Redhat Security Updates – 09 November 2022

Redhat has released security updates to address multiple vulnerabilities across multiple products.

The severity of the addressed vulnerabilities could allow the attacker to gain access, leak kernel information, gain Privileges, and cause a denial of service on the affected system.

Sample of the addressed vulnerabilities:

  1. GnuPG Libksba buffer overflow (CVE-2022-3515):
    • CVSS: 9.8
    • Attack Vector: Network
    • Attack Complexity: Low
    • Privileges Required: None
    • User Interaction: None
    • Consequences: Gain Access

  2. Linux Kernel privilege escalation (CVE-2022-2586):
    • CVSS: 7.8
    • Attack Vector: Local
    • Attack Complexity: Low
    • Privileges Required: Low
    • User Interaction: None
    • Consequences: Gain Privileges
Mitigations

The enterprise should deploy the patches as soon as the testing phase is completed.
Redhat Security Advisory.

References