[Important] [Security] Virtuozzo ReadyKernel patch 146.1 for Virtuozzo Server 7.5

Issue date: 2022-08-22

Applies to: Virtuozzo Server 7.5

Virtuozzo Advisory ID: VZA-2022-027

1. Overview

The cumulative Virtuozzo ReadyKernel patch was updated with security fixes. The patch applies to all supported kernels of Virtuozzo Server 7.5.

2. Security Fixes

  • [Important] [3.10.0-1160.21.1.vz7.174.13 to 3.10.0-1160.53.1.vz7.185.3] Calling kfree_skb from hardware interrupt may cause deadlock. (PSBM-141642)
  • [Important] [3.10.0-1160.21.1.vz7.174.13 to 3.10.0-1160.53.1.vz7.185.3] Reading data from partially written XFS file block. (CVE-2021-4155)
  • [Important] [3.10.0-1160.21.1.vz7.174.13 to 3.10.0-1160.53.1.vz7.185.3] Use after free for file descriptor table for vmwgfx. (CVE-2022-22942)
  • [Important] [3.10.0-1160.21.1.vz7.174.13 to 3.10.0-1160.53.1.vz7.185.3] Kernel buffers data leak or race in intel GPU driver. (CVE-2022-0330)

3. Installing the Update

Download, install, and immediately apply the patch to the current kernel by running readykernel update.

4. References

The new and updated packages are listed in the JSON file.