[Important] [Security] Virtuozzo ReadyKernel Patch 160.0 for Virtuozzo Server 7.5

Issue date: 2023-08-25

Applies to: Virtuozzo Server 7.5

Virtuozzo Advisory ID: VZA-2023-024

1. Overview

The cumulative Virtuozzo ReadyKernel patch was updated with security fixes. The patch applies to all supported kernels of Virtuozzo Server 7.5. NOTE: As the kernel 3.10.0-1160.41.1.vz7.183.5 has reached the end of its support period, no more ReadyKernel updates are planned for it.

2. Security Fixes

  • [Important] [3.10.0-1160.41.1.vz7.183.5 to 3.10.0-1160.80.1.vz7.191.4] A null-pointer dereference after mounting a special UDF filesystem image. (CVE-2022-0617)
  • [Important] [3.10.0-1160.41.1.vz7.183.5 to 3.10.0-1160.80.1.vz7.191.4] RDMA connection is not stable enough because of the low default retry counter. (RK-352)

3. Installing the Update

Download, install, and immediately apply the patch to the current kernel by running readykernel update.

4. References

The new and updated packages are listed in the JSON file.