CVE-2024-0193
Estado: AnalizadaMedia (6.7)—
A use-after-free flaw was found in the netfilter subsystem of the Linux kernel. If the catchall element is garbage-collected when the pipapo set is removed, the element can be deactivated twice. This can cause a use-after-free issue on an NFT_CHAIN object or NFT_OBJECT object, allowing a local unprivileged user with CAP_NET_ADMIN capability to escalate their privileges on the system.
CVSS
- Versión: 3.1
- Vector: CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
- Puntuación base: 6.7
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 0.84%
- Percentil entre todas las CVEs puntuadas: 57
- Fecha de la puntuación: 5/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (22)
Linux — Linux KernelRedhat — Codeready Linux BuilderRedhat — Codeready Linux Builder FOR EUSRedhat — Codeready Linux Builder FOR IBM Z SystemsRedhat — Codeready Linux Builder FOR IBM Z Systems EUSRedhat — Codeready Linux Builder FOR Power Little EndianRedhat — Codeready Linux Builder FOR Power Little Endian EUSRedhat — Enterprise LinuxRedhat — Enterprise Linux FOR ARM 64Redhat — Enterprise Linux FOR ARM 64 ELSRedhat — Enterprise Linux FOR ARM 64 EUSRedhat — Enterprise Linux FOR ELSRedhat — Enterprise Linux FOR EUSRedhat — Enterprise Linux FOR IBM Z SystemsRedhat — Enterprise Linux FOR IBM Z Systems ELSRedhat — Enterprise Linux FOR IBM Z Systems EUSRedhat — Enterprise Linux FOR Power Little Endian ELSRedhat — Enterprise Linux FOR Power Little Endian EUSRedhat — Enterprise Linux FOR Update Services FOR SAP SolutionsRedhat — Enterprise Linux Server AUSRedhat — Enterprise Linux Server FOR Power Little Endian Update Services FOR SAP SolutionsRedhat — Openshift Logging
CWE
- CWE-416
- CWE-416
Referencias
- https://access.redhat.com/errata/RHSA-2024:1018
- https://access.redhat.com/errata/RHSA-2024:1019
- https://access.redhat.com/errata/RHSA-2024:1248
- https://access.redhat.com/errata/RHSA-2024:2094
- https://access.redhat.com/errata/RHSA-2024:4412
- https://access.redhat.com/errata/RHSA-2024:4415
- https://access.redhat.com/security/cve/CVE-2024-0193
- https://bugzilla.redhat.com/show_bug.cgi?id=2255653
- https://access.redhat.com/errata/RHSA-2024:1018
- https://access.redhat.com/errata/RHSA-2024:1019
- https://access.redhat.com/errata/RHSA-2024:1248
- https://access.redhat.com/errata/RHSA-2024:2094
- https://access.redhat.com/errata/RHSA-2024:4412
- https://access.redhat.com/errata/RHSA-2024:4415
- https://access.redhat.com/security/cve/CVE-2024-0193
- https://bugzilla.redhat.com/show_bug.cgi?id=2255653
JSON original (NVD)
Mostrar
{
"id": "CVE-2024-0193",
"cveTags": [],
"metrics": {
"ssvcV203": [
{
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"ssvcData": {
"id": "CVE-2024-0193",
"role": "CISA Coordinator",
"options": [
{
"exploitation": "poc"
},
{
"automatable": "no"
},
{
"technicalImpact": "total"
}
],
"version": "2.0.3",
"timestamp": "2024-07-02T13:17:27.203202Z"
}
}
],
"cvssMetricV31": [
{
"type": "Secondary",
"source": "secalert@redhat.com",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.1",
"baseScore": 7.8,
"attackVector": "LOCAL",
"baseSeverity": "HIGH",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
"integrityImpact": "HIGH",
"userInteraction": "NONE",
"attackComplexity": "LOW",
"availabilityImpact": "HIGH",
"privilegesRequired": "LOW",
"confidentialityImpact": "HIGH"
},
"impactScore": 5.9,
"exploitabilityScore": 1.8
},
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.1",
