-md-kmp-default-debuginfo
dlm-kmp-default
ocfs2-kmp-default-debuginfo
ocfs2-kmp-default
gfs2-kmp-default-debuginfo
gfs2-kmp-default
dlm-kmp-default-debuginfo
kernel-tools-debuginfo
perf-debuginfo
python2-perf-debuginfo
kernel-tools
kernel-debuginfo
kernel-tools-devel
bpftool-debuginfo
python3-perf
bpftool
python3-perf-debuginfo
python2-perf
kernel-debugsource
perf
kernel
kernel-tools-libs-devel
kernel-tools-libs
kernel-modules-extra
kernel-modules
kernel-headers
kernel-debug-modules-extra
kernel-debug-modules
kernel-debug-devel
kernel-debug-core
kernel-debug
kernel-core
python-perf
kgraft-patch-4_12_14-122_66-default
kernel-azure-devel-debuginfo
kernel-preempt
kernel-preempt-extra
kernel-preempt-extra-debuginfo
kernel-default-livepatch
kernel-default-livepatch-devel
kernel-preempt-devel-debuginfo
kernel-preempt-devel
reiserfs-kmp-default
reiserfs-kmp-default-debuginfo
kernel-preempt-debugsource
kernel-preempt-debuginfo
kernel-zfcpdump-debugsource
kernel-zfcpdump-debuginfo
kernel-zfcpdump
kernel-64kb-devel-debuginfo
kernel-64kb-devel
kernel-64kb-debugsource
kernel-64kb-debuginfo
kernel-64kb
kgraft-patch-4_12_14-95_71-default
kernel-livepatch-4_12_14-150_69-default
kernel-livepatch-5_3_18-24_52-default-debuginfo
kernel-livepatch-5_3_18-24_52-default
kgraft-patch-4_12_14-122_63-default
kernel-livepatch-4_12_14-150_69-default-debuginfo
kernel-livepatch-4_12_14-197_86-default
kgraft-patch-4_4_180-94_141-default-debuginfo
kgraft-patch-4_4_180-94_141-default
kernel-livepatch-SLE15-SP2_Update_11-debugsource
kernel-livepatch-4_12_14-150_66-default
kernel-livepatch-5_3_18-24_49-default-debuginfo
kernel-livepatch-SLE15-SP2_Update_10-debugsource
kernel-livepatch-4_12_14-150_66-default-debuginfo
kernel-livepatch-5_3_18-24_49-default
kgraft-patch-4_12_14-122_60-default
kgraft-patch-4_12_14-95_68-default
kgraft-patch-4_4_180-94_138-default
kernel-livepatch-4_12_14-197_83-default
kgraft-patch-4_4_180-94_138-default-debuginfo
kernel-livepatch-5_3_18-24_43-default
kgraft-patch-4_12_14-122_57-default
kgraft-patch-4_12_14-122_54-default
kernel-livepatch-4_12_14-197_72-default
kernel-livepatch-4_12_14-197_75-default
kgraft-patch-4_12_14-95_65-default
kernel-livepatch-5_3_18-24_43-default-debuginfo
kernel-livepatch-5_3_18-24_46-default
kernel-livepatch-5_3_18-24_46-default-debuginfo
kernel-livepatch-SLE15-SP2_Update_8-debugsource
kernel-livepatch-SLE15-SP2_Update_9-debugsource
kernel-livepatch-4_12_14-197_78-default
kernel-livepatch-4_12_14-197_64-default
kernel-livepatch-4_12_14-150_63-default-debuginfo
kernel-livepatch-5_3_18-24_29-default
kernel-livepatch-4_12_14-150_63-default
kernel-livepatch-5_3_18-24_29-default-debuginfo
kernel-livepatch-5_3_18-24_34-default-debuginfo
kernel-livepatch-5_3_18-24_34-default
kernel-livepatch-5_3_18-24_37-default
kernel-livepatch-5_3_18-24_37-default-debuginfo
kernel-livepatch-4_12_14-197_67-default
kgraft-patch-4_4_180-94_135-default-debuginfo
kgraft-patch-4_4_180-94_135-default
kernel-livepatch-SLE15-SP2_Update_5-debugsource
kernel-livepatch-SLE15-SP2_Update_6-debugsource
kernel-livepatch-SLE15-SP2_Update_7-debugsource
kgraft-patch-4_12_14-122_46-default
kernel-livepatch-4_12_14-197_61-default
kgraft-patch-4_12_14-122_51-default
kernel-livepatch-5_3_18-24_12-default
kgraft-patch-4_4_180-94_130-default
kgraft-patch-4_4_180-94_130-default-debuginfo
kernel-livepatch-4_12_14-197_56-default
kgraft-patch-4_12_14-95_60-default
kernel-livepatch-5_3_18-24_12-default-debuginfo
kernel-livepatch-5_3_18-24_15-default
kernel-livepatch-5_3_18-24_15-default-debuginfo
kernel-livepatch-SLE15-SP2_Update_4-debugsource
kernel-livepatch-SLE15-SP2_Update_3-debugsource
kernel-livepatch-4_12_14-150_58-default
kernel-livepatch-4_12_14-150_58-default-debuginfo
kernel-livepatch-5_3_18-24_24-default
kernel-livepatch-5_3_18-24_24-default-debuginfo
kernel-livepatch-SLE15-SP2_Update_2-debugsource
kernel-livepatch-5_3_18-24_9-default
kernel-livepatch-5_3_18-24_9-default-debuginfo
kernel-livepatch-SLE15-SP2_Update_1-debugsource
kgraft-patch-4_4_180-94_127-default
kernel-livepatch-4_12_14-197_48-default
kernel-livepatch-4_12_14-197_51-default
kernel-livepatch-4_12_14-150_55-default
kernel-livepatch-4_12_14-150_55-default-debuginfo
kgraft-patch-4_12_14-122_41-default
kgraft-patch-4_12_14-95_57-default
kgraft-patch-4_4_180-94_127-default-debuginfo
kgraft-patch-4_12_14-122_37-default
kernel-livepatch-5_3_18-22-default-debuginfo
kernel-livepatch-5_3_18-22-default
kernel-livepatch-SLE15-SP2_Update_0-debugsource
kgraft-patch-4_12_14-122_29-default
kgraft-patch-4_12_14-122_32-default
Cloud Pak for Security (CP4S)
IBM Qradar SIEM
Red Hat Advanced Cluster Management for Kubernetes
Session Smart Router
Red Hat Virtualization
OpenShift Virtualization
Red Hat Virtualization Host
Red Hat OpenShift Container Platform
Migration Toolkit for Containers
BIG-IQ Centralized Management
Dell EMC VxRail Appliance
How to mitigate CVE-2021-22555
kpatch-patch-3_10_0-957_65_1 (Red Hat package) - update to 1-6.el7
kpatch-patch-3_10_0-957_78_2 (Red Hat package) - update to 1-2.el7
kpatch-patch-3_10_0-957_66_1 (Red Hat package) - update to 1-6.el7
kpatch-patch-3_10_0-957_76_1 (Red Hat package) - update to 1-3.el7
kpatch-patch-3_10_0-957_61_1 (Red Hat package) - update to 1-6.el7
kpatch-patch-3_10_0-957_72_1 (Red Hat package) - update to 1-3.el7
kpatch-patch-3_10_0-957_61_2 (Red Hat package) - update to 1-6.el7
kpatch-patch-3_10_0-1160_24_1 (Red Hat package) - update to 1-3.el7
kpatch-patch-3_10_0-957_62_1 (Red Hat package) - update to 1-6.el7
kpatch-patch-3_10_0-1160_31_1 (Red Hat package) - update to 1-2.el7
kpatch-patch-3_10_0-1160_25_1 (Red Hat package) - update to 1-3.el7
kpatch-patch-4_18_0-193_56_1 (Red Hat package) - update to 1-2.el8_2
kpatch-patch-4_18_0-193_51_1 (Red Hat package) - update to 1-3.el8_2
kpatch-patch-3_10_0-1160_15_2 (Red Hat package) - update to 1-7.el7
kpatch-patch-3_10_0-1160_11_1 (Red Hat package) - update to 1-7.el7
kpatch-patch-3_10_0-1160_21_1 (Red Hat package) - update to 1-5.el7
kpatch-patch-3_10_0-957_70_1 (Red Hat package) - update to 1-5.el7
imgbased (Red Hat package) - update to 1.2.23-1.el8ev
kpatch-patch-3_10_0-1160_6_1 (Red Hat package) - update to 1-8.el7
kpatch-patch-3_10_0-1160_2_2 (Red Hat package) - update to 1-8.el7
kpatch-patch-3_10_0-1160 (Red Hat package) - update to 1-8.el7
kpatch-patch-3_10_0-1160_2_1 (Red Hat package) - update to 1-8.el7
kpatch-patch-4_18_0-193_29_1 (Red Hat package) - update to 1-9.el8_2
kpatch-patch-4_18_0-193_47_1 (Red Hat package) - update to 1-6.el8_2
kpatch-patch-4_18_0-193_46_1 (Red Hat package) - update to 1-6.el8_2
kpatch-patch-4_18_0-193_41_1 (Red Hat package) - update to 1-9.el8_2
kpatch-patch-4_18_0-193_40_1 (Red Hat package) - update to 1-9.el8_2
kpatch-patch-4_18_0-193_37_1 (Red Hat package) - update to 1-9.el8_2
kpatch-patch-4_18_0-193_28_1 (Red Hat package) - update to 1-9.el8_2
kpatch-patch-4_18_0-193_19_1 (Red Hat package) - update to 1-11.el8_2
Cloud Pak for Security (CP4S) - update to 1.8.0.0
Red Hat Advanced Cluster Management for Kubernetes - addressed in versions 2.1.11, 2.3.2
kernel (Red Hat package) - addressed in versions 2.6.32-754.58.1.el6, 3.10.0-327.100.1.el7, 3.10.0-514.92.1.el7, 3.10.0-693.94.1.el7, 3.10.0-957.84.1.el7, 3.10.0-1062.56.1.el7, 3.10.0-1160.41.1.el7, 4.18.0-147.52.1.el8_1, 4.18.0-193.64.1.el8_2, 4.18.0-305.12.1.el8_4
kernel-rt (Red Hat package) - addressed in versions 3.10.0-1160.41.1.rt56.1181.el7, 4.18.0-193.64.1.rt13.115.el8_2, 4.18.0-305.12.1.rt7.84.el8_4
redhat-release-virtualization-host (Red Hat package) - addressed in versions 4.3.18-1.el7ev, 4.4.7-4.el8ev
redhat-virtualization-host (Red Hat package) - addressed in versions 4.3.18-20210903.0.el7_9, 4.4.7-20210804.0.el8_4
Red Hat OpenShift Container Platform - update to 4.7.28
IBM Qradar SIEM - addressed in versions 7.3.3 Fix Pack 10, 7.4.3 Fix Pack 3, 7.4.3 Fix Pack 4
kpatch-patch-3_10_0-957_80_1 (Red Hat package) - update to 1-1.el7
kpatch-patch-3_10_0-1160_36_2 (Red Hat package) - update to 1-1.el7
kpatch-patch-4_18_0-147_51_2 (Red Hat package) - update to 1-1.el8_1
kpatch-patch-4_18_0-193_60_2 (Red Hat package) - update to 1-1.el8_2
kpatch-patch-4_18_0-305_10_2 (Red Hat package) - update to 1-1.el8_4
kpatch-patch-4_18_0-147_51_1 (Red Hat package) - update to 1-2.el8_1
kpatch-patch-4_18_0-305_7_1 (Red Hat package) - update to 1-2.el8_4
kpatch-patch-4_18_0-147_48_1 (Red Hat package) - update to 1-3.el8_1
kpatch-patch-4_18_0-305_3_1 (Red Hat package) - update to 1-3.el8_4
kpatch-patch-4_18_0-305 (Red Hat package) - update to 1-4.el8
Migration Toolkit for Containers - update to 1.5.1
kernel-livepatch-SLE15-SP2_Update_17-debugsource - update to 1-5.3.3
kernel-livepatch-5_3_18-24_75-default - update to 1-5.3.3
kernel-livepatch-5_3_18-24_75-default-debuginfo - update to 1-5.3.3
kpatch-patch-4_18_0-147_44_1 (Red Hat package) - update to 1-6.el8_1
kpatch-patch-4_18_0-147_43_1 (Red Hat package) - update to 1-7.el8_1
kernel-livepatch-5_3_18-59_16-default - update to 1-7.3.1
kgraft-patch-4_12_14-122_80-default - update to 1-8.3.1
kpatch-patch-4_18_0-147_38_1 (Red Hat package) - update to 1-9.el8_1
kpatch-patch-4_18_0-147_32_1 (Red Hat package) - update to 1-10.el8_1
kpatch-patch-4_18_0-147_34_1 (Red Hat package) - update to 1-10.el8_1
kpatch-patch-4_18_0-147_27_1 (Red Hat package) - update to 1-12.el8_1
kernel-livepatch-SLE15-SP3_Update_2-debugsource - update to 2-2.1
kernel-livepatch-SLE15-SP2_Update_14-debugsource - update to 2-2.1
kernel-livepatch-5_3_18-59_10-default-debuginfo - update to 2-2.1
kernel-livepatch-5_3_18-59_10-default - update to 2-2.1
kernel-livepatch-5_3_18-24_70-default - update to 2-2.1
kgraft-patch-4_12_14-122_77-default - update to 2-2.1
kgraft-patch-4_12_14-122_74-default - update to 2-2.1
kernel-livepatch-5_3_18-24_70-default-debuginfo - update to 2-2.1
kernel-livepatch-SLE15-SP2_Update_16-debugsource - update to 2-2.1
kernel-livepatch-5_3_18-24_67-default - update to 2-2.1
kernel-livepatch-5_3_18-24_67-default-debuginfo - update to 2-2.1
kernel-livepatch-SLE15-SP2_Update_15-debugsource - update to 2-2.1
kernel-livepatch-5_3_18-24_53_4-default-debuginfo - update to 2-2.1
kernel-livepatch-SLE15-SP3_Update_3-debugsource - update to 2-2.1
kernel-livepatch-SLE15-SP3_Update_1-debugsource - update to 2-2.1
kernel-livepatch-5_3_18-59_5-default-debuginfo - update to 2-2.1
kernel-livepatch-5_3_18-24_53_4-default - update to 2-2.1
kernel-livepatch-5_3_18-59_5-default - update to 2-2.1
kernel-livepatch-5_3_18-59_13-default-debuginfo - update to 2-2.1
kernel-livepatch-5_3_18-59_13-default - update to 2-2.1
kgraft-patch-4_12_14-95_77-default - update to 3-2.1
kernel-livepatch-4_12_14-197_92-default - update to 3-2.1
kernel-livepatch-SLE15-SP2_Update_12-debugsource - update to 4-2.1
kgraft-patch-4_12_14-95_74-default - update to 4-2.1
kgraft-patch-4_12_14-122_71-default - update to 4-2.1
kernel-livepatch-4_12_14-150_72-default-debuginfo - update to 4-2.1
kgraft-patch-4_4_180-94_144-default - update to 4-2.1
kgraft-patch-4_4_180-94_144-default-debuginfo - update to 4-2.1
kernel-livepatch-5_3_18-24_61-default - update to 4-2.1
kernel-livepatch-5_3_18-24_61-default-debuginfo - update to 4-2.1
kernel-livepatch-5_3_18-24_64-default - update to 4-2.1
kernel-livepatch-5_3_18-24_64-default-debuginfo - update to 4-2.1
kernel-livepatch-4_12_14-150_72-default - update to 4-2.1
kernel-livepatch-4_12_14-197_89-default - update to 4-2.1
kernel-livepatch-SLE15-SP2_Update_13-debugsource - update to 4-2.1
kernel-livepatch-SLE15-SP3_Update_0-debugsource - update to 4-3.1
