Red Hat Security Advisory: kernel security update
Red Hat has released a security advisory addressing multiple vulnerabilities in the Linux kernel packages for Red Hat Enterprise Linux 8. The update fixes issues including permission bypass in SELinux/Smack, potential underflow in network code, race conditions causing crashes, kernel info leaks, and pointer initialization errors. These vulnerabilities have been rated with moderate severity by Red Hat Product Security. A patch is available and applying the update requires a system reboot. The advisory covers multiple CVEs affecting various kernel components and architectures including x86_64, s390x, ppc64le, and aarch64.
AI Analysis
Technical Summary
This Red Hat security advisory (RHSA-2024:10943) addresses nine distinct vulnerabilities in the Linux kernel packages for Red Hat Enterprise Linux 8. The fixed issues include: CVE-2024-46695 (SELinux/Smack permission bypass in inode_setsecctx hook), CVE-2024-49949 (potential underflow in qdisc_pkt_len_init() with UFO), CVE-2024-50082 (crash due to race condition in blk-rq-qos), CVE-2024-50099 (removal of broken LDR uprobe support on arm64), CVE-2024-50110 (kernel info leak in xfrm algo dumping), CVE-2024-50142 (validation of SA prefix length in xfrm), CVE-2024-50192 (prevention of VMOVP on dying VPE in irqchip/gic-v4), CVE-2024-50256 (potential crash in nf_reject_ipv6), and CVE-2024-50264 (dangling pointer initialization in vsock/virtio). Red Hat rates the overall security impact as moderate. The advisory provides updated kernel packages that fix these issues and requires a reboot to apply the changes.
Potential Impact
The vulnerabilities fixed by this advisory could allow unauthorized permission bypass, kernel crashes, information leaks, and potential denial of service conditions. The issues affect core kernel components such as SELinux/Smack security modules, networking subsystems, block request queue handling, ARM64 probes, and virtual socket implementations. While no known exploits in the wild have been reported, these flaws could be leveraged by attackers to disrupt system stability or bypass security checks. The overall impact is rated moderate by Red Hat.
Mitigation Recommendations
A patch is available from Red Hat for the affected kernel packages in Red Hat Enterprise Linux 8. Users should apply the update as described in the Red Hat advisory RHSA-2024:10943 and reboot the system to ensure the fixes take effect. No additional mitigations are specified beyond applying the official update and rebooting.
Red Hat Security Advisory: kernel security update
Description
Red Hat has released a security advisory addressing multiple vulnerabilities in the Linux kernel packages for Red Hat Enterprise Linux 8. The update fixes issues including permission bypass in SELinux/Smack, potential underflow in network code, race conditions causing crashes, kernel info leaks, and pointer initialization errors. These vulnerabilities have been rated with moderate severity by Red Hat Product Security. A patch is available and applying the update requires a system reboot. The advisory covers multiple CVEs affecting various kernel components and architectures including x86_64, s390x, ppc64le, and aarch64.
Affected software
Run on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
This Red Hat security advisory (RHSA-2024:10943) addresses nine distinct vulnerabilities in the Linux kernel packages for Red Hat Enterprise Linux 8. The fixed issues include: CVE-2024-46695 (SELinux/Smack permission bypass in inode_setsecctx hook), CVE-2024-49949 (potential underflow in qdisc_pkt_len_init() with UFO), CVE-2024-50082 (crash due to race condition in blk-rq-qos), CVE-2024-50099 (removal of broken LDR uprobe support on arm64), CVE-2024-50110 (kernel info leak in xfrm algo dumping), CVE-2024-50142 (validation of SA prefix length in xfrm), CVE-2024-50192 (prevention of VMOVP on dying VPE in irqchip/gic-v4), CVE-2024-50256 (potential crash in nf_reject_ipv6), and CVE-2024-50264 (dangling pointer initialization in vsock/virtio). Red Hat rates the overall security impact as moderate. The advisory provides updated kernel packages that fix these issues and requires a reboot to apply the changes.
Potential Impact
The vulnerabilities fixed by this advisory could allow unauthorized permission bypass, kernel crashes, information leaks, and potential denial of service conditions. The issues affect core kernel components such as SELinux/Smack security modules, networking subsystems, block request queue handling, ARM64 probes, and virtual socket implementations. While no known exploits in the wild have been reported, these flaws could be leveraged by attackers to disrupt system stability or bypass security checks. The overall impact is rated moderate by Red Hat.
Mitigation Recommendations
A patch is available from Red Hat for the affected kernel packages in Red Hat Enterprise Linux 8. Users should apply the update as described in the Red Hat advisory RHSA-2024:10943 and reboot the system to ensure the fixes take effect. No additional mitigations are specified beyond applying the official update and rebooting.
Technical Details
- Gcve Source
- db.gcve.eu
- Csaf Category
- csaf_security_advisory
- Csaf Version
- 2.0
- Publisher
- Red Hat Product Security
- Advisory Id
- RHSA-2024:10943
- Cve Count
- 9
- Additional Cves
- ["CVE-2024-49949","CVE-2024-50082","CVE-2024-50099","CVE-2024-50110","CVE-2024-50142","CVE-2024-50192","CVE-2024-50256","CVE-2024-50264"]
- Cvss Version
- null
Threat ID: 6a3da2004853345fc1836c9a
Added to database: 06/25/2026, 21:47:44 UTC
Last enriched: 08/05/2026, 18:26:36 UTC
Last updated: 08/26/2026, 21:03:59 UTC
Views: 79
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.