Описание
ELSA-2011-1849: kernel security and bug fix update (IMPORTANT)
[2.6.32-220.2.1.el6]
- [dm] fixing test for NULL pointer testing (Paolo Bonzini) [752379 752380] {CVE-2011-4127}
[2.6.32-220.1.1.el6]
- [dm] do not forward ioctls from logical volumes to the underlying device (Paolo Bonzini) [752379 752380] {CVE-2011-4127}
- [block] fail SCSI passthrough ioctls on partition devices (Paolo Bonzini) [752379 752380] {CVE-2011-4127}
- [block] add and use scsi_blk_cmd_ioctl (Paolo Bonzini) [752379 752380] {CVE-2011-4127}
- [x86] amd: Fix align_va_addr kernel parameter (Frank Arnold) [758028 753237]
- [md] RAID1: Do not call md_raid1_unplug_device while holding spinlock (Jonathan E Brassow) [755545 752528]
- [pci] intel-iommu: Default to non-coherent for domains unattached to iommus (Don Dutile) [757671 746484]
- [x86] initialize min_delta_ns in one_hpet_msi_clockevent() (Prarit Bhargava) [756426 728315]
- [x86] Update hpet_next_event() (Prarit Bhargava) [756426 728315]
- [kernel] sched: Use resched IPI to kick off the nohz idle balance (Vivek Goyal) [750459 717179]
- [drm] i915: enable ring freq scaling, RC6 and graphics turbo on Ivy Bridge (Prarit Bhargava) [758513 752163]
- [drm] i915: load a ring frequency scaling table (Prarit Bhargava) [758513 752163]
- [x86] cpufreq: expose a cpufreq_quick_get_max routine (Prarit Bhargava) [758513 752163]
- [sched] Cleanup/optimize clock updates (Larry Woodman) [751403 750237]
- [sched] fix skip_clock_update optimization (Larry Woodman) [751403 750237]
- [block] virtio-blk: Use ida to allocate disk index (Michael S. Tsirkin) [756427 692767]
- [virt] virtio_blk: Replace cryptic number with the macro (Michael S. Tsirkin) [756427 692767]
- [kernel] ida: simplified functions for id allocation (Michael S. Tsirkin) [756427 692767]
- [virt] revert virtio-blk: Use ida to allocate disk index (Aristeu Rozanski) [756427 692767]
Обновленные пакеты
Oracle Linux 6
Oracle Linux x86_64
kernel
2.6.32-220.2.1.el6
kernel-debug
2.6.32-220.2.1.el6
kernel-debug-devel
2.6.32-220.2.1.el6
kernel-devel
2.6.32-220.2.1.el6
kernel-doc
2.6.32-220.2.1.el6
kernel-firmware
2.6.32-220.2.1.el6
kernel-headers
2.6.32-220.2.1.el6
perf
2.6.32-220.2.1.el6
python-perf
2.6.32-220.2.1.el6
Oracle Linux i686
kernel
2.6.32-220.2.1.el6
kernel-debug
2.6.32-220.2.1.el6
kernel-debug-devel
2.6.32-220.2.1.el6
kernel-devel
2.6.32-220.2.1.el6
kernel-doc
2.6.32-220.2.1.el6
kernel-firmware
2.6.32-220.2.1.el6
kernel-headers
2.6.32-220.2.1.el6
perf
2.6.32-220.2.1.el6
python-perf
2.6.32-220.