The vendor explicitly identifies these products as affected by this CVE.
- kernel-rt as a component of Red Hat Enterprise Linux 9
- kernel-rt-core as a component of Red Hat Enterprise Linux 9
- kernel-rt-debug as a component of Red Hat Enterprise Linux 9
- kernel-rt-debug-core as a component of Red Hat Enterprise Linux 9
- kernel-rt-debug-devel as a component of Red Hat Enterprise Linux 9
- kernel-rt-debug-devel-matched as a component of Red Hat Enterprise Linux 9
- kernel-rt-debug-kvm as a component of Red Hat Enterprise Linux 9
- kernel-rt-debug-modules as a component of Red Hat Enterprise Linux 9
- kernel-rt-debug-modules-core as a component of Red Hat Enterprise Linux 9
- kernel-rt-debug-modules-extra as a component of Red Hat Enterprise Linux 9
- kernel-rt-debug-modules-internal as a component of Red Hat Enterprise Linux 9
- kernel-rt-debug-modules-partner as a component of Red Hat Enterprise Linux 9
- Summary
- A flaw was found in the Linux kernel's netfilter nf_tables component. During set element addition, an error path incorrectly decrements the chain reference counter twice. This reference count underflow could potentially lead to a use-after-free condition when the chain is subsequently freed while still in use.
- Remediation
- For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 The system must be rebooted for this update to take effect.
