Alerts This Week
Warning Icon 1 700
Alerts This Week
Warning Icon 1 700

Fedora 32: FEDORA-2021-8832eab899 Critical Privilege Escalation

fedora
Calendar Grey May 19, 2021
Dist Fedora Esm H88
The latest kernel patch for Fedora 32 implements essential updates that tackle privilege escalation vulnerabilities and various other concerns, enhancing overall reliability.
The 5.11.21 stable kernel update contains a number of important fixes across the tree.

Summary

The kernel meta package

The 5.11.21 stable kernel update contains a number of important fixes across the

tree.

* Fri May 14 2021 Justin M. Forbes [5.11.21-0]

- can: isotp: prevent race between isotp_bind() and isotp_setsockopt() (Norbert Slusarek)

* Wed May 12 2021 Justin M. Forbes [5.11.20-0]

- io_uring: truncate lengths larger than MAX_RW_COUNT on provide buffers (Thadeu Lima de Souza Cascardo)

- bpf: Prevent writable memory-mapping of read-only ringbuf pages (Andrii Nakryiko)

- bpf, ringbuf: Deny reserve of buffers larger than ringbuf (Thadeu Lima de Souza Cascardo)

- bpf: Fix alu32 const subreg bound tracking on bitwise operations (Daniel Borkmann)

- net/nfc: fix use-after-free llcp_sock_bind/connect (Or Cohen)

[ 1 ] Bug #1959673 - CVE-2021-32606 kernel: isotp_setsockopt in net/can/isotp.c allows privilege escalation via use-after-free

https://bugzilla.redhat.com/show_bug.cgi?id=1959673

su -c 'dnf upgrade --advisory FEDORA-2021-8832eab899' at the command

line. For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/

List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines

List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure

Change Log

References

Update Instructions

Severity
critical
Lowest
Low
Medium
High
Critical

Product: Fedora 32
Version: 5.11.21
Release: 100.fc32
Summary: The Linux kernel

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here