Security Vulnerabilities fixed in kpatch-patch-4_18_0 RHSA-2020:4331

description-logoDescription

This is a kernel live patch module which is automatically loaded by the RPM post-install script to modify the code of a running kernel. Security Fix(es): kernel: metadata validator in XFS may cause an inode with a valid, user-creatable extended attribute to be flagged as corrupt (CVE-2020-14385) kernel: memory corruption in net/packet/af_packet.c leads to elevation of privilege (CVE-2020-14386) kernel: metadata validator in XFS may cause an inode with a valid, user-creatable extended attribute to be flagged as corrupt (CVE-2020-14385) kernel: memory corruption in net/packet/af_packet.c leads to elevation of privilege (CVE-2020-14386) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

affected-products-logoAffected Applications

kpatch-patch-4_18_0