AlmaLinux 9.2 [TuxCare] 安全更新:bpftool / kernel / kernel-abi-stablelists / kernel-core / 等多个漏洞 (ALMALINUX9.2:CLSA-2024:1722533082)

medium Nessus 插件 ID 352344

简介

AlmaLinux 主机缺少一个或多个安全更新。

描述

AlmaLinux 9.2 主机上存在安装的程序包,该程序包受到 TuxCare ALMALINUX9.2:CLSA-2024:2024:1722533082 公告中提及的多个漏洞的影响。

- 已修复 Linux 内核中的下列漏洞:i2c: Fix a potential use after free Free the adap structure only after we are done using it. This patch just moves the put_device() down a bit to avoid the use after free. [wsa: added comment to the code, added Fixes tag] (CVE-2019-25162)

- 已修复 Linux 内核中的下列漏洞:tty: tty_buffer: Fix the softlockup issue in flush_to_ldisc When running ltp testcase(ltp/testcases/kernel/pty/pty04.c) with arm64, there is a soft lockup, which look like this one: Workqueue: events_unbound flush_to_ldisc Call trace:
dump_backtrace+0x0/0x1ec show_stack+0x24/0x30 dump_stack+0xd0/0x128 panic+0x15c/0x374 watchdog_timer_fn+0x2b8/0x304 __run_hrtimer+0x88/0x2c0 __hrtimer_run_queues+0xa4/0x120 hrtimer_interrupt+0xfc/0x270 arch_timer_handler_phys+0x40/0x50 handle_percpu_devid_irq+0x94/0x220
__handle_domain_irq+0x88/0xf0 gic_handle_irq+0x84/0xfc el1_irq+0xc8/0x180 slip_unesc+0x80/0x214 [slip] tty_ldisc_receive_buf+0x64/0x80 tty_port_default_receive_buf+0x50/0x90 flush_to_ldisc+0xbc/0x110 process_one_work+0x1d4/0x4b0 worker_thread+0x180/0x430 kthread+0x11c/0x120 In the testcase pty04, The first process call the write syscall to send data to the pty master. At the same time, the workqueue will do the flush_to_ldisc to pop data in a loop until there is no more data left. When the sender and workqueue running in different core, the sender sends data fastly in full time which will result in workqueue doing work in loop for a long time and occuring softlockup in flush_to_ldisc with kernel configured without preempt. So I add need_resched check and cond_resched in the flush_to_ldisc loop to avoid it. (CVE-2021-47185)

- 在 Linux 内核的 fs/locks.c 函数的 filelock_init 中发现一个缺陷。由于 memcg 未限制可移植操作系统接口 (POSIX) 文件锁定的数量,此问题可导致主机内存耗尽。(CVE-2022-0480)

- 在代理虚拟化 TPM 设备的 Linux 内核实现中发现一个缺陷。在配置了虚拟化 TPM 设备(并非默认配置)的系统上,本地攻击者可以造成释放后使用错误,并且可能会提升系统权限。(CVE-2022-2977)

- 在 Linux 内核 ///5.15.856.0.156.1.1 及之前版本5.10.162中发现一个漏洞。受影响的元素是组件 libbpf 的 tools/lib/bpf/btf_dump.c 文件的函数btf_dump_name_dups。操纵此漏洞可导致释放后使用。升级到版本 5.10.163、 5.15.86、 6.0.166.1.26.2 就足以解决此问题。修补程序的标识符为 c61650b869e0b6fb0c0a28ed42d928eea969afc8/ fbe08093fb2334549859829ef81d42570812597d/8c64a8e76eb85d422af5ec60ccbf26e3ead8c333/a733bf10198eb5bb92789094 0de8ab457491ed3b/93c660ca40b5d2f7c1b1626e955a8e9fa30e0749。您应升级受影响的组件。
(CVE-2022-3534)

请注意,Nessus 尚未测试这些问题,而是只依据应用程序自我报告的版本号进行判断。

解决方案

根据 TuxCare 公告 ALMALINUX9.2:CLSA-2024:1722533082 23 中的指南更新受影响的程序包。

另见

https://cve.tuxcare.com/els/releases/CLSA-2024:1722533082

http://www.nessus.org/u?28dc12ee

插件详情

严重性: Medium

ID: 352344

文件名: tuxcare_alma_linux_9.2_CLSA-2024-1722533082.nasl

版本: 1.2

类型: Local

发布时间: 2026/9/30

最近更新时间: 2026/10/1

支持的传感器: Continuous Assessment, Nessus Agent, Tenable Cloud Security, Tenable Self-Hosted Container Security, Nessus

风险信息

VPR

风险因素: Critical

分数: 9.2

百分位: 99.76

Vendor

Vendor Severity: Important

CVSS v2

风险因素: Medium

基本分数: 4.9

时间分数: 4.3

矢量: CVSS2#AV:A/AC:M/Au:S/C:P/I:P/A:P

CVSS 分数来源: CVE-2022-3534

CVSS v3

风险因素: High

基本分数: 8.2

时间分数: 7.8

矢量: CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H

时间矢量: CVSS:3.0/E:H/RL:O/RC:C

CVSS 分数来源: CVE-2023-39191

CVSS v4

风险因素: Medium

Base Score: 5.1

Threat Score: 5.1

Threat Vector: CVSS:4.0/E:A

Vector: CVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N

漏洞信息

必需的 KB 项: Host/OS/extended-third-party, Host/local_checks_enabled, Host/AlmaLinux/release, Host/AlmaLinux/rpm-list, Host/cpu

可利用: true

易利用性: Exploits are available

补丁发布日期: 2024/8/1

漏洞发布日期: 2021/7/21

可利用的方式

Core Impact

参考资料信息

CVE: CVE-2019-25162, CVE-2021-47185, CVE-2022-0480, CVE-2022-2977, CVE-2022-3534, CVE-2022-48627, CVE-2023-1074, CVE-2023-28464, CVE-2023-39191, CVE-2023-51779, CVE-2023-52477, CVE-2023-52513, CVE-2023-52520, CVE-2023-52528, CVE-2023-52594, CVE-2023-52595, CVE-2023-52667, CVE-2023-6176, CVE-2023-6546, CVE-2024-0841, CVE-2024-25742, CVE-2024-26603, CVE-2024-26610, CVE-2024-26615, CVE-2024-26664, CVE-2024-26668, CVE-2024-26743, CVE-2024-26744, CVE-2024-26779, CVE-2024-26852, CVE-2024-26872, CVE-2024-26886, CVE-2024-26897, CVE-2024-26923, CVE-2024-26964, CVE-2024-26973, CVE-2024-27014, CVE-2024-27059, CVE-2024-36270, CVE-2024-36886, CVE-2024-36897, CVE-2024-36901, CVE-2024-36902, CVE-2024-36904, CVE-2024-38586, CVE-2024-39277, CVE-2024-39494

CLSA: 2024:1722533082