AlmaLinux 9.2 [TuxCare] 安全性更新:bpftool / kernel / kernel-abi-stablelists / kernel-core / etc 多個弱點 (ALMALINUX9.2:CLSA-2024:1722533082)

medium Nessus Plugin ID 352344

概要

AlmaLinux 主機缺少一或多個安全性更新。

說明

AlmaLinux 9.2 主機已安裝的套件會受到 TuxCare ALMALINUX9.2:CLSA-2024:1722533082 公告中提及的多個弱點影響。

- 已解決 Linux 核心中的下列弱點:i2c: Fix a potential use after free Free the adap structure only after we are done using it. This patch just moves the put_device() down a bit to avoid the use after free. [wsa: added comment to the code, added Fixes tag] (CVE-2019-25162)

- 已解決 Linux 核心中的下列弱點:tty: tty_buffer: Fix the softlockup issue in flush_to_ldisc When running ltp testcase(ltp/testcases/kernel/pty/pty04.c) with arm64, there is a soft lockup, which look like this one: Workqueue: events_unbound flush_to_ldisc Call trace:
dump_backtrace+0x0/0x1ec show_stack+0x24/0x30 dump_stack+0xd0/0x128 panic+0x15c/0x374 watchdog_timer_fn+0x2b8/0x304 __run_hrtimer+0x88/0x2c0 __hrtimer_run_queues+0xa4/0x120 hrtimer_interrupt+0xfc/0x270 arch_timer_handler_phys+0x40/0x50 handle_percpu_devid_irq+0x94/0x220
__handle_domain_irq+0x88/0xf0 gic_handle_irq+0x84/0xfc el1_irq+0xc8/0x180 slip_unesc+0x80/0x214 [slip] tty_ldisc_receive_buf+0x64/0x80 tty_port_default_receive_buf+0x50/0x90 flush_to_ldisc+0xbc/0x110 process_one_work+0x1d4/0x4b0 worker_thread+0x180/0x430 kthread+0x11c/0x120 In the testcase pty04, The first process call the write syscall to send data to the pty master. At the same time, the workqueue will do the flush_to_ldisc to pop data in a loop until there is no more data left. When the sender and workqueue running in different core, the sender sends data fastly in full time which will result in workqueue doing work in loop for a long time and occuring softlockup in flush_to_ldisc with kernel configured without preempt. So I add need_resched check and cond_resched in the flush_to_ldisc loop to avoid it. (CVE-2021-47185)

- 据發現,在 Linux 核心的 fs/locks.c 函式中,filelock_init 有一個瑕疵。此問題可導致主機記憶體耗盡,造成此問題的原因是 memcg 未限制可攜式作業系統介面 (POSIX) 檔案鎖定的數量。(CVE-2022-0480)

- 在代理虛擬化 TPM 裝置的 Linux 核心實作中發現缺陷。在已設定虛擬化 TPM 裝置的系統上 (非預設設定),本機攻擊者可建立釋放後使用情形,並造成可在系統上提升權限的狀況。 (CVE-2022-2977)

- 在 Linux 核心 5.10.162中發現一個弱點,直到 /5.15.85/6.0.15/6.1.1。受影響的元素是元件 libbpf 的檔案 tools/lib/bpf/btf_dump.c 的函式btf_dump_name_dups。操控此弱點可導致釋放後使用。升級至版本 5.10.163、 5.15.86、 6.0.16和 6.1.26.2 就足以解決此問題。修補程式的識別碼是 c61650b869e0b6fb0c0a28ed42d928eea969afc8/ fbe08093fb2334549859829ef81d42570812597d/8c64a8e76eb85d422af5ec60ccbf26e3ead8c333/a733bf10198eb5bb92789094 0de8ab457491ed3b/93c660ca40b5d2f7c1b1626e955a8e9fa30e0749。您應升級受影響的元件。
(CVE-2022-3534)

請注意,Nessus 並未測試這些問題,而是僅依據應用程式自我報告的版本號碼作出判斷。

解決方案

根據 TuxCare 公告 ALMALINUX9.2:CLSA-2024:1722533082 中的指引更新受影響的套件。

另請參閱

https://cve.tuxcare.com/els/releases/CLSA-2024:1722533082

http://www.nessus.org/u?28dc12ee

Plugin 詳細資訊

嚴重性: Medium

ID: 352344

檔案名稱: tuxcare_alma_linux_9.2_CLSA-2024-1722533082.nasl

版本: 1.2

類型: Local

已發布: 2026/9/30

已更新: 2026/10/1

支援的感應器: Continuous Assessment, Nessus Agent, Tenable Cloud Security, Tenable Self-Hosted Container Security, Nessus

風險資訊

VPR

風險因素: Critical

分數: 9.2

百分位數: 99.76

Vendor

Vendor Severity: Important

CVSS v2

風險因素: Medium

基本分數: 4.9

時間性分數: 4.3

媒介: CVSS2#AV:A/AC:M/Au:S/C:P/I:P/A:P

CVSS 評分資料來源: CVE-2022-3534

CVSS v3

風險因素: High

基本分數: 8.2

時間性分數: 7.8

媒介: CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H

時間媒介: CVSS:3.0/E:H/RL:O/RC:C

CVSS 評分資料來源: CVE-2023-39191

CVSS v4

風險因素: Medium

Base Score: 5.1

Threat Score: 5.1

Threat Vector: CVSS:4.0/E:A

Vector: CVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N

弱點資訊

必要的 KB 項目: Host/OS/extended-third-party, Host/local_checks_enabled, Host/AlmaLinux/release, Host/AlmaLinux/rpm-list, Host/cpu

可被惡意程式利用: true

可輕鬆利用: Exploits are available

修補程式發佈日期: 2024/8/1

弱點發布日期: 2021/7/21

可惡意利用

Core Impact

參考資訊

CVE: CVE-2019-25162, CVE-2021-47185, CVE-2022-0480, CVE-2022-2977, CVE-2022-3534, CVE-2022-48627, CVE-2023-1074, CVE-2023-28464, CVE-2023-39191, CVE-2023-51779, CVE-2023-52477, CVE-2023-52513, CVE-2023-52520, CVE-2023-52528, CVE-2023-52594, CVE-2023-52595, CVE-2023-52667, CVE-2023-6176, CVE-2023-6546, CVE-2024-0841, CVE-2024-25742, CVE-2024-26603, CVE-2024-26610, CVE-2024-26615, CVE-2024-26664, CVE-2024-26668, CVE-2024-26743, CVE-2024-26744, CVE-2024-26779, CVE-2024-26852, CVE-2024-26872, CVE-2024-26886, CVE-2024-26897, CVE-2024-26923, CVE-2024-26964, CVE-2024-26973, CVE-2024-27014, CVE-2024-27059, CVE-2024-36270, CVE-2024-36886, CVE-2024-36897, CVE-2024-36901, CVE-2024-36902, CVE-2024-36904, CVE-2024-38586, CVE-2024-39277, CVE-2024-39494

CLSA: 2024:1722533082