[Ksplice][EL8-Updates] New Ksplice updates for OL 8 and RHEL 8 (ELSA-2023-3349)

Oracle Ksplice quentin.casasnovas at oracle.com
Thu Jun 15 08:06:21 UTC 2023

Synopsis: ELSA-2023-3349 can now be patched using Ksplice
CVEs: CVE-2023-32233

Systems running RHCK on Oracle Linux 8 and Red Hat Enterprise Linux 8
can now use Ksplice to patch against the latest Red Hat kernel update,
More information about this errata can be found at


We recommend that all users of Ksplice Uptrack running OL 8 and RHEL 8
install these updates.

On systems that have "autoinstall = yes" in /etc/uptrack/uptrack.conf,
these updates will be installed automatically and you do not need to
take any action.

Alternatively, you can install these updates by running:

# /usr/sbin/uptrack-upgrade -y


* CVE-2023-32233: Use-after-free in Netfilter nf_tables packet classification framework.

Incorrect handling of anonymous sets in the Netfilter nf_tables packet
classification framework can lead to a use-after-free.  This can allow a
local unprivileged user to perform arbitrary access to kernel memory and
escalate privileges.


Ksplice support is available at ksplice-support_ww at oracle.com.

More information about the Ksplice-EL8-updates mailing list