CentOS Linux 8 [TuxCare] セキュリティ更新プログラム:bpftool/kernel/kernel-core/kernel-cross-headers/etcの複数の脆弱性(CENTOS-STREAM8:CLSA-2026:1780132980)

high Nessus プラグイン ID 362073

概要

CentOS Linuxホストに1つ以上のセキュリティ更新プログラムがありません。

説明

CentOS Linux 8ホストには、TuxCare CENTOS-STREAM8:CLSA-2026:1780132980アドバイザリに記載されている複数の脆弱性の影響を受けるパッケージがインストールされています。

- 以前の Linux カーネルの kernel/module.c は、署名検証 (別名 CID- 5.12.14 0c18f29aae7c) を不適切に処理します。CONFIG_MODULE_SIG がないと、module.sig_enforce=1 コマンドライン引数に対して、カーネルモジュールが init_module を介してロードするために署名されていることが検証されません。(CVE-2021-35039)

- 5.13.4 より前の Linux カーネルの drivers/char/virtio_console.c で、バッファサイズを超える buf->len 値を提供する信頼できないデバイスによって、データ破損または損失が発生する可能性があります。注意: ベンダーは、引用されているデータ破損が、既存の任意のユースケースで、脆弱性ではないと指摘しています。長さ検証が追加されたのは、ホスト OS の異常な動作に直面した際の堅牢性のみを目的としていたからです。(CVE-2021-38160)

- Linux カーネルの net/bluetooth/l2cap_core.c の l2cap_connect および l2cap_le_connect_req 関数にメモリ解放後使用 (Use After Free) の脆弱性があり、Bluetooth を介してリモートでコードの実行やカーネルメモリを (それぞれ) 漏洩できるようにする可能性があります。リモート攻撃者は、被害者の近くにいる場合、Bluetooth を介してカーネルメモリを漏洩するコードを実行する可能性があります。過去のコミット https://www.google.com/urlhttps://github.com/torvalds/linux/commit/711f8c3fb3db61897080468586b970c87c61d9e4 https://www.google.com/urlをアップグレードすることをお勧めします (CVE-2022-42896)

- Linux カーネルでは、以下の脆弱性が解決されています: tracing: Fix potential double free in create_var_ref() In create_var_ref(), init_var_ref() is called to initialize the fields of variable ref_field, which is allocated in the previous function call to create_hist_field(). Function init_var_ref() allocates the corresponding fields such as ref_field->system, but frees these fields when the function encounters an error. The caller later calls destroy_hist_field() to conduct error handling, which frees the fields and the variable itself. This results in double free of the fields which are already freed in the previous function. Fix this by storing NULL to the corresponding fields when they are freed in init_var_ref(). (CVE-2022-49410)

- Linux カーネルでは、以下の脆弱性が解決されています: HID: elan: Fix potential double free in elan_input_configured 'input' is a managed resource allocated with devm_input_allocate_device(), so there is no need to call input_free_device() explicitly or there will be a double free. According to the doc of devm_input_allocate_device(): * Managed input devices do not need to be explicitly unregistered or
* freed as it will be done automatically when owner device unbinds from * its driver (or binding fails).
(CVE-2022-49508)

Nessus はこれらの問題をテストしておらず、代わりにアプリケーションが自己報告するバージョン番号にのみ依存していることに注意してください。

ソリューション

TuxCareアドバイザリCENTOS-STREAM8:CLSA-2026:1780132980のガイダンスに基づいて、影響を受けるパッケージを更新してください。

参考資料

https://cve.tuxcare.com/els/releases/CLSA-2026:1780132980

http://www.nessus.org/u?78268d5f

プラグインの詳細

深刻度: High

ID: 362073

ファイル名: tuxcare_centos_8_CLSA-2026-1780132980.nasl

バージョン: 1.2

タイプ: Local

エージェント: unix

公開日: 2026/10/1

更新日: 2026/10/2

サポートされているセンサー: Continuous Assessment, Nessus Agent, Tenable Cloud Security, Tenable Self-Hosted Container Security, Nessus

リスク情報

VPR

リスクファクター: High

スコア: 7.9

パーセンタイル: 99.35

Vendor

Vendor Severity: Important

CVSS v2

リスクファクター: High

基本値: 7.2

現状値: 6.3

ベクトル: CVSS2#AV:L/AC:L/Au:N/C:C/I:C/A:C

CVSS スコアのソース: CVE-2021-38160

CVSS v3

リスクファクター: High

基本値: 8.8

現状値: 8.4

ベクトル: CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

現状ベクトル: CVSS:3.0/E:H/RL:O/RC:C

CVSS スコアのソース: CVE-2022-42896

脆弱性情報

必要な KB アイテム: Host/OS/extended-third-party, Host/local_checks_enabled, Host/CentOS/release, Host/CentOS/rpm-list

エクスプロイトが利用可能: true

エクスプロイトの容易さ: Exploits are available

パッチ公開日: 2026/5/30

脆弱性公開日: 2021/7/7

参照情報

CVE: CVE-2021-35039, CVE-2021-38160, CVE-2022-42896, CVE-2022-49410, CVE-2022-49508, CVE-2022-49870, CVE-2022-49907, CVE-2022-49917, CVE-2022-49948, CVE-2022-50200, CVE-2022-50315, CVE-2022-50366, CVE-2022-50432, CVE-2022-50497, CVE-2023-52475, CVE-2023-52531, CVE-2023-52741, CVE-2023-52867, CVE-2023-52868, CVE-2023-52988, CVE-2023-53000, CVE-2023-53019, CVE-2023-53075, CVE-2023-53116, CVE-2023-53285, CVE-2023-53307, CVE-2023-53321, CVE-2023-53338, CVE-2023-53506, CVE-2023-53570, CVE-2023-53622, CVE-2023-53646, CVE-2023-53668, CVE-2024-46812, CVE-2025-68741, CVE-2025-71093, CVE-2025-71116, CVE-2026-23216, CVE-2026-23388, CVE-2026-31602, CVE-2026-31778, CVE-2026-43020, CVE-2026-43040, CVE-2026-43206, CVE-2026-43450, CVE-2026-46243

CLSA: 2026:1780132980