Rocky Linux 8 [CIQ] セキュリティ更新:bpftool/bpftool-debuginfo/kernel/kernel-abi-stablelists/etcの複数の脆弱性(crlsa-2022_7683)

high Nessus プラグイン ID 357859

概要

Rocky Linuxホストに1つ以上のセキュリティ更新プログラムがありません。

説明

Rocky Linux 8ホストには、CIQ crlsa-2022_7683 アドバイザリに記載された複数の脆弱性の影響を受けるパッケージがインストールされています。

* オフパスの攻撃者が、データを注入したり、被害者の TCP セッションを終了させたりする可能性があります(CVE-2020-36516)

* vc_cons[i].d がすでに NULL である場合の VT_RESIZEX ioctl の競合状態により、NULL ポインターデリファレンスが引き起こされます(CVE-2020-36558)

* 関数 sco_sock_sendmsg() における use-after-free の脆弱性(CVE-2021-3640)

* drivers/media/v4l2-core/v4l2-ioctl.c の video_usercopy 関数の大きな引数のメモリリーク(CVE-2021-30002)

* smb2_ioctl_query_info NULL ポインターデリファレンス(CVE-2022-0168)

* writeback 中の udf_expand_file_adinicbdue() における NULL ポインターデリファレンス(CVE-2022-0617)

* DMA_FROM_DEVICEによる swiotlb の情報漏洩(CVE-2022-0854)

* nft_do_chain のスタック上の初期化されていないレジスタにより、UM へのカーネルポインター漏洩が発生する可能性があります(CVE-2022-1016)

* use-after-free(CVE-2022-1048)につながるsnd_pcm_hw_freeの競合状態

* net/sched/cls_api.c の tc_new_tfilter() における use-after-free(CVE-2022-1055)

* 破損したイメージをマウントし操作した場合の ext4 における use-after-free およびメモリエラー(CVE-2022-1184)

* x86_emulate_insn の NULL ポインターデリファレンスにより、DoS が発生する可能性があります(CVE-2022-1852)

* nft_set_desc_concat_parse() でのバッファオーバーフロー (CVE-2022-2078)

* クロステーブルnf_tables潜在的な use-after-free により、ローカルの権限昇格(CVE-2022-2586)が引き起こされる可能性があります

* openvswitch:整数アンダーフローにより、reserve_sfa_size() で領域外書き込みが発生します(CVE-2022-2639)

* ポーリング中に PSI トリガーが破棄された際の use-after-free(CVE-2022-2938)

* net/packet:packet_recvmsg() のスラブ領域外アクセス(CVE-2022-20368)

* デバッガーを使用して、選択した場所にゼロを書き込むことが可能(CVE-2022-21499)

* Spectre-BHB(CVE-2022-23960)

* ポストバリアリターンスタックバッファ予測(CVE-2022-26373)

* drivers/hid/hid-elo.c におけるメモリリーク(CVE-2022-27950)

* drivers/net/can/usb/ems_usb.c の ems_usb_start_xmit における二重解放(CVE-2022-28390)

* SUNRPC サブシステムでの use-after-free(CVE-2022-28893)

* net/sched/cls_u32.c の参照カウントの不適切な更新による use-after-free(CVE-2022-29581)

* net/netfilter/nfnetlink_queue.c の nfqnl_mangle における DoS(CVE-2022-36946)

* nfs_atomic_open() が ENOTDIR の代わりに初期化されていないデータを返します(CVE-2022-24448)