"baseScore": 6.7,
"attackVector": "LOCAL",
"baseSeverity": "MEDIUM",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H",
"integrityImpact": "HIGH",
"userInteraction": "NONE",
"attackComplexity": "LOW",
"availabilityImpact": "HIGH",
"privilegesRequired": "HIGH",
"confidentialityImpact": "HIGH"
},
"impactScore": 5.9,
"exploitabilityScore": 0.8
}
]
},
"affected": [
{
"source": "secalert@redhat.com",
"affectedData": [
{
"packageName": "kernel",
"collectionURL": "https://git.kernel.org/pub/scm/linux/kernel",
"defaultStatus": "affected"
},
{
"cpes": [
"cpe:/a:redhat:enterprise_linux:9::realtime",
"cpe:/a:redhat:enterprise_linux:9::crb",
"cpe:/a:redhat:enterprise_linux:9::appstream",
"cpe:/a:redhat:enterprise_linux:9::nfv",
"cpe:/o:redhat:enterprise_linux:9::baseos"
],
"vendor": "Red Hat",
"product": "Red Hat Enterprise Linux 9",
"versions": [
{
"status": "unaffected",
"version": "0:5.14.0-362.24.1.el9_3",
"lessThan": "*",
"versionType": "rpm"
}
],
"packageName": "kernel",
"collectionURL": "https://access.redhat.com/downloads/content/package-browser/",
"defaultStatus": "affected"
},
{
"cpes": [
"cpe:/a:redhat:enterprise_linux:9::realtime",
"cpe:/a:redhat:enterprise_linux:9::crb",
"cpe:/a:redhat:enterprise_linux:9::appstream",
"cpe:/a:redhat:enterprise_linux:9::nfv",
"cpe:/o:redhat:enterprise_linux:9::baseos"
],
"vendor": "Red Hat",
"product": "Red Hat Enterprise Linux 9",
"versions": [
{
"status": "unaffected",
"version": "0:5.14.0-362.24.1.el9_3",
"lessThan": "*",
"versionType": "rpm"
}
],
"packageName": "kernel",
"collectionURL": "https://access.redhat.com/downloads/content/package-browser/",
"defaultStatus": "affected"
},
{
"cpes": [
"cpe:/a:redhat:rhel_e4s:9.0::appstream",
"cpe:/o:redhat:rhel_e4s:9.0::baseos"
],
"vendor": "Red Hat",
"product": "Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions",
"versions": [
{
"status": "unaffected",
"version": "0:5.14.0-70.105.1.el9_0",
"lessThan": "*",
"versionType": "rpm"
}
],
"packageName": "kernel",
"collectionURL": "https://access.redhat.com/downloads/content/package-browser/",
"defaultStatus": "affected"
},
{
"cpes": [
"cpe:/a:redhat:rhel_e4s:9.0::nfv",
"cpe:/a:redhat:rhel_e4s:9.0::realtime"
],
"vendor": "Red Hat",
"product": "Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions",
"versions": [
{
"status": "unaffected",
"version": "0:5.14.0-70.105.1.rt21.177.el9_0",
"lessThan": "*",
"versionType": "rpm"
}
],
"packageName": "kernel-rt",
"collectionURL": "https://access.redhat.com/downloads/content/package-browser/",
"defaultStatus": "affected"
},
{
"cpes": [
"cpe:/a:redhat:rhel_eus:9.2::crb",
"cpe:/o:redhat:rhel_eus:9.2::baseos",
"cpe:/a:redhat:rhel_eus:9.2::appstream"
],
"vendor": "Red Hat",
"product": "Red Hat Enterprise Linux 9.2 Extended Update Support",
"versions": [
{
"status": "unaffected",
"version": "0:5.14.0-284.55.1.el9_2",
"lessThan": "*",
"versionType": "rpm"
}
],
"packageName": "kernel",
"collectionURL": "https://access.redhat.com/downloads/content/package-browser/",
"defaultStatus": "affected"
},
{
"cpes": [
"cpe:/a:redhat:rhel_eus:9.2::realtime",
"cpe:/a:redhat:rhel_eus:9.2::nfv"
],
"vendor": "Red Hat",
"product": "Red Hat Enterprise Linux 9.2 Extended Update Support",
"versions": [
{
"status": "unaffected",
"version": "0:5.14.0-284.55.1.rt14.340.el9_2",
"lessThan": "*",
"versionType": "rpm"
}
],
"packageName": "kernel-rt",
"collectionURL": "https://access.redhat.com/downloads/content/package-browser/",
"defaultStatus": "affected"
},
{
"cpes": [
"cpe:/a:redhat:logging:5.8::el9"
],
"vendor": "Red Hat",
"product": "RHOL-5.8-RHEL-9",
"versions": [
{
"status": "unaffected",
"version": "v5.8.6-22",
"lessThan": "*",
"versionType": "rpm"
}
],
"packageName": "openshift-logging/cluster-logging-operator-bundle",
"collectionURL": "https://catalog.redhat.com/software/containers/",
"defaultStatus": "affected"
},
{
"cpes": [
"cpe:/a:redhat:logging:5.8::el9"
],
"vendor": "Red Hat",
"product": "RHOL-5.8-RHEL-9",
"versions": [
{
"status": "unaffected",
"version": "v5.8.6-11",
"lessThan": "*",
"versionType": "rpm"
}
],
"packageName": "openshift-logging/cluster-logging-rhel9-operator",
"collectionURL": "https://catalog.redhat.com/software/containers/",
"defaultStatus": "affected"
},
{
"cpes": [
"cpe:/a:redhat:logging:5.8::el9"
],
"vendor": "Red Hat",
"product": "RHOL-5.8-RHEL-9",
"versions": [
{
"status": "unaffected",
"version": "v6.8.1-407",
"lessThan": "*",
"versionType": "rpm"
}
],
"packageName": "openshift-logging/elasticsearch6-rhel9",
"collectionURL": "https://catalog.redhat.com/software/containers/",
"defaultStatus": "affected"
},
{
"cpes": [
"cpe:/a:redhat:logging:5.8::el9"
],
"vendor": "Red Hat",
"product": "RHOL-5.8-RHEL-9",
"versions": [
{
"status": "unaffected",
"version": "v5.8.6-19",
"lessThan": "*",
"versionType": "rpm"
}
],
"packageName": "openshift-logging/elasticsearch-operator-bundle",
"collectionURL": "https://catalog.redhat.com/software/containers/",
"defaultStatus": "affected"
},
{
"cpes": [
"cpe:/a:redhat:logging:5.8::el9"
],
"vendor": "Red Hat",
"product": "RHOL-5.8-RHEL-9",
"versions": [
{
"status": "unaffected",
"version": "v1.0.0-479",
"lessThan": "*",
"versionType": "rpm"
}
],
"packageName": "openshift-logging/elasticsearch-proxy-rhel9",
"collectionURL": "https://catalog.redhat.com/software/containers/",
"defaultStatus": "affected"
},
{
"cpes": [
"cpe:/a:redhat:logging:5.8::el9"
],
"vendor": "Red Hat",
"product": "RHOL-5.8-RHEL-9",
"versions": [
{
"status": "unaffected",
"version": "v5.8.6-7",
"lessThan": "*",
"versionType": "rpm"
}
],
"packageName": "openshift-logging/elasticsearch-rhel9-operator",
"collectionURL": "https://catalog.redhat.com/software/containers/",
"defaultStatus": "affected"
},
{
"cpes": [
"cpe:/a:redhat:logging:5.8::el9"
],
"vendor": "Red Hat",
"product": "RHOL-5.8-RHEL-9",
"versions": [
{
"status": "unaffected",
"version": "v0.4.0-247",
"lessThan": "*",
"versionType": "rpm"
}
],
"packageName": "openshift-logging/eventrouter-rhel9",
"collectionURL": "https://catalog.redhat.com/software/containers/",
"defaultStatus": "affected"
},
{
"cpes": [
"cpe:/a:redhat:logging:5.8::el9"
],
"vendor": "Red Hat",
"product": "RHOL-5.8-RHEL-9",
"versions": [
{
"status": "unaffected",
"version": "v5.8.6-5",
"lessThan": "*",
"versionType": "rpm"
}
],
"packageName": "openshift-logging/fluentd-rhel9",
"collectionURL": "https://catalog.redhat.com/software/containers/",
"defaultStatus": "affected"
},
{
"cpes": [
"cpe:/a:redhat:logging:5.8::el9"
],
"vendor": "Red Hat",
"product": "RHOL-5.8-RHEL-9",
"versions": [
{
"status": "unaffected",
"version": "v1.1.0-227",
"lessThan": "*",
"versionType": "rpm"
}
],
"packageName": "openshift-logging/log-file-metric-exporter-rhel9",
"collectionURL": "https://catalog.redhat.com/software/containers/",
"defaultStatus": "affected"
},
{
"cpes": [
"cpe:/a:redhat:logging:5.8::el9"
],
"vendor": "Red Hat",
"product": "RHOL-5.8-RHEL-9",
"versions": [
{
"status": "unaffected",
"version": "v5.8.1-470",
"lessThan": "*",
"versionType": "rpm"
}
],
"packageName": "openshift-logging/logging-curator5-rhel9",
"collectionURL": "https://catalog.redhat.com/software/containers/",
"defaultStatus": "affected"
},
{
"cpes": [
"cpe:/a:redhat:logging:5.8::el9"
],
"vendor": "Red Hat",
"product": "RHOL-5.8-RHEL-9",
"versions": [
{
"status": "unaffected",
"version": "v2.9.6-14",
"lessThan": "*",
"versionType": "rpm"
}
],
"packageName": "openshift-logging/logging-loki-rhel9",
"collectionURL": "https://catalog.redhat.com/software/containers/",
"defaultStatus": "affected"
},
{
"cpes": [
"cpe:/a:redhat:logging:5.8::el9"
],
"vendor": "Red Hat",
"product": "RHOL-5.8-RHEL-9",
"versions": [
{
"status": "unaffected",
"version": "v5.8.6-2",
"lessThan": "*",
"versionType": "rpm"
}
],
"packageName": "openshift-logging/logging-view-plugin-rhel9",
"collectionURL": "https://catalog.redhat.com/software/containers/",
"defaultStatus": "affected"
},
{
"cpes": [
"cpe:/a:redhat:logging:5.8::el9"
],
"vendor": "Red Hat",
"product": "RHOL-5.8-RHEL-9",
"versions": [
{
"status": "unaffected",
"version": "v5.8.6-24",
"lessThan": "*",
"versionType": "rpm"
}
],
"packageName": "openshift-logging/loki-operator-bundle",
"collectionURL": "https://catalog.redhat.com/software/containers/",
"defaultStatus": "affected"
},
{
"cpes": [
"cpe:/a:redhat:logging:5.8::el9"
],
"vendor": "Red Hat",
"product": "RHOL-5.8-RHEL-9",
"versions": [
{
"status": "unaffected",
"version": "v5.8.6-10",
"lessThan": "*",
"versionType": "rpm"
}
],
"packageName": "openshift-logging/loki-rhel9-operator",
"collectionURL": "https://catalog.redhat.com/software/containers/",
"defaultStatus": "affected"
},
{
"cpes": [
"cpe:/a:redhat:logging:5.8::el9"
],
"vendor": "Red Hat",
"product": "RHOL-5.8-RHEL-9",
"versions": [
{
"status": "unaffected",
"version": "v0.1.0-525",
"lessThan": "*",
"versionType": "rpm"
}
],
"packageName": "openshift-logging/lokistack-gateway-rhel9",
"collectionURL": "https://catalog.redhat.com/software/containers/",
"defaultStatus": "affected"
},
{
"cpes": [
"cpe:/a:redhat:logging:5.8::el9"
],
"vendor": "Red Hat",
"product": "RHOL-5.8-RHEL-9",
"versions": [
{
"status": "unaffected",
"version": "v0.1.0-224",
"lessThan": "*",
"versionType": "rpm"
}
],
"packageName": "openshift-logging/opa-openshift-rhel9",
"collectionURL": "https://catalog.redhat.com/software/containers/",
"defaultStatus": "affected"
},
{
"cpes": [
"cpe:/a:redhat:logging:5.8::el9"
],
"vendor": "Red Hat",
"product": "RHOL-5.8-RHEL-9",
"versions": [
{
"status": "unaffected",
"version": "v0.28.1-56",
"lessThan": "*",
"versionType": "rpm"
}
],
"packageName": "openshift-logging/vector-rhel9",
"collectionURL": "https://catalog.redhat.com/software/containers/",
"defaultStatus": "affected"
},
{
"cpes": [
"cpe:/o:redhat:enterprise_linux:6"
],
"vendor": "Red Hat",
"product": "Red Hat Enterprise Linux 6",
"packageName": "kernel",
"collectionURL": "https://access.redhat.com/downloads/content/package-browser/",
"defaultStatus": "unaffected"
},
{
"cpes": [
"cpe:/o:redhat:enterprise_linux:7"
],
"vendor": "Red Hat",
"product": "Red Hat Enterprise Linux 7",
"packageName": "kernel",
"collectionURL": "https://access.redhat.com/downloads/content/package-browser/",
"defaultStatus": "unaffected"
},
{
"cpes": [
"cpe:/o:redhat:enterprise_linux:7"
],
"vendor": "Red Hat",
"product": "Red Hat Enterprise Linux 7",
"packageName": "kernel-rt",
"collectionURL": "https://access.redhat.com/downloads/content/package-browser/",
"defaultStatus": "unaffected"
},
{
"cpes": [
"cpe:/o:redhat:enterprise_linux:8"
],
"vendor": "Red Hat",
"product": "Red Hat Enterprise Linux 8",
"packageName": "kernel",
"collectionURL": "https://access.redhat.com/downloads/content/package-browser/",
"defaultStatus": "unaffected"
},
{
"cpes": [
"cpe:/o:redhat:enterprise_linux:8"
],
"vendor": "Red Hat",
"product": "Red Hat Enterprise Linux 8",
"packageName": "kernel-rt",
"collectionURL": "https://access.redhat.com/downloads/content/package-browser/",
"defaultStatus": "unaffected"
},
{
"cpes": [
"cpe:/o:redhat:enterprise_linux:9"
],
"vendor": "Red Hat",
"product": "Red Hat Enterprise Linux 9",
"packageName": "kernel-rt",
"collectionURL": "https://access.redhat.com/downloads/content/package-browser/",
"defaultStatus": "affected"
}
]
}
],
"published": "2024-01-02T18:15:08.287",
"references": [
{
"url": "https://access.redhat.com/errata/RHSA-2024:1018",
"tags": [
"Vendor Advisory"
],
"source": "secalert@redhat.com"
},
{
"url": "https://access.redhat.com/errata/RHSA-2024:1019",
"tags": [
"Vendor Advisory"
],
"source": "secalert@redhat.com"
},
{
"url": "https://access.redhat.com/errata/RHSA-2024:1248",
"tags": [
"Vendor Advisory"
],
"source": "secalert@redhat.com"
},
{
"url": "https://access.redhat.com/errata/RHSA-2024:2094",
"tags": [
"Vendor Advisory"
],
"source": "secalert@redhat.com"
},
{
"url": "https://access.redhat.com/errata/RHSA-2024:4412",
"tags": [
"Vendor Advisory"
],
"source": "secalert@redhat.com"
},
{
"url": "https://access.redhat.com/errata/RHSA-2024:4415",
"tags": [
"Vendor Advisory"
],
"source": "secalert@redhat.com"
},
{
"url": "https://access.redhat.com/security/cve/CVE-2024-0193",
"tags": [
"Mitigation",
"Third Party Advisory"
],
"source": "secalert@redhat.com"
},
{
"url": "https://bugzilla.redhat.com/show_bug.cgi?id=2255653",
"tags": [
"Issue Tracking",
"Patch",
"Third Party Advisory"
],
"source": "secalert@redhat.com"
},
{
"url": "https://access.redhat.com/errata/RHSA-2024:1018",
"tags": [
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://access.redhat.com/errata/RHSA-2024:1019",
"tags": [
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://access.redhat.com/errata/RHSA-2024:1248",
"tags": [
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://access.redhat.com/errata/RHSA-2024:2094",
"tags": [
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://access.redhat.com/errata/RHSA-2024:4412",
"tags": [
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://access.redhat.com/errata/RHSA-2024:4415",
"tags": [
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://access.redhat.com/security/cve/CVE-2024-0193",
"tags": [
"Mitigation",
"Third Party Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://bugzilla.redhat.com/show_bug.cgi?id=2255653",
"tags": [
"Issue Tracking",
"Patch",
"Third Party Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Analyzed",
"weaknesses": [
{
"type": "Secondary",
"source": "secalert@redhat.com",
"description": [
{
"lang": "en",
"value": "CWE-416"
}
]
},
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "CWE-416"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "A use-after-free flaw was found in the netfilter subsystem of the Linux kernel. If the catchall element is garbage-collected when the pipapo set is removed, the element can be deactivated twice. This can cause a use-after-free issue on an NFT_CHAIN object or NFT_OBJECT object, allowing a local unprivileged user with CAP_NET_ADMIN capability to escalate their privileges on the system."
},
{
"lang": "es",
"value": "Se encontró un fallo de use after free en el subsistema netfilter del kernel de Linux. Si el elemento general se recolecta como basura cuando se retira el conjunto de pipapo, el elemento se puede desactivar dos veces. Esto puede causar un problema de use-after-free en un objeto NFT_CHAIN o NFT_OBJECT, lo que permite a un usuario local sin privilegios escalar sus privilegios en el sistema."
}
],
"lastModified": "2026-06-17T06:52:58.353",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:redhat:codeready_linux_builder_for_eus:9.2:*:*:*:*:*:x64:*",
"vulnerable": true,
"matchCriteriaId": "2131BCC9-B51F-4D45-8F40-AC8C2334B937"
},
{
"criteria": "cpe:2.3:a:redhat:codeready_linux_builder_for_ibm_z_systems_eus:9.2_s390x:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "86034E5B-BCDD-4AFD-A460-38E790F608F5"
},
{
"criteria": "cpe:2.3:a:redhat:codeready_linux_builder_for_power_little_endian_eus:9.2:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "E4A5E220-362F-4403-A4C1-C1DFDA5C356D"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux:9.2:*:*:*:*:*:arm64:*",
"vulnerable": true,
"matchCriteriaId": "4A70F5A0-D877-43A8-9FCB-ACCEB682FCA0"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_els:9.2:*:*:*:*:*:arm64:*",
"vulnerable": true,
"matchCriteriaId": "1304D083-0DC9-417E-A22B-2FAE620BC16C"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_els:9.2:*:*:*:*:*:x64:*",
"vulnerable": true,
"matchCriteriaId": "CF31F74B-4B22-45D0-A1D5-7F5F28390270"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_eus:9.2:*:*:*:*:*:arm64:*",
"vulnerable": true,
"matchCriteriaId": "452032D4-2A79-411B-AEB4-BE5DFEC40838"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_eus:9.2:*:*:*:*:*:x64:*",
"vulnerable": true,
"matchCriteriaId": "06C8CB46-0608-4F16-AEEA-43BDB9C5442F"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems:9.2_s390x:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "2E068ABB-31C2-416E-974A-95E07A2BAB0A"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_els:9.2:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "B9C00FC0-A668-4A09-B370-7A2B2B0FA245"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_eus:9.2:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "213A5029-FCF9-4EA9-AEF9-21313F6DCBD8"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_els:9.2:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "402706EC-C1EA-4C34-B524-9A22EDD0B4E0"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_eus:9.2:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "71DDE212-1018-4554-9C06-4908442DE134"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_update_services_for_sap_solutions:9.2:*:*:*:*:*:x64:*",
"vulnerable": true,
"matchCriteriaId": "4D191FCE-66B6-4469-A23C-8A8CD1A34770"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_server_aus:9.2:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "F32CA554-F9D7-425B-8F1C-89678507F28C"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions:9.2:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "FE4AEBCB-B1E6-4A6A-9E8C-DDC5A003BCB9"
}
],
"operator": "OR"
}
]
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:redhat:codeready_linux_builder:9.0:*:*:*:*:*:aarch64:*",
"vulnerable": true,
"matchCriteriaId": "7905C85D-4663-4485-99C1-202F4A7D6EBD"
},
{
"criteria": "cpe:2.3:a:redhat:codeready_linux_builder_for_eus:9.4:*:*:*:*:*:arm64:*",
"vulnerable": true,
"matchCriteriaId": "3374DDCC-EF17-4595-B046-8B13C46DE8EB"
},
{
"criteria": "cpe:2.3:a:redhat:codeready_linux_builder_for_eus:9.4:*:*:*:*:*:x64:*",
"vulnerable": true,
"matchCriteriaId": "C5330B82-312C-4F22-B123-0F4FF12E6C96"
},
{
"criteria": "cpe:2.3:a:redhat:codeready_linux_builder_for_eus:9.6:*:*:*:*:*:arm64:*",
"vulnerable": true,
"matchCriteriaId": "70DC22C1-912A-40F3-B198-613A5C9EEB28"
},
{
"criteria": "cpe:2.3:a:redhat:codeready_linux_builder_for_eus:9.6:*:*:*:*:*:x64:*",
"vulnerable": true,
"matchCriteriaId": "73DEBD3A-D316-4347-8978-A74E0AD45C28"
},
{
"criteria": "cpe:2.3:a:redhat:codeready_linux_builder_for_ibm_z_systems:9.0_s390x:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "CA3C5EAE-267F-410F-8AFA-8F5B68A9E617"
},
{
"criteria": "cpe:2.3:a:redhat:codeready_linux_builder_for_ibm_z_systems_eus:9.4_s390x:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "35232613-B8B5-4F4D-A6CD-3823C6666534"
},
{
"criteria": "cpe:2.3:a:redhat:codeready_linux_builder_for_ibm_z_systems_eus:9.6_s390x:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "1050EBC8-F338-4450-8288-62D72E82147A"
},
{
"criteria": "cpe:2.3:a:redhat:codeready_linux_builder_for_power_little_endian:9.0_ppc64le:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "7B3D7389-35C1-48C4-A9EC-2564842723C4"
},
{
"criteria": "cpe:2.3:a:redhat:codeready_linux_builder_for_power_little_endian_eus:9.4_ppc64le:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "03A1BB59-4BE6-4339-ABB7-C18B7D899FB9"
},
{
"criteria": "cpe:2.3:a:redhat:codeready_linux_builder_for_power_little_endian_eus:9.6_ppc64le:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "404D6B0B-807A-4916-9BF7-D83EB138E22F"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux:9.0:*:*:*:*:*:arm64:*",
"vulnerable": true,
"matchCriteriaId": "153FA4D1-CEA5-4D70-A452-22D492C2E419"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux:9.0:*:*:*:*:*:x64:*",
"vulnerable": true,
"matchCriteriaId": "4E76AE2B-667E-4A9A-AC4B-CC8CFA9B159E"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_arm_64:9.4_aarch64:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "DBF70805-7EBF-4731-83DB-D71F7A646B0F"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_arm_64:9.6_aarch64:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "AFE1F8AD-2192-43A4-8239-87EDC7362A82"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_arm_64_els:9.4_aarch64:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "60538FEC-F3C9-498D-B821-8EF701AC6065"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_arm_64_els:9.6_aarch64:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "ECDD85F5-2C9B-4E49-A38E-4F42A521A5FD"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_arm_64_eus:9.4_aarch64:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "01363FFA-F7A6-43FC-8D47-E67F95410095"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_arm_64_eus:9.6_aarch64:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "CA15BFFC-B8E8-4EE3-8E14-8C95DF6C99C4"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_els:9.4:*:*:*:*:*:x64:*",
"vulnerable": true,
"matchCriteriaId": "F31A5012-5583-43B6-8ADA-A241A9B7F199"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_els:9.6:*:*:*:*:*:x64:*",
"vulnerable": true,
"matchCriteriaId": "5FF5B59D-095B-4CCD-A25A-24D8F604F4D1"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_eus:9.4:*:*:*:*:*:x64:*",
"vulnerable": true,
"matchCriteriaId": "2F999647-BD65-481C-B81B-2C923921DE16"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_eus:9.6:*:*:*:*:*:x64:*",
"vulnerable": true,
"matchCriteriaId": "3E443CA6-A0B3-4182-9E05-FB75825B7323"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems:9.0_s390x:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "FB056B47-1F45-4CE4-81F6-872F66C24C29"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems:9.4_s390x:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "069180B4-BA50-4AD0-8BA9-83F8005E58BE"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems:9.6_s390x:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "D284FF58-5ED8-4F0F-80BA-4E677256994A"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_els:9.4_s390x:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "57222FF9-E026-41F5-A806-EC72011C0BAB"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_els:9.6_s390x:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "CBD6F0E5-81A4-40FB-9C45-C7EF3BE98B20"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_eus:9.4_s390x:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "F843B777-5C64-4CAE-80D6-89DC2C9515B1"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_eus:9.6_s390x:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "778ACA25-ED77-4EFC-A183-DE094C58B268"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_els:9.4_ppc64le:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "3DE9F5F5-B5F4-4477-9E8B-85CE19E603C4"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_els:9.6_ppc64le:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "B98C549F-03A1-4985-9D15-5C9FC692DF77"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_eus:9.0_ppc64le:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "62D3FD78-5B63-4A1B-B4EE-9B098844691E"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_eus:9.4_ppc64le:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "FC3CBA5D-9E5D-4C46-B37E-7BB35BE8DADB"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_eus:9.6_ppc64le:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "0516993E-CBD5-44F1-8684-7172C9ABFD0A"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_update_services_for_sap_solutions:9.4:*:*:*:*:*:x64:*",
"vulnerable": true,
"matchCriteriaId": "73116CB9-D6AC-437E-A6A3-D1388C435678"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_update_services_for_sap_solutions:9.6:*:*:*:*:*:x64:*",
"vulnerable": true,
"matchCriteriaId": "30F7CE81-6300-4C0A-BFB3-F46C4BFB064F"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_server_aus:9.4:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "39D345D3-108A-4551-A112-5EE51991411A"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_server_aus:9.6:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "0FDD919E-B7FE-4EC5-8D6B-EC9A4723D6E2"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions:9.4_ppc64le:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "3C30F155-DF7D-4195-92D9-A5B80407228D"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions:9.6_ppc64le:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "41F1A2F3-BCEF-4A8C-BA2F-DF1FF13E6179"
}
],
"operator": "OR"
}
]
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_update_services_for_sap_solutions:9.0:*:*:*:*:*:x64:*",
"vulnerable": true,
"matchCriteriaId": "6E7729C1-6066-46D7-A170-910AEEC37AD0"
}
],
"operator": "OR"
}
]
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_arm_64:9.0_aarch64:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "2F7DAD7C-9369-4A87-A1D0-4208D3AF0CDC"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems:9.0_s390x:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "FB056B47-1F45-4CE4-81F6-872F66C24C29"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_update_services_for_sap_solutions:9.0:*:*:*:*:*:x64:*",
"vulnerable": true,
"matchCriteriaId": "6E7729C1-6066-46D7-A170-910AEEC37AD0"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions:9.0_ppc64le:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "3DA48001-66CC-4E71-A944-68D7D654031E"
}
],
"operator": "OR"
}
]
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "B74A5021-B8E6-4B1F-A21B-0DAD6D285833",
"versionEndExcluding": "5.10.206",
"versionStartIncluding": "5.10.198"
},
{
"criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "50FD7341-D115-4FCB-A16B-BD33517A1197",
"versionEndExcluding": "5.15.146",
"versionStartIncluding": "5.15.118"
},
{
"criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "79C229C9-0E3B-45D7-9636-02037B96AE3D",
"versionEndExcluding": "6.1.71",
"versionStartIncluding": "6.1.35"
},
{
"criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "360CBFB3-90AA-40FE-8B78-5721CC6EBBB8",
"versionEndExcluding": "6.6.10",
"versionStartIncluding": "6.3.9"
}
],
"operator": "OR"
}
]
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:redhat:openshift_logging:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "EE6ECC2F-8F42-4468-842B-286D5DC76709",
"versionEndExcluding": "5.8.6",
"versionStartIncluding": "5.0"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux:9.0:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "7F6FB57C-2BC7-487C-96DD-132683AEB35D"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux:9.0:*:*:*:*:*:arm64:*",
"vulnerable": false,
"matchCriteriaId": "153FA4D1-CEA5-4D70-A452-22D492C2E419"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems:9.0:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "D650BFB9-4FDC-4311-8D7E-D981C8F4FA3B"
},
{
"criteria": "cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian:9.0:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "35EEDB95-DCD1-4FED-9BBB-877B2062410C"
}
],
"operator": "OR"
}
],
"operator": "AND"
}
],
"sourceIdentifier": "secalert@redhat.com"
}