kernel-livepatch-5_3_18-57-default-debuginfo - update to 4-3.1
kernel-livepatch-5_3_18-57-default - update to 4-3.1
linux-4.4.276/kernel-modules - update to 4.4.276
linux-4.4.276/kernel-huge - update to 4.4.276
linux-4.4.276/kernel-generic - update to 4.4.276
linux-4.4.276/kernel-headers - update to 4.4.276_smp
linux-image-4.4.0-1096-kvm (Ubuntu package) - update to 4.4.01096.105
linux-image-virtual-lts-xenial (Ubuntu package) - update to 4.4.01096.105
linux-image-4.4.0-1131-aws (Ubuntu package) - update to 4.4.01096.105
linux-image-4.4.0-213-generic (Ubuntu package) - update to 4.4.01096.105
linux-image-4.4.0-213-lowlatency (Ubuntu package) - update to 4.4.01096.105
linux-image-aws (Ubuntu package) - update to 4.4.01096.105
linux-image-generic (Ubuntu package) - update to 4.4.01096.105
linux-image-kvm (Ubuntu package) - update to 4.4.01096.105
linux-image-lowlatency (Ubuntu package) - update to 4.4.01096.105
linux-image-virtual (Ubuntu package) - update to 4.4.01096.105
linux-image-3.13.0-187-generic (Ubuntu package) - update to 4.4.01096.105
linux-image-3.13.0-187-generic-lpae (Ubuntu package) - update to 4.4.01096.105
linux-image-3.13.0-187-lowlatency (Ubuntu package) - update to 4.4.01096.105
linux-image-4.4.0-1095-aws (Ubuntu package) - update to 4.4.01096.105
linux-image-generic-lpae (Ubuntu package) - update to 4.4.01096.105
linux-image-generic-lts-xenial (Ubuntu package) - update to 4.4.01096.105
linux-image-lowlatency-lts-xenial (Ubuntu package) - update to 4.4.01096.105
linux-image-server (Ubuntu package) - update to 4.4.01096.105
OpenShift Virtualization - update to 4.8.2
kernel-rt-debuginfo - addressed in versions 4.12.14-10.54.1, 5.3.18-45.3
kernel-devel-rt - addressed in versions 4.12.14-10.54.1, 5.3.18-45.3
kernel-source-rt - addressed in versions 4.12.14-10.54.1, 5.3.18-45.3
cluster-md-kmp-rt - addressed in versions 4.12.14-10.54.1, 5.3.18-45.3
cluster-md-kmp-rt-debuginfo - addressed in versions 4.12.14-10.54.1, 5.3.18-45.3
dlm-kmp-rt - addressed in versions 4.12.14-10.54.1, 5.3.18-45.3
dlm-kmp-rt-debuginfo - addressed in versions 4.12.14-10.54.1, 5.3.18-45.3
gfs2-kmp-rt - addressed in versions 4.12.14-10.54.1, 5.3.18-45.3
gfs2-kmp-rt-debuginfo - addressed in versions 4.12.14-10.54.1, 5.3.18-45.3
kernel-rt - addressed in versions 4.12.14-10.54.1, 5.3.18-45.3
kernel-rt-base - update to 4.12.14-10.54.1
kernel-rt-base-debuginfo - update to 4.12.14-10.54.1
kernel-rt-debugsource - addressed in versions 4.12.14-10.54.1, 5.3.18-45.3
kernel-rt-devel - addressed in versions 4.12.14-10.54.1, 5.3.18-45.3
kernel-rt-devel-debuginfo - addressed in versions 4.12.14-10.54.1, 5.3.18-45.3
kernel-rt_debug - addressed in versions 4.12.14-10.54.1, 5.3.18-45.3
kernel-rt_debug-debuginfo - addressed in versions 4.12.14-10.54.1, 5.3.18-45.3
kernel-rt_debug-debugsource - addressed in versions 4.12.14-10.54.1, 5.3.18-45.3
kernel-rt_debug-devel - addressed in versions 4.12.14-10.54.1, 5.3.18-45.3
kernel-rt_debug-devel-debuginfo - addressed in versions 4.12.14-10.54.1, 5.3.18-45.3
kernel-syms-rt - addressed in versions 4.12.14-10.54.1, 5.3.18-45.2
ocfs2-kmp-rt - addressed in versions 4.12.14-10.54.1, 5.3.18-45.3
ocfs2-kmp-rt-debuginfo - addressed in versions 4.12.14-10.54.1, 5.3.18-45.3
kernel-azure-base - update to 4.12.14-16.65.1
kernel-azure-base-debuginfo - update to 4.12.14-16.65.1
kernel-syms-azure - addressed in versions 4.12.14-16.65.1, 5.3.18-18.58.1
kernel-azure-debuginfo - addressed in versions 4.12.14-16.65.1, 5.3.18-18.58.1
kernel-azure-debugsource - addressed in versions 4.12.14-16.65.1, 5.3.18-18.58.1
kernel-azure-devel - addressed in versions 4.12.14-16.65.1, 5.3.18-18.58.1
kernel-azure - addressed in versions 4.12.14-16.65.1, 5.3.18-18.58.1
kernel-source-azure - addressed in versions 4.12.14-16.65.1, 5.3.18-18.58.1
kernel-devel-azure - addressed in versions 4.12.14-16.65.1, 5.3.18-18.58.1
