Skip to main content
Press slash or control plus K to focus the search. Use the arrow keys to navigate results and press enter to open a threat.
Reconnecting to live updates…
EPSS 0.5%top 57%

Red Hat Security Advisory: kernel security update

0
Medium
Published: 12/11/2024 (12/11/2024, 16:21:22 UTC)
Source: GCVE Database
Vendor/Project: Red Hat Product Security
Product: Red Hat

Description

Red Hat has released a security advisory addressing multiple vulnerabilities in the Linux kernel packages for Red Hat Enterprise Linux 8. The update fixes issues including permission bypass in SELinux/Smack, potential underflow in network code, race conditions causing crashes, kernel info leaks, and pointer initialization errors. These vulnerabilities have been rated with moderate severity by Red Hat Product Security. A patch is available and applying the update requires a system reboot. The advisory covers multiple CVEs affecting various kernel components and architectures including x86_64, s390x, ppc64le, and aarch64.

Affected software

redhat/kernel
pkg:rpm/redhat/kernel
Affected versions
>=8.0.0 <8.10.0

Run on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.

AI-Powered Analysis

Machine-generated threat intelligence

AILast updated: 08/05/2026, 18:26:36 UTC

Technical Analysis

This Red Hat security advisory (RHSA-2024:10943) addresses nine distinct vulnerabilities in the Linux kernel packages for Red Hat Enterprise Linux 8. The fixed issues include: CVE-2024-46695 (SELinux/Smack permission bypass in inode_setsecctx hook), CVE-2024-49949 (potential underflow in qdisc_pkt_len_init() with UFO), CVE-2024-50082 (crash due to race condition in blk-rq-qos), CVE-2024-50099 (removal of broken LDR uprobe support on arm64), CVE-2024-50110 (kernel info leak in xfrm algo dumping), CVE-2024-50142 (validation of SA prefix length in xfrm), CVE-2024-50192 (prevention of VMOVP on dying VPE in irqchip/gic-v4), CVE-2024-50256 (potential crash in nf_reject_ipv6), and CVE-2024-50264 (dangling pointer initialization in vsock/virtio). Red Hat rates the overall security impact as moderate. The advisory provides updated kernel packages that fix these issues and requires a reboot to apply the changes.

Potential Impact

The vulnerabilities fixed by this advisory could allow unauthorized permission bypass, kernel crashes, information leaks, and potential denial of service conditions. The issues affect core kernel components such as SELinux/Smack security modules, networking subsystems, block request queue handling, ARM64 probes, and virtual socket implementations. While no known exploits in the wild have been reported, these flaws could be leveraged by attackers to disrupt system stability or bypass security checks. The overall impact is rated moderate by Red Hat.

Mitigation Recommendations

A patch is available from Red Hat for the affected kernel packages in Red Hat Enterprise Linux 8. Users should apply the update as described in the Red Hat advisory RHSA-2024:10943 and reboot the system to ensure the fixes take effect. No additional mitigations are specified beyond applying the official update and rebooting.

Pro Console: star threats, build custom feeds, automate alerts via Slack, email & webhooks.Upgrade to Pro

Technical Details

Gcve Source
db.gcve.eu
Csaf Category
csaf_security_advisory
Csaf Version
2.0
Publisher
Red Hat Product Security
Advisory Id
RHSA-2024:10943
Cve Count
9
Additional Cves
["CVE-2024-49949","CVE-2024-50082","CVE-2024-50099","CVE-2024-50110","CVE-2024-50142","CVE-2024-50192","CVE-2024-50256","CVE-2024-50264"]
Cvss Version
null

Threat ID: 6a3da2004853345fc1836c9a

Added to database: 06/25/2026, 21:47:44 UTC

Last enriched: 08/05/2026, 18:26:36 UTC

Last updated: 08/26/2026, 21:03:59 UTC

Views: 79

Community Reviews

0 reviews

Crowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.

Sort by
Loading community insights…

Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.

Actions

PRO

Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.

Please log in to the Console to use AI analysis features.

Need more coverage?

Upgrade to Pro Console for AI refresh and higher limits.

For incident response and remediation, OffSeq services can help resolve threats faster.

Latest Threats

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses