Any news when kernel addressing CVE-2021-33909 will be available ?
[root@vicb-submit-01 ~]# cat /etc/centos-release ; uname -a ; yum check-update
CentOS Linux release 7.9.2009 (Core)
Linux vicb-submit-01.scidom.de 3.10.0-1160.36.2.el7.x86_64 #1 SMP Wed Jul 21 11:57:15 UTC 2021 x86_64 x86_64 x86_64 GNU/Linux
Loaded plugins: fastestmirror, langpacks
Loading mirror speeds from cached hostfile
* base: ftp.plusline.net
* epel: scientificlinux.physik.uni-muenchen.de
* extras: ftp.fau.de
* updates: ftp.fau.de
IGNORE this query
================
[root@vicb-submit-01 ~]# rpm -q --changelog kernel-3.10.0-1160.36.2.el7.x86_64 |grep CVE |head -10
- media: xirlink_cit: add missing descriptor sanity checks (Mark Langsdorf) [1826877] {CVE-2020-11668}
- Bluetooth: verify AMP hci_chan before amp_destroy (Gopal Tiwari) [1962532] {CVE-2021-33034}
- sched/fair: Use RCU accessors consistently for ->numa_group (Rafael Aquini) [1915635] {CVE-2019-20934}
- sched/fair: Don't free p->numa_faults with concurrent readers (Rafael Aquini) [1915635] {CVE-2019-20934}
- sched/numa: Simplify task_numa_compare() (Rafael Aquini) [1915635] {CVE-2019-20934}
- sched/numa: Fix task_numa_free() lockdep splat (Rafael Aquini) [1915635] {CVE-2019-20934}
but as Trevorti mentioned changelog did not mention the CVE just description
[root@vicb-submit-01 ~]# rpm -q --changelog kernel-3.10.0-1160.36.2.el7.x86_64 | head -10
* Wed Jul 07 2021 Augusto Caringi <
acaringi@redhat.com> [3.10.0-1160.36.2.el7]
- seq_file: Disallow extremely large seq buffer allocations (Ian Kent) [1975251]
* Wed Jul 07 2021 Augusto Caringi <
acaringi@redhat.com> [3.10.0-1160.36.1.el7]
- cipso,calipso: resolve a number of problems with the DOI refcounts (Antoine Tenart) [1967720]
- net: ethernet: mlx4: Fix memory allocation in mlx4_buddy_init() (Alaa Hleihel) [1962406]
- sched/debug: Fix cgroup_path[] serialization (Waiman Long) [1912221]
- sched/debug: Reset watchdog on all CPUs while processing sysrq-t (Waiman Long) [1912221]
- vt: vt_ioctl: fix use-after-free in vt_in_use() (Vladis Dronov) [1872778]