Language:
https://cwe.mitre.org/data/definitions/119.html
https://cwe.mitre.org/data/definitions/131.html
https://cwe.mitre.org/data/definitions/190.html
https://cwe.mitre.org/data/definitions/200.html
https://cwe.mitre.org/data/definitions/416.html
https://access.redhat.com/security/cve/CVE-2021-4154
https://access.redhat.com/security/cve/CVE-2021-4155
https://access.redhat.com/security/cve/CVE-2022-0185
https://access.redhat.com/errata/RHSA-2022:0231
https://bugzilla.redhat.com/2034514
Severity: High
ID: 157045
File Name: redhat-RHSA-2022-0231.nasl
Version: 1.6
Type: local
Agent: unix
Family: Red Hat Local Security Checks
Published: 1/24/2022
Updated: 5/6/2022
Supported Sensors: Frictionless Assessment Agent, Frictionless Assessment AWS, Frictionless Assessment Azure, Nessus Agent
Risk Factor: Critical
Score: 9.5
Risk Factor: High
Base Score: 7.2
Temporal Score: 5.6
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C
Temporal Vector: E:POC/RL:OF/RC:C
CVSS Score Source: CVE-2022-0185
Risk Factor: High
Base Score: 8.8
Temporal Score: 7.9
Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Temporal Vector: E:P/RL:O/RC:C
CVSS Score Source: CVE-2021-4154
CPE: cpe:/o:redhat:rhel_aus:8.4, cpe:/o:redhat:rhel_eus:8.4, cpe:/o:redhat:rhel_tus:8.4, p-cpe:/a:redhat:enterprise_linux:kpatch-patch-4_18_0-305, p-cpe:/a:redhat:enterprise_linux:kpatch-patch-4_18_0-305_10_2, p-cpe:/a:redhat:enterprise_linux:kpatch-patch-4_18_0-305_12_1, p-cpe:/a:redhat:enterprise_linux:kpatch-patch-4_18_0-305_17_1, p-cpe:/a:redhat:enterprise_linux:kpatch-patch-4_18_0-305_19_1, p-cpe:/a:redhat:enterprise_linux:kpatch-patch-4_18_0-305_25_1, p-cpe:/a:redhat:enterprise_linux:kpatch-patch-4_18_0-305_28_1, p-cpe:/a:redhat:enterprise_linux:kpatch-patch-4_18_0-305_30_1, p-cpe:/a:redhat:enterprise_linux:kpatch-patch-4_18_0-305_3_1, p-cpe:/a:redhat:enterprise_linux:kpatch-patch-4_18_0-305_7_1
Required KB Items: Host/local_checks_enabled, Host/RedHat/release, Host/RedHat/rpm-list, Host/cpu
Exploit Available: true
Exploit Ease: Exploits are available
Patch Publication Date: 1/24/2022
Vulnerability Publication Date: 1/11/2021