Проект kernel-4.18.0-553.66.1.el8_10
Имя | kernel |
---|---|
Эпоха | 0 |
Версия | 4.18.0 |
Релиз | 553.66.1.el8_10 |
Сайт | http://www.kernel.org/ |
Лицензия | GPLv2 and Redistributable, no modification permitted |
Время сборки | 2025-08-05 10:13:07 |
Хост сборки | builder-x86-02.inferitos.ru |
Краткое описание | The Linux kernel, based on version 4.18.0, heavily modified with backports |
Репозитории | BaseOS |
Полное описание | This is the package which provides the Linux kernel for MSVSphere. It is based on upstream Linux at version 4.18.0 and maintains kABI compatibility of a set of approved symbols, however it is heavily modified with backports and fixes pulled from newer upstream Linux kernel releases. This means this is not a 4.18.0 kernel anymore: it includes several components which come from newer upstream linux versions, while maintaining a well tested and stable core. Some of the components/backports that may be pulled in are: changes like updates to the core kernel (eg.: scheduler, cgroups, memory management, security fixes and features), updates to block layer, supported filesystems, major driver updates for supported hardware in MSVSphere, enhancements for enterprise customers, etc. |
Эррата | — |
×
Найдено 29 старых версий
- kernel-4.18.0-553.el8_10
- kernel-4.18.0-553.8.1.el8_10
- kernel-4.18.0-553.64.1.el8_10
- kernel-4.18.0-553.63.1.el8_10
- kernel-4.18.0-553.62.1.el8_10
- kernel-4.18.0-553.60.1.el8_10
- kernel-4.18.0-553.58.1.el8_10
- kernel-4.18.0-553.56.1.el8_10
- kernel-4.18.0-553.54.1.el8_10
- kernel-4.18.0-553.53.1.el8_10
- kernel-4.18.0-553.52.1.el8_10
- kernel-4.18.0-553.51.1.el8_10
- kernel-4.18.0-553.50.1.el8_10
- kernel-4.18.0-553.5.1.el8_10
- kernel-4.18.0-553.47.1.el8_10
- kernel-4.18.0-553.46.1.el8_10
- kernel-4.18.0-553.45.1.el8_10
- kernel-4.18.0-553.44.1.el8_10
- kernel-4.18.0-553.42.1.el8_10
- kernel-4.18.0-553.40.1.el8_10
- kernel-4.18.0-553.37.1.el8_10
- kernel-4.18.0-553.36.1.el8_10
- kernel-4.18.0-553.34.1.el8_10
- kernel-4.18.0-553.33.1.el8_10
- kernel-4.18.0-553.32.1.el8_10
- kernel-4.18.0-553.30.1.el8_10
- kernel-4.18.0-553.27.1.el8_10
- kernel-4.18.0-553.22.1.el8_10
- kernel-4.18.0-553.16.1.el8_10
Пакет | Краткое описание | Контрольная сумма SHA-256 |
---|---|---|
x86_64 | ||
bpftool-4.18.0-553.66.1.el8_10.x86_64 | Inspection and simple manipulation of eBPF programs and maps | 7dc966b15a1913e8cf3be8b7c511c4e5d37998dfd4bc98473e5da8c7d39133d8 |
kernel-4.18.0-553.66.1.el8_10.x86_64 | The Linux kernel, based on version 4.18.0, heavily modified with backports | 3e23d5542a37237251d1deea52788df9793e5925382edb6647eaae38febfda1d |
kernel-core-4.18.0-553.66.1.el8_10.x86_64 | The Linux kernel | 771bee43ddfbb61887ee739653a8655262c9e0f9ba7cc1119e17bd84c95cc539 |
kernel-cross-headers-4.18.0-553.66.1.el8_10.x86_64 | Header files for the Linux kernel for use by cross-glibc | 93d7ad1ba9dfac4b019b4cc20f50a2bc48efe985231b4323d98f892425fdb293 |
kernel-debug-4.18.0-553.66.1.el8_10.x86_64 | kernel meta-package for the debug kernel | 1dfa8d6f8c7a6d61cf0d59e4fae2afb4291dff704ff2e0462cc4fbacdf590d9c |
kernel-debug-core-4.18.0-553.66.1.el8_10.x86_64 | The Linux kernel compiled with extra debugging enabled | b072d7d1c27eb9a2601559a4a553b46e8545e8faa27ee04f4440ad9ff04d8e1a |
kernel-debug-devel-4.18.0-553.66.1.el8_10.x86_64 | Development package for building kernel modules to match the debug kernel | 75473e2de303e8835a76b42a79abf037b3c8c90751ad82fd18720fded03e2812 |
kernel-debug-modules-4.18.0-553.66.1.el8_10.x86_64 | kernel modules to match the debug-core kernel | 748e2ad9eb5fb59c4cc93a115e5c5d6d5aa40666d0a555db53f7073c3563cc20 |
kernel-debug-modules-extra-4.18.0-553.66.1.el8_10.x86_64 | Extra kernel modules to match the debug kernel | 995b79625136766d4ef05004ba5f64acb025687e6c6b362ddac01c82aadf02be |
kernel-devel-4.18.0-553.66.1.el8_10.x86_64 | Development package for building kernel modules to match the kernel | 3c7298bfa8c700bb442881ed6dbc3e07cb897861d3499afa5009111928fd2a33 |
kernel-headers-4.18.0-553.66.1.el8_10.x86_64 | Header files for the Linux kernel for use by glibc | d28d1d7d11745b7f8b7bfd17a50c6f736c2d627b7b51ab7543c6af0818b53990 |
kernel-modules-4.18.0-553.66.1.el8_10.x86_64 | kernel modules to match the core kernel | 1bdd9dd2e11fea26a8006f547ae5bf51c7b97cece43e9631f7b80791f8b12534 |
kernel-modules-extra-4.18.0-553.66.1.el8_10.x86_64 | Extra kernel modules to match the kernel | 4867a122e259b5142ea2a20f463a9cd4c33538468b28cd70aa787359c5ce7d12 |
kernel-tools-4.18.0-553.66.1.el8_10.x86_64 | Assortment of tools for the Linux kernel | 076dbe80659ee9411c031e1dd6f1c0af3ef7e55286a594dc066535ddd1109f78 |
kernel-tools-libs-4.18.0-553.66.1.el8_10.x86_64 | Libraries for the kernel-tools | 0854996b36001574ed79833321bb74f6c12ce4eb8b16a8d5d3ad64e73d715a40 |
perf-4.18.0-553.66.1.el8_10.x86_64 | Performance monitoring for the Linux kernel | 0f01f966ada767ad9dab2559dfa54cbb31272be480da8d4b0d6e9279aac81235 |
python3-perf-4.18.0-553.66.1.el8_10.x86_64 | Python bindings for apps which will manipulate perf events | 819557e19730ff0ed0f8e79417e91fe5b6ec615674bde5231c5300340607576d |
kernel-tools-libs-devel-4.18.0-553.66.1.el8_10.x86_64 | Assortment of tools for the Linux kernel | 9ee92bb1f77b36bd80e68ef49f0e4bf7ba7633abdba92542d6946ee735c892fb |
noarch | ||
kernel-abi-stablelists-4.18.0-553.66.1.el8_10.noarch | The MSVSphere Linux kernel ABI symbol stablelists | 3d6cead1b9de94b1f15be7669b1a2e8ff9d943c050c68d345de951f6a61ee3ee |
kernel-doc-4.18.0-553.66.1.el8_10.noarch | Various documentation bits found in the kernel source | 7c4fef54f1b30aa08ed523a9ad343fa5d4d2a5871b1266f736cd63dfa2c43c89 |
src | ||
kernel-4.18.0-553.66.1.el8_10.src | The Linux kernel, based on version 4.18.0, heavily modified with backports | b42367d46d7dca273fea6fbb3f839db953a271431d3dbbe2efb474c0c9d6ed65 |
* Mon Jul 28 2025 Denys Vlasenko <dvlasenk@redhat.com> [4.18.0-553.66.1.el8_10] - net_sched: hfsc: Address reentrant enqueue adding class to eltree twice (Xin Long) [RHEL-105415] {CVE-2025-38001} - sch_hfsc: Fix qlen accounting bug when using peek in hfsc_enqueue() (Xin Long) [RHEL-105415] {CVE-2025-38000} - net_sched: hfsc: Fix a UAF vulnerability in class with netem as child qdisc (CKI Backport Bot) [RHEL-105415] {CVE-2025-37890} - sch_hfsc: make hfsc_qlen_notify() idempotent (Xin Long) [RHEL-105415] - crypto: algif_hash - fix double free in hash_accept (CKI Backport Bot) [RHEL-102223] {CVE-2025-38079} - Revert "smb: client: fix TCP timers deadlock after rmmod" (Paulo Alcantara) [RHEL-100698] {CVE-2025-22077} - Revert "smb: client: Fix netns refcount imbalance causing leaks and use-after-free" (Paulo Alcantara) [RHEL-100698] - smb: client: Fix netns refcount imbalance causing leaks and use-after-free (Paulo Alcantara) [RHEL-100698] - smb: client: fix TCP timers deadlock after rmmod (Paulo Alcantara) [RHEL-100698] {CVE-2024-54680} - smb: client: Fix use-after-free of network namespace. (Paulo Alcantara) [RHEL-100698] {CVE-2024-53095} - smb: client: fix warning in generic_ip_connect() (Paulo Alcantara) [RHEL-100698] - net: tipc: fix refcount warning in tipc_aead_encrypt (Xin Long) [RHEL-103079] - net/tipc: fix slab-use-after-free Read in tipc_aead_encrypt_done (CKI Backport Bot) [RHEL-103079] {CVE-2025-38052} - memstick: rtsx_usb_ms: Fix slab-use-after-free in rtsx_usb_ms_drv_remove (CKI Backport Bot) [RHEL-99013] {CVE-2025-22020} - HID: intel-ish-hid: Fix use-after-free issue in ishtp_hid_remove() (CKI Backport Bot) [RHEL-98837] {CVE-2025-21928} * Thu Jul 24 2025 Denys Vlasenko <dvlasenk@redhat.com> [4.18.0-553.65.1.el8_10] - x86/alternatives: avoid mapping FIX_TEXT_POKE1 page when it is not required (Rafael Aquini) [RHEL-95422] - ext4: avoid resizing to a partial cluster size (CKI Backport Bot) [RHEL-101423] {CVE-2022-50020} * Wed Jul 23 2025 Denys Vlasenko <dvlasenk@redhat.com> [4.18.0-553.64.1.el8_10] - sched/fair: Fix potential memory corruption in child_cfs_rq_on_list (CKI Backport Bot) [RHEL-100387] {CVE-2025-21919} - NFSv4/pNFS: Fix a race to wake on NFS_LAYOUT_DRAIN (Benjamin Coddington) [RHEL-86256] - ftrace: Fix NULL pointer dereference in is_ftrace_trampoline when ftrace is dead (CKI Backport Bot) [RHEL-102133] {CVE-2022-49977} - wifi: iwlwifi: limit printed string from FW file (CKI Backport Bot) [RHEL-99367] {CVE-2025-21905} - workqueue: Disable printk_deferred_{enter,exit} in RT kernel (Waiman Long) [RHEL-80292] - workqueue: Make show_pwq() use run-length encoding (Waiman Long) [RHEL-80292] - workqueue: Introduce show_one_worker_pool and show_one_workqueue. (Waiman Long) [RHEL-80292] - workqueue: fix state-dump console deadlock (Waiman Long) [RHEL-80292] * Thu Jul 17 2025 Denys Vlasenko <dvlasenk@redhat.com> [4.18.0-553.63.1.el8_10] - tcp/dccp: Don't use timer_pending() in reqsk_queue_unlink(). (Guillaume Nault) [RHEL-66324] {CVE-2024-50154} - net: ch9200: fix uninitialised access during mii_nway_restart (CKI Backport Bot) [RHEL-101200] {CVE-2025-38086} - mm/swapfile: add cond_resched() in get_swap_pages() (Nico Pache) [RHEL-80401] {CVE-2023-52932} - dlm: fix possible lkb_resource null dereference (Alexander Aring) [RHEL-64452] - fs: dlm: handle -EINVAL as log_error() (Alexander Aring) [RHEL-64452] - redhat/configs: enable CONFIG_RH_KABI_STABLE_ASM_OFFSETS (Čestmír Kalina) [RHEL-90099] - kabi: freeze stablelist and stackprotector-related constants (Čestmír Kalina) [RHEL-90099] - kabi: add redhat/kabi/asm-offsets (Čestmír Kalina) [RHEL-90099] - kabi: add RH_KABI_ASSERT_EQ_CONST{,EXPR} (Čestmír Kalina) [RHEL-90099] * Thu Jul 10 2025 Denys Vlasenko <dvlasenk@redhat.com> [4.18.0-553.62.1.el8_10] - s390/virtio_ccw: Don't allocate/assign airqs for non-existing queues (David Hildenbrand) [RHEL-87557] - mm/slab: make __free(kfree) accept error pointers (Mark Langsdorf) [RHEL-84410] - driver core: fix potential NULL pointer dereference in dev_uevent() (Mark Langsdorf) [RHEL-84410] - driver core: introduce device_set_driver() helper (Mark Langsdorf) [RHEL-84410] - Revert "drivers: core: synchronize really_probe() and dev_uevent()" (Mark Langsdorf) [RHEL-84410] - cleanup: Add conditional guard helper (Mark Langsdorf) [RHEL-84410] - cleanup: Adjust scoped_guard() macros to avoid potential warning (Mark Langsdorf) [RHEL-84410] - cleanup: Remove address space of returned pointer (Mark Langsdorf) [RHEL-84410] - cleanup: Add usage and style documentation (Mark Langsdorf) [RHEL-84410] - file: add take_fd() cleanup helper (Mark Langsdorf) [RHEL-84410] - cleanup: Standardize the header guard define's name (Mark Langsdorf) [RHEL-84410] - cleanup: Add conditional guard support (Mark Langsdorf) [RHEL-84410] - cleanup: Make no_free_ptr() __must_check (Mark Langsdorf) [RHEL-84410] - locking: Introduce __cleanup() based infrastructure (Mark Langsdorf) [RHEL-84410] - misc/vmw_vmci: fix an infoleak in vmci_host_do_receive_datagram() (CKI Backport Bot) [RHEL-100343] {CVE-2022-49788} - media: uvcvideo: Announce the user our deprecation intentions (Desnes Nunes) [RHEL-98760] - media: uvcvideo: Allow changing noparam on the fly (Desnes Nunes) [RHEL-98760] - media: uvcvideo: Invert default value for nodrop module param (Desnes Nunes) [RHEL-98760] - media: uvcvideo: Propagate buf->error to userspace (Desnes Nunes) [RHEL-98760] - media: uvcvideo: Flush the control cache when we get an event (Desnes Nunes) [RHEL-98760] - media: uvcvideo: Annotate lock requirements for uvc_ctrl_set (Desnes Nunes) [RHEL-98760] - media: uvcvideo: Remove dangling pointers (Desnes Nunes) [RHEL-98760] {CVE-2024-58002} - media: uvcvideo: Remove redundant NULL assignment (Desnes Nunes) [RHEL-98760] - media: uvcvideo: Only save async fh if success (Desnes Nunes) [RHEL-98760] - media: uvcvideo: Refactor iterators (Desnes Nunes) [RHEL-98760] - media: uvcvideo: Fix double free in error path (CKI Backport Bot) [RHEL-98788] {CVE-2024-57980} - cifs: potential buffer overflow in handling symlinks (Paulo Alcantara) [RHEL-97074] {CVE-2022-49058} - Race between reading mdstat and stopping an md device (Nigel Croxon) [RHEL-95723] - fs/dcache: Control # of dentries in list_lru_node (Waiman Long) [RHEL-8578] - fs/dcache: Add sysctl parameter dentry-fs-klimit to control # of dentries in filesystem (Waiman Long) [RHEL-8578] - mm/list_lru: Make list_lru_add() return # if items in affected list_lru_node (Waiman Long) [RHEL-8578] * Thu Jul 03 2025 Denys Vlasenko <dvlasenk@redhat.com> [4.18.0-553.61.1.el8_10] - s390: Add z17 elf platform (Christoph Schlameuss) [RHEL-100409] - ext4: ignore xattrs past end (CKI Backport Bot) [RHEL-100375] {CVE-2025-37738} - ext4: fix off-by-one error in do_split (CKI Backport Bot) [RHEL-100361] {CVE-2025-23150} - net: atm: fix use after free in lec_send() (CKI Backport Bot) [RHEL-93119] {CVE-2025-22004} - x86/microcode/AMD: Fix out-of-bounds on systems with CPU-less NUMA nodes (CKI Backport Bot) [RHEL-98980] {CVE-2025-21991} * Thu Jun 26 2025 Denys Vlasenko <dvlasenk@redhat.com> [4.18.0-553.60.1.el8_10] - xfs: don't allocate COW extents when unsharing a hole (Brian Foster) [RHEL-83037] - xfs: don't allocate into the data fork for an unshare request (Brian Foster) [RHEL-83037] - s390/ism: add release function for struct device (Mete Durlu) [RHEL-97192] - udf: Fix a slab-out-of-bounds write bug in udf_find_entry() (CKI Backport Bot) [RHEL-99113] {CVE-2022-49846} * Thu Jun 19 2025 Denys Vlasenko <dvlasenk@redhat.com> [4.18.0-553.59.1.el8_10] - SUNRPC: Fix Oops in xs_tcp_send_request() when transport is disconnected (Olga Kornievskaia) [RHEL-83291] - SUNRPC: Set TCP_CORK until the transmit queue is empty (Olga Kornievskaia) [RHEL-83291] - tcp: add tcp_sock_set_cork (Olga Kornievskaia) [RHEL-83291] - xfs: xfs_ail_push_all_sync() stalls when racing with updates (Brian Foster) [RHEL-88132] - Bluetooth: Fix use after free in hci_send_acl (CKI Backport Bot) [RHEL-90428] {CVE-2022-49111} - Bluetooth: MGMT: Fix failing to MGMT_OP_ADD_UUID/MGMT_OP_REMOVE_UUID (David Marlin) [RHEL-90468] {CVE-2022-49136} - Bluetooth: hci_sync: add lock to protect HCI_UNREGISTER (David Marlin) [RHEL-90468] {CVE-2022-49136} - Bluetooth: hci_sync: Only allow hci_cmd_sync_queue if running (David Marlin) [RHEL-90468] {CVE-2022-49136} - Bluetooth: Cancel sync command before suspend and power off (David Marlin) [RHEL-90468] {CVE-2022-49136} - Bluetooth: hci_sync: Fix queuing commands when HCI_UNREGISTER is set (CKI Backport Bot) [RHEL-90468] {CVE-2022-49136} - fix backport of "filelock: Remove locks reliably when fcntl/close race is detected" (Scott Mayhew) [RHEL-89709] - NFSv4: Allow FREE_STATEID to clean up delegations (Benjamin Coddington) [RHEL-86932] - NFSv4.1: constify the stateid argument in nfs41_test_stateid() (Trond Myklebust) [RHEL-86932] * Thu Jun 12 2025 Denys Vlasenko <dvlasenk@redhat.com> [4.18.0-553.58.1.el8_10] - ndisc: use RCU protection in ndisc_alloc_skb() (Xin Long) [RHEL-89535] {CVE-2025-21764} - ipv6: use RCU protection in ip6_default_advmss() (Xin Long) [RHEL-89535] {CVE-2025-21765} - net: add dev_net_rcu() helper (Xin Long) [RHEL-89535] {CVE-2025-21765} - net: treat possible_net_t net pointer as an RCU one and add read_pnet_rcu() (Xin Long) [RHEL-89535] - idpf: check error for register_netdev() on init (Michal Schmidt) [RHEL-71182] {CVE-2025-22116} - idpf: avoid mailbox timeout delays during reset (Michal Schmidt) [RHEL-71182] - idpf: fix a race in txq wakeup (Michal Schmidt) [RHEL-71182] - idpf: fix idpf_vport_splitq_napi_poll() (Michal Schmidt) [RHEL-71182] - idpf: fix null-ptr-deref in idpf_features_check (Michal Schmidt) [RHEL-71182] - idpf: protect shutdown from reset (Michal Schmidt) [RHEL-71182] - idpf: fix potential memory leak on kcalloc() failure (Michal Schmidt) [RHEL-71182] - idpf: fix offloads support for encapsulated packets (Michal Schmidt) [RHEL-71182] - idpf: fix adapter NULL pointer dereference on reboot (Michal Schmidt) [RHEL-71182] {CVE-2025-22065} - idpf: fix checksums set in idpf_rx_rsc() (Michal Schmidt) [RHEL-71182] {CVE-2025-21890} - idpf: fix handling rsc packet with a single segment (Michal Schmidt) [RHEL-71182] - idpf: add more info during virtchnl transaction timeout/salt mismatch (Michal Schmidt) [RHEL-71182] - idpf: convert workqueues to unbound (Michal Schmidt) [RHEL-71182] {CVE-2024-58057} - idpf: Acquire the lock before accessing the xn->salt (Michal Schmidt) [RHEL-71182] - idpf: fix transaction timeouts on reset (Michal Schmidt) [RHEL-71182] - idpf: add read memory barrier when checking descriptor done bit (Michal Schmidt) [RHEL-71182] - idpf: deinit virtchnl transaction manager after vport and vectors (Michal Schmidt) [RHEL-71182] - idpf: use actual mbx receive payload length (Michal Schmidt) [RHEL-71182] - idpf: call set_real_num_queues in idpf_open (Michal Schmidt) [RHEL-71182 RHEL-90849] - idpf: fix idpf_vc_core_init error path (Michal Schmidt) [RHEL-68233 RHEL-71182 RHEL-90846] {CVE-2024-53064} - idpf: avoid vport access in idpf_get_link_ksettings (Michal Schmidt) [RHEL-71182 RHEL-90846] {CVE-2024-50274} - idpf: fix netdev Tx queue stop/wake (Michal Schmidt) [RHEL-71182] - idpf: fix UAFs when destroying the queues (Michal Schmidt) [RHEL-71182] {CVE-2024-44932} - idpf: fix memleak in vport interrupt configuration (Michal Schmidt) [RHEL-71182] - idpf: fix memory leaks and crashes while performing a soft reset (Michal Schmidt) [RHEL-71182] {CVE-2024-44964} - idpf: compile singleq code only under default-n CONFIG_IDPF_SINGLEQ (Michal Schmidt) [RHEL-71182] - redhat/configs: set CONFIG_IDPF_SINGLEQ as disabled (Michal Schmidt) [RHEL-71182] - idpf: merge singleq and splitq &net_device_ops (Michal Schmidt) [RHEL-71182] - idpf: avoid bloating &idpf_q_vector with big %NR_CPUS (Michal Schmidt) [RHEL-71182] - idpf: split &idpf_queue into 4 strictly-typed queue structures (Michal Schmidt) [RHEL-71182] - idpf: remove legacy Page Pool Ethtool stats (Michal Schmidt) [RHEL-71182] - net: remove gfp_mask from napi_alloc_skb() [idpf] (Michal Schmidt) [RHEL-71182] - idpf: stop using macros for accessing queue descriptors (Michal Schmidt) [RHEL-71182] - idpf: don't enable NAPI and interrupts prior to allocating Rx buffers (Michal Schmidt) [RHEL-71182] - idpf: Interpret .set_channels() input differently (Michal Schmidt) [RHEL-71182] - idpf: make virtchnl2.h self-contained (Michal Schmidt) [RHEL-71182] - s390/pci: Serialize device addition and removal (Mete Durlu) [RHEL-95783] - s390/pci: Allow re-add of a reserved but not yet removed device (Mete Durlu) [RHEL-95783] - s390/pci: Prevent self deletion in disable_slot() (Mete Durlu) [RHEL-95783] - s390/pci: Remove redundant bus removal and disable from zpci_release_device() (Mete Durlu) [RHEL-95783] - s390/pci: Fix duplicate pci_dev_put() in disable_slot() when PF has child VFs (Mete Durlu) [RHEL-95783] - s390/pci: Fix missing check for zpci_create_device() error return (Mete Durlu) [RHEL-95783] - s390/pci: Fix potential double remove of hotplug slot (Mete Durlu) [RHEL-95783] - s390/pci: remove hotplug slot when releasing the device (Mete Durlu) [RHEL-95783] - s390/pci: introduce lock to synchronize state of zpci_dev's (Mete Durlu) [RHEL-95783] - s390/pci: rename lock member in struct zpci_dev (Mete Durlu) [RHEL-95783] * Thu Jun 05 2025 Denys Vlasenko <dvlasenk@redhat.com> [4.18.0-553.57.1.el8_10] - smb: client: fix warning in cifs_smb3_do_mount() (Paulo Alcantara) [RHEL-55825] - cifs: fix double free race when mount fails in cifs_get_root() (Paulo Alcantara) [RHEL-55825] {CVE-2022-48919} - security/keys: fix slab-out-of-bounds in key_task_permission (CKI Backport Bot) [RHEL-68090] {CVE-2024-50301}