Red Hat released updates for Red Hat Enterprise Linux 8 to fix CVE-2021-46939, a moderate-severity Linux kernel tracing flaw that can recursively acquire a spin lock when tracing is re-entered through the function graph tracer. A local attacker or user able to trigger the affected tracing conditions could cause a system deadlock and denial of service, including during suspend/resume testing. Red Hat rated the issue CVSS 5.5; RHEL 9 is not affected, while RHEL 6 and 7 are outside the affected support scope.
Red Hat also issued RHSA-2024:5439 for OpenShift Container Platform 4.15, delivering version 4.15.28 with updated container images and packages. The release remediates the Linux kernel route-management use-after-free vulnerability CVE-2024-36971, Go net/http memory-exhaustion flaw CVE-2023-45290, and Go net/netip IPv4-mapped IPv6 address-handling issue CVE-2024-24790; it also updates Kubernetes to 1.28.12. OpenShift 4.15 customers on x86_64, s390x, ppc64le, and aarch64 should upgrade through their supported release channel or the OpenShift web console.

See real exploitation activity before you spend the cycle.
2 events from the most recent confirmed update back to the earliest known activity.
Red Hat issued Important advisory RHSA-2024:5439 and released OpenShift Container Platform 4.15.28. The update fixes CVE-2024-36971, CVE-2023-45290, and CVE-2024-24790, and updates Kubernetes to version 1.28.12.
Red Hat released RHEL 8 kernel and kernel-rt updates RHSA-2024:5101 and RHSA-2024:5102 to fix CVE-2021-46939, a tracing-related deadlock that can hang systems and cause denial of service. RHEL 9 kernel packages were listed as not affected.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See real exploitation activity behind this advisory so you can triage it against everything else in the queue.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.