kernel-default-devel-debuginfo - addressed in versions 4.12.14-122.80.1, 5.3.18-24.75.3, 5.3.18-59.16.1
kernel-default-devel - addressed in versions 4.12.14-122.80.1, 5.3.18-24.75.3, 5.3.18-59.16.1
kernel-devel - addressed in versions 4.12.14-122.80.1, 5.3.18-24.75.2, 5.3.18-59.16.1
kernel-syms - addressed in versions 4.12.14-122.80.1, 5.3.18-24.75.1, 5.3.18-59.16.1
kernel-default-kgraft-devel - update to 4.12.14-122.80.1
kernel-macros - addressed in versions 4.12.14-122.80.1, 5.3.18-24.75.2, 5.3.18-59.16.1
kernel-source - addressed in versions 4.12.14-122.80.1, 5.3.18-24.75.2, 5.3.18-59.16.1
kernel-default-man - update to 4.12.14-122.80.1
kernel-default-kgraft - update to 4.12.14-122.80.1
cluster-md-kmp-default - addressed in versions 4.12.14-122.80.1, 5.3.18-24.75.3, 5.3.18-59.16.1
kernel-default-base-debuginfo - update to 4.12.14-122.80.1
kernel-default-base - addressed in versions 4.12.14-122.80.1, 5.3.18-24.75.3.9.34.3, 5.3.18-59.16.1.18.8.1
kernel-default - addressed in versions 4.12.14-122.80.1, 5.3.18-24.75.3, 5.3.18-59.16.1
kernel-docs - addressed in versions 4.12.14-122.80.1, 5.3.18-24.75.2, 5.3.18-59.16.1
kernel-obs-build-debugsource - addressed in versions 4.12.14-122.80.1, 5.3.18-24.75.3, 5.3.18-59.16.1
kernel-obs-build - addressed in versions 4.12.14-122.80.1, 5.3.18-24.75.3, 5.3.18-59.16.1
kernel-default-extra-debuginfo - addressed in versions 4.12.14-122.80.1, 5.3.18-24.75.3, 5.3.18-59.16.1
kernel-default-extra - addressed in versions 4.12.14-122.80.1, 5.3.18-24.75.3, 5.3.18-59.16.1
kernel-default-debugsource - addressed in versions 4.12.14-122.80.1, 5.3.18-24.75.3, 5.3.18-59.16.1
kernel-default-debuginfo - addressed in versions 4.12.14-122.80.1, 5.3.18-24.75.3, 5.3.18-59.16.1
cluster-md-kmp-default-debuginfo - addressed in versions 4.12.14-122.80.1, 5.3.18-24.75.3, 5.3.18-59.16.1
dlm-kmp-default - addressed in versions 4.12.14-122.80.1, 5.3.18-24.75.3, 5.3.18-59.16.1
ocfs2-kmp-default-debuginfo - addressed in versions 4.12.14-122.80.1, 5.3.18-24.75.3, 5.3.18-59.16.1
ocfs2-kmp-default - addressed in versions 4.12.14-122.80.1, 5.3.18-24.75.3, 5.3.18-59.16.1
gfs2-kmp-default-debuginfo - addressed in versions 4.12.14-122.80.1, 5.3.18-24.75.3, 5.3.18-59.16.1
gfs2-kmp-default - addressed in versions 4.12.14-122.80.1, 5.3.18-24.75.3, 5.3.18-59.16.1
dlm-kmp-default-debuginfo - addressed in versions 4.12.14-122.80.1, 5.3.18-24.75.3, 5.3.18-59.16.1
kernel-tools-debuginfo - update to 4.19.90-2107.4.0.0097
perf-debuginfo - update to 4.19.90-2107.4.0.0097
python2-perf-debuginfo - update to 4.19.90-2107.4.0.0097
kernel-tools - update to 4.19.90-2107.4.0.0097
kernel-debuginfo - update to 4.19.90-2107.4.0.0097
kernel-tools-devel - update to 4.19.90-2107.4.0.0097
kernel-source - update to 4.19.90-2107.4.0.0097
bpftool-debuginfo - update to 4.19.90-2107.4.0.0097
python3-perf - update to 4.19.90-2107.4.0.0097
bpftool - update to 4.19.90-2107.4.0.0097
python3-perf-debuginfo - update to 4.19.90-2107.4.0.0097
python2-perf - update to 4.19.90-2107.4.0.0097
kernel-debugsource - update to 4.19.90-2107.4.0.0097
perf - update to 4.19.90-2107.4.0.0097
kernel-devel - update to 4.19.90-2107.4.0.0097
kernel - update to 4.19.90-2107.4.0.0097
bpftool - addressed in versions 4.19.91-24.9, 4.19.91-26
kernel - addressed in versions 4.19.91-24.9, 4.19.91-26
python3-perf - update to 4.19.91-24.9
perf - addressed in versions 4.19.91-24.9, 4.19.91-26
kernel-tools-libs-devel - addressed in versions 4.19.91-24.9, 4.19.91-26
kernel-tools-libs - addressed in versions 4.19.91-24.9, 4.19.91-26
kernel-tools - addressed in versions 4.19.91-24.9, 4.19.91-26
kernel-modules-extra - update to 4.19.91-24.9
kernel-modules - update to 4.19.91-24.9
kernel-headers - addressed in versions 4.19.91-24.9, 4.19.91-26
kernel-debug-modules-extra - update to 4.19.91-24.9
kernel-debug-modules - update to 4.19.91-24.9
