The vendor explicitly identifies these products as affected by this CVE.
- bpftool as a component of Red Hat Enterprise Linux 8
- kernel as a component of Red Hat Enterprise Linux 8
- kernel-abi-stablelists as a component of Red Hat Enterprise Linux 8
- kernel-abi-whitelists as a component of Red Hat Enterprise Linux 8
- kernel-core as a component of Red Hat Enterprise Linux 8
- kernel-cross-headers as a component of Red Hat Enterprise Linux 8
- kernel-debug as a component of Red Hat Enterprise Linux 8
- kernel-debug-core as a component of Red Hat Enterprise Linux 8
- kernel-debug-devel as a component of Red Hat Enterprise Linux 8
- kernel-debug-modules as a component of Red Hat Enterprise Linux 8
- kernel-debug-modules-extra as a component of Red Hat Enterprise Linux 8
- kernel-debug-modules-internal as a component of Red Hat Enterprise Linux 8
- Summary
- A flaw was found in the Linux kernel's Block Layer BFQ I/O scheduler. A Use-After-Free (UAF) vulnerability could be triggered by a specific commit related to queue merges. This flaw could lead to a system crash, resulting in a Denial of Service (DoS).
- Remediation
- For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 The system must be rebooted for this update to take effect.
