OL9 & CVE-2023-45871
Hi,
I've a OL9 with kernel 5.15.0-202.135.2. And it has been updated to the latest patches but Windows Defender (yes; WD on a linux server) is reporting
CVE-2023-45871 for the kernel-uek-modules and CVE-2023-44487 for conmon. The kernel-uek-modules is version kernel-uek-modules-5.15.0-202.135.2 and conmon-2.1.8-1.el9.x86_64
I don't see newer version with dnf and if I check for (example) CVE-2023-44487 with
dnf update --cve CVE-2023-44487
Last metadata expiration check: 1:16:09 ago on Fri 26 Jan 2024 09:35:12 AM CET.
No security updates needed, but 15 updates available
Dependencies resolved.
Nothing to do.
Complete!
Could this be a false positive from WD?