kernel-debug-devel - addressed in versions 4.19.91-24.9, 4.19.91-26
kernel-debug-core - update to 4.19.91-24.9
kernel-devel - addressed in versions 4.19.91-24.9, 4.19.91-26
kernel-debug - addressed in versions 4.19.91-24.9, 4.19.91-26
kernel-core - update to 4.19.91-24.9
python-perf - update to 4.19.91-26
kgraft-patch-4_12_14-122_66-default - update to 5-2.1
kernel-azure-devel-debuginfo - update to 5.3.18-18.58.1
kernel-preempt - addressed in versions 5.3.18-24.75.3, 5.3.18-59.16.1
kernel-preempt-extra - addressed in versions 5.3.18-24.75.3, 5.3.18-59.16.1
kernel-preempt-extra-debuginfo - addressed in versions 5.3.18-24.75.3, 5.3.18-59.16.1
kernel-default-livepatch - addressed in versions 5.3.18-24.75.3, 5.3.18-59.16.1
kernel-default-livepatch-devel - addressed in versions 5.3.18-24.75.3, 5.3.18-59.16.1
kernel-preempt-devel-debuginfo - addressed in versions 5.3.18-24.75.3, 5.3.18-59.16.1
kernel-preempt-devel - addressed in versions 5.3.18-24.75.3, 5.3.18-59.16.1
reiserfs-kmp-default - addressed in versions 5.3.18-24.75.3, 5.3.18-59.16.1
reiserfs-kmp-default-debuginfo - addressed in versions 5.3.18-24.75.3, 5.3.18-59.16.1
kernel-preempt-debugsource - addressed in versions 5.3.18-24.75.3, 5.3.18-59.16.1
kernel-preempt-debuginfo - addressed in versions 5.3.18-24.75.3, 5.3.18-59.16.1
kernel-zfcpdump-debugsource - update to 5.3.18-59.16.1
kernel-zfcpdump-debuginfo - update to 5.3.18-59.16.1
kernel-zfcpdump - update to 5.3.18-59.16.1
kernel-64kb-devel-debuginfo - update to 5.3.18-59.16.1
kernel-64kb-devel - update to 5.3.18-59.16.1
kernel-64kb-debugsource - update to 5.3.18-59.16.1
kernel-64kb-debuginfo - update to 5.3.18-59.16.1
kernel-64kb - update to 5.3.18-59.16.1
Session Smart Router - addressed in versions 5.4.7, 5.5.3
Dell EMC VxRail Appliance - update to 7.0.203
kgraft-patch-4_12_14-95_71-default - update to 7-2.2
kernel-livepatch-4_12_14-150_69-default - update to 7-2.2
kernel-livepatch-5_3_18-24_52-default-debuginfo - update to 7-2.2
kernel-livepatch-5_3_18-24_52-default - update to 7-2.2
kgraft-patch-4_12_14-122_63-default - update to 7-2.2
kernel-livepatch-4_12_14-150_69-default-debuginfo - update to 7-2.2
kernel-livepatch-4_12_14-197_86-default - update to 7-2.2
kgraft-patch-4_4_180-94_141-default-debuginfo - update to 7-2.2
kgraft-patch-4_4_180-94_141-default - update to 7-2.2
kernel-livepatch-SLE15-SP2_Update_11-debugsource - update to 7-2.2
kernel-livepatch-4_12_14-150_66-default - update to 8-2.2
kernel-livepatch-5_3_18-24_49-default-debuginfo - update to 8-2.2
kernel-livepatch-SLE15-SP2_Update_10-debugsource - update to 8-2.2
kernel-livepatch-4_12_14-150_66-default-debuginfo - update to 8-2.2
kernel-livepatch-5_3_18-24_49-default - update to 8-2.2
kgraft-patch-4_12_14-122_60-default - update to 8-2.2
kgraft-patch-4_12_14-95_68-default - update to 8-2.2
kgraft-patch-4_4_180-94_138-default - update to 8-2.2
kernel-livepatch-4_12_14-197_83-default - update to 8-2.2
kgraft-patch-4_4_180-94_138-default-debuginfo - update to 8-2.2
kernel-livepatch-5_3_18-24_43-default - update to 9-2.2
kgraft-patch-4_12_14-122_57-default - update to 9-2.2
kgraft-patch-4_12_14-122_54-default - update to 9-2.2
kernel-livepatch-4_12_14-197_72-default - update to 9-2.2
kernel-livepatch-4_12_14-197_75-default - update to 9-2.2
kgraft-patch-4_12_14-95_65-default - update to 9-2.2
kernel-livepatch-5_3_18-24_43-default-debuginfo - update to 9-2.2
kernel-livepatch-5_3_18-24_46-default - update to 9-2.2
kernel-livepatch-5_3_18-24_46-default-debuginfo - update to 9-2.2
kernel-livepatch-SLE15-SP2_Update_8-debugsource - update to 9-2.2
kernel-livepatch-SLE15-SP2_Update_9-debugsource - update to 9-2.2
kernel-livepatch-4_12_14-197_78-default - update to 9-2.2
kernel-livepatch-4_12_14-197_64-default - update to 10-2.2
kernel-livepatch-4_12_14-150_63-default-debuginfo - update to 10-2.2