Tenableは、前述の記述ブロックをCIQセキュリティアドバイザリから直接抽出しています。

Nessus はこれらの問題をテストしておらず、代わりにアプリケーションが自己報告するバージョン番号にのみ依存していることに注意してください。

ソリューション

CIQアドバイザリ crlsa-2022_7683のガイダンスに基づいて、影響を受けるパッケージを更新してください。

参考資料

https://access.redhat.com/errata/RHSA-2022:7683

https://bugzilla.redhat.com/show_bug.cgi?id=1946279

https://bugzilla.redhat.com/show_bug.cgi?id=1948442

https://bugzilla.redhat.com/show_bug.cgi?id=1977993

https://bugzilla.redhat.com/show_bug.cgi?id=1978539

https://bugzilla.redhat.com/show_bug.cgi?id=1980646

https://bugzilla.redhat.com/show_bug.cgi?id=2004037

https://bugzilla.redhat.com/show_bug.cgi?id=2019942

https://bugzilla.redhat.com/show_bug.cgi?id=2037386

https://bugzilla.redhat.com/show_bug.cgi?id=2042424

https://bugzilla.redhat.com/show_bug.cgi?id=2044837

https://bugzilla.redhat.com/show_bug.cgi?id=2051444

https://bugzilla.redhat.com/show_bug.cgi?id=2053632

https://bugzilla.redhat.com/show_bug.cgi?id=2056383

https://bugzilla.redhat.com/show_bug.cgi?id=2058369

https://bugzilla.redhat.com/show_bug.cgi?id=2058395

https://bugzilla.redhat.com/show_bug.cgi?id=2059928

https://bugzilla.redhat.com/show_bug.cgi?id=2062284

https://bugzilla.redhat.com/show_bug.cgi?id=2062780

https://bugzilla.redhat.com/show_bug.cgi?id=2066614

https://bugzilla.redhat.com/show_bug.cgi?id=2066706

https://bugzilla.redhat.com/show_bug.cgi?id=2066976

https://bugzilla.redhat.com/show_bug.cgi?id=2069408

https://bugzilla.redhat.com/show_bug.cgi?id=2069472

https://bugzilla.redhat.com/show_bug.cgi?id=2070205

https://bugzilla.redhat.com/show_bug.cgi?id=2070220

https://bugzilla.redhat.com/show_bug.cgi?id=2072552

https://bugzilla.redhat.com/show_bug.cgi?id=2073064

https://bugzilla.redhat.com/show_bug.cgi?id=2074208

https://bugzilla.redhat.com/show_bug.cgi?id=2074317

https://bugzilla.redhat.com/show_bug.cgi?id=2080095

https://bugzilla.redhat.com/show_bug.cgi?id=2084183

https://bugzilla.redhat.com/show_bug.cgi?id=2084479

https://bugzilla.redhat.com/show_bug.cgi?id=2088021

https://bugzilla.redhat.com/show_bug.cgi?id=2089815

https://bugzilla.redhat.com/show_bug.cgi?id=2090940

https://bugzilla.redhat.com/show_bug.cgi?id=2091539

https://bugzilla.redhat.com/show_bug.cgi?id=2096178

https://bugzilla.redhat.com/show_bug.cgi?id=2100259

https://bugzilla.redhat.com/show_bug.cgi?id=2107594

https://bugzilla.redhat.com/show_bug.cgi?id=2109327

https://bugzilla.redhat.com/show_bug.cgi?id=2112693

https://bugzilla.redhat.com/show_bug.cgi?id=2114577

https://bugzilla.redhat.com/show_bug.cgi?id=2114878

https://bugzilla.redhat.com/show_bug.cgi?id=2115065

https://bugzilla.redhat.com/show_bug.cgi?id=2115278

https://bugzilla.redhat.com/show_bug.cgi?id=2120175

https://bugzilla.redhat.com/show_bug.cgi?id=2123695

https://errata.build.resf.org/RLSA-2022:7683

http://www.nessus.org/u?490eccea

http://www.nessus.org/u?8494173d

プラグインの詳細

深刻度: High

ID: 357859

ファイル名: ciq_rocky_linux_8_crlsa-2022_7683.nasl

バージョン: 1.2

タイプ: Local

公開日: 2026/10/1

更新日: 2026/10/2

サポートされているセンサー: Continuous Assessment, Nessus Agent, Tenable Cloud Security, Tenable Self-Hosted Container Security, Nessus

リスク情報

VPR

リスクファクター: High

スコア: 7.9

パーセンタイル: 99.35

Vendor

Vendor Severity: Unknown

CVSS v2

リスクファクター: High

基本値: 7.2

現状値: 6.3

ベクトル: CVSS2#AV:L/AC:L/Au:N/C:C/I:C/A:C

CVSS スコアのソース: CVE-2022-29581

CVSS v3

リスクファクター: High

基本値: 7.8

現状値: 7.5

ベクトル: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

現状ベクトル: CVSS:3.0/E:H/RL:O/RC:C

CVSS v4

リスクファクター: High

Base Score: 8.6

Threat Score: 8.6

Threat Vector: CVSS:4.0/E:A

Vector: CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:N/SC:H/SI:H/SA:N

CVSS スコアのソース: CVE-2022-1055

脆弱性情報

必要な KB アイテム: Host/OS/extended-third-party, Host/local_checks_enabled, Host/RockyLinux/release, Host/RockyLinux/rpm-list, Host/cpu

エクスプロイトが利用可能: true

エクスプロイトの容易さ: Exploits are available

パッチ公開日: 2022/11/8

脆弱性公開日: 2021/3/26

CISA の既知の悪用された脆弱性の期限日: 2024/7/17

参照情報

CVE: CVE-2020-36516, CVE-2020-36558, CVE-2021-30002, CVE-2021-3640, CVE-2022-0168, CVE-2022-0617, CVE-2022-0854, CVE-2022-1016, CVE-2022-1048, CVE-2022-1055, CVE-2022-1184, CVE-2022-1852, CVE-2022-20368, CVE-2022-2078, CVE-2022-21499, CVE-2022-23960, CVE-2022-24448, CVE-2022-2586, CVE-2022-26373, CVE-2022-2639, CVE-2022-27950, CVE-2022-28390, CVE-2022-28893, CVE-2022-2938, CVE-2022-29581, CVE-2022-36946