RedHat kernel CVE-2022-0492 Authorization Bypass Vulnerability

description-logoDescription

The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): kernel: cgroups v1 release_agent feature may allow privilege escalation (CVE-2022-0492) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Bug Fix(es): kernel panic in mlx5_ib driver RHEL/CentOS 7.9 VM (BZ#2046571) [RHEL-7.9] Get Call Trace about "kernel/timer.c:1270 requeue_timers+0x15e/0x170" on specified AMD x86_64 system (BZ#2048502) kernel NULL pointer dereference while calling dma_pool_alloc from the mlx5_core module (BZ#2055457) Rhel 7.9 NFS Clients takes very long time to resume operations in an NFS Server failover scenario (BZ#2066699) perf stat shows unsupported counters for Intel IceLake cpu (BZ#2072317) kernel panic in mlx5_ib driver RHEL/CentOS 7.9 VM (BZ#2046571) [RHEL-7.9] Get Call Trace about "kernel/timer.c:1270 requeue_timers+0x15e/0x170" on specified AMD x86_64 system (BZ#2048502) kernel NULL pointer dereference while calling dma_pool_alloc from the mlx5_core module (BZ#2055457) Rhel 7.9 NFS Clients takes very long time to resume operations in an NFS Server failover scenario (BZ#2066699) perf stat shows unsupported counters for Intel IceLake cpu (BZ#2072317) SolutionFor details on how to apply this update, which includes the changes described in this advisory, refer to:https://access.redhat.com/articles/11258 The system must be rebooted for this update to take effect.

affected-products-logoAffected Applications

kernel

CVE References

CVE-2022-0492