kernel-livepatch-5_3_18-24_29-default - update to 10-2.2
kernel-livepatch-4_12_14-150_63-default - update to 10-2.2
kernel-livepatch-5_3_18-24_29-default-debuginfo - update to 10-2.2
kernel-livepatch-5_3_18-24_34-default-debuginfo - update to 10-2.2
kernel-livepatch-5_3_18-24_34-default - update to 10-2.2
kernel-livepatch-5_3_18-24_37-default - update to 10-2.2
kernel-livepatch-5_3_18-24_37-default-debuginfo - update to 10-2.2
kernel-livepatch-4_12_14-197_67-default - update to 10-2.2
kgraft-patch-4_4_180-94_135-default-debuginfo - update to 10-2.2
kgraft-patch-4_4_180-94_135-default - update to 10-2.2
kernel-livepatch-SLE15-SP2_Update_5-debugsource - update to 10-2.2
kernel-livepatch-SLE15-SP2_Update_6-debugsource - update to 10-2.2
kernel-livepatch-SLE15-SP2_Update_7-debugsource - update to 10-2.2
kgraft-patch-4_12_14-122_46-default - update to 11-2.2
kernel-livepatch-4_12_14-197_61-default - update to 11-2.2
kgraft-patch-4_12_14-122_51-default - update to 11-2.2
kernel-livepatch-5_3_18-24_12-default - update to 12-2.2
kgraft-patch-4_4_180-94_130-default - update to 12-2.2
kgraft-patch-4_4_180-94_130-default-debuginfo - update to 12-2.2
kernel-livepatch-4_12_14-197_56-default - update to 12-2.2
kgraft-patch-4_12_14-95_60-default - update to 12-2.2
kernel-livepatch-5_3_18-24_12-default-debuginfo - update to 12-2.2
kernel-livepatch-5_3_18-24_15-default - update to 12-2.2
kernel-livepatch-5_3_18-24_15-default-debuginfo - update to 12-2.2
kernel-livepatch-SLE15-SP2_Update_4-debugsource - update to 12-2.2
kernel-livepatch-SLE15-SP2_Update_3-debugsource - update to 12-2.2
kernel-livepatch-4_12_14-150_58-default - update to 12-2.2
kernel-livepatch-4_12_14-150_58-default-debuginfo - update to 12-2.2
kernel-livepatch-5_3_18-24_24-default - update to 12-2.2
kernel-livepatch-5_3_18-24_24-default-debuginfo - update to 12-2.2
kernel-livepatch-SLE15-SP2_Update_2-debugsource - update to 12-2.2
kernel-livepatch-5_3_18-24_9-default - update to 13-2.2
kernel-livepatch-5_3_18-24_9-default-debuginfo - update to 13-2.2
kernel-livepatch-SLE15-SP2_Update_1-debugsource - update to 13-2.2
kgraft-patch-4_4_180-94_127-default - update to 13-2.2
kernel-livepatch-4_12_14-197_48-default - update to 13-2.2
kernel-livepatch-4_12_14-197_51-default - update to 13-2.2
kernel-livepatch-4_12_14-150_55-default - update to 13-2.2
kernel-livepatch-4_12_14-150_55-default-debuginfo - update to 13-2.2
kgraft-patch-4_12_14-122_41-default - update to 13-2.2
kgraft-patch-4_12_14-95_57-default - update to 13-2.2
kgraft-patch-4_4_180-94_127-default-debuginfo - update to 13-2.2
kgraft-patch-4_12_14-122_37-default - update to 14-2.2
kernel-livepatch-5_3_18-22-default-debuginfo - update to 14-5.2
kernel-livepatch-5_3_18-22-default - update to 14-5.2
kernel-livepatch-SLE15-SP2_Update_0-debugsource - update to 14-5.2
kgraft-patch-4_12_14-122_29-default - update to 15-2.2
kgraft-patch-4_12_14-122_32-default - update to 15-2.2
Links to Public Exploits and PoC-codes
- Exploit #9545 - CVE-2021-22555 (Linux Kernel 2.6.19 < 5.9 - 'Netfilter Local Privilege Escalation') (February 8, 2024)
- Exploit #9232 - CVE-2021-22555 (This repo hosts TUKRU's Linux Privilege Escalation exploit (CVE-2021-22555). It demonstrates gaining root privileges via a vulnerability. Tested on Ubuntu 5.8.0-48-generic and COS 5.4.89+. Use responsibly and ethically.) (August 6, 2023)
- Exploit #8014 - CVE-2021-22555-PipeVersion (CVE-2021-22555 exploit rewritten with pipe primitive) (June 9, 2022)
- Exploit #7077 - Linux Kernel 2.6.19 < 5.9 - 'Netfilter Local Privilege Escalation (November 25, 2021)
- Exploit #6920 - container-cve-2021-22555 () (October 22, 2021)
- Exploit #6903 - CVE-2021-22555-Exploit (CVE-2021-22555 Exploit) (October 18, 2021)
- Exploit #6853 - Netfilter x_tables Heap Out-Of-Bounds Write / Privilege Escalation (October 7, 2021)
- Exploit #6818 - Netfilter x_tables Heap OOB Write Privilege Escalation (October 6, 2021)
- Exploit #6810 - CVE-2021-22555-esc-priv () (October 1, 2021)
- Exploit #6665 - CVE-2021-22555-Exploit (CVE-2021-22555 Exploit) (August 31, 2021)
External References
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/net/netfilter/x_tables.c?id=b29c457a6511435960115c0f548c4360d5f4801d
- https://github.com/google/security-research/security/advisories/GHSA-xxx5-8mvq-3528
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/net/netfilter/x_tables.c?id=9fa492cdc160cd27ce1046cb36f47d3b2b1efa21
- http://packetstormsecurity.com/files/163528/Linux-Kernel-Netfilter-Heap-Out-Of-Bounds-Write.html
- https://security.netapp.com/advisory/ntap-20210805-0010/
- http://packetstormsecurity.com/files/163878/Kernel-Live-Patch-Security-Notice-LSN-0080-1.html
Related Security Bulletins
- Privilege escalation in Linux kernel
- Multiple vulnerabilities in Red Hat Virtualization
- Red Hat Enterprise Linux 7.3 update for kernel
- Red Hat Enterprise Linux for Real Time 8.2 update for kernel-rt
- Red Hat Enterprise Linux 8.2 update for kernel
- Red Hat Enterprise Linux 8.2 update for kpatch-patch
- Red Hat Enterprise Linux 7 update for kpatch-patch
- Multiple vulnerabilities in Red Hat Migration Toolkit for Containers
- Red Hat Enterprise Linux 7 update for kernel
- Red Hat Enterprise Linux 7 update for kernel-rt
- Red Hat Enterprise Linux 7.2 update for kernel
- CentOS 7 update for kernel
- Multiple vulnerabilities in OpenShift Container Platform 4.7
- Multiple vulnerabilities in Red Hat Virtualization
- Multiple vulnerabilities in Red Hat Advanced Cluster Management for Kubernetes
- Red Hat Enterprise Linux 7.4 update for kernel
- Red Hat Enterprise Linux 7.6 update for kernel
- Red Hat Enterprise Linux Server 7.6 update for kpatch-patch
- Multiple vulnerabilities in IBM QRadar SIEM
- Multiple vulnerabilities in IBM QRadar SIEM
- Multiple vulnerabilities in IBM QRadar SIEM
- SUSE update for the Linux Kernel
- SUSE update for the Linux Kernel
- SUSE update for the Linux Kernel
- SUSE update for the Linux Kernel (Live Patch 16 for SLE 15 SP2)
- SUSE update for the Linux Kernel (Live Patch 36 for SLE 12 SP3)
- SUSE update for the Linux Kernel (Live Patch 21 for SLE 15 SP1)
- SUSE update for the Linux Kernel (Live Patch 2 for SLE 15 SP3)
- SUSE update for the Linux Kernel (Live Patch 22 for SLE 15 SP1)
- SUSE update for the Linux Kernel (Live Patch 19 for SLE 15 SP1)
- Ubuntu update for linux
- Privilege escalation in F5 BIG-IP (Linux kernel component)
- Privilege escalation in BIG-IQ Centralized Management (Linux kernel component)
- Multiple vulnerabilities in IBM Cloud Pak for Security
- ClevOS update for IBM Cloud Object Storage Systems
- Multiple vulnerabilities in Juniper Networks Session Smart Router
- Multiple vulnerabilities in Dell EMC VxRail Appliance
- Red Hat Enterprise Linux 8 update for kpatch-patch
- Red Hat Enterprise Linux 8 update for kernel
- Red Hat Enterprise Linux 8 update for kernel-rt
- Red Hat Enterprise Linux 8.1 Extended Update Support update for kernel
- Red Hat Enterprise Linux 8.1 Extended Update Support update for kpatch-patch
- Red Hat Enterprise Linux 7 update for kernel
- SUSE update for the Linux Kernel
- SUSE update for the Linux Kernel
- SUSE update for the Linux Kernel
- SUSE update for the Linux Kernel
- Multiple vulnerabilities in Red Hat Advanced Cluster Management for Kubernetes 2.3
- Multiple vulnerabilities in OpenShift Virtualization 4.8
- SUSE update for the Linux Kernel (Live Patch 15 for SLE 15 SP2)
- SUSE update for the Linux Kernel
- Slackware Linux update for kernel
- openEuler update for kernel
- Anolis OS update for kernel(ANCK)4.19
- Anolis OS update for kernel(ANCK)4.19
- Red Hat Enterprise Linux 6 Extended Lifecycle Support - EXTENSION update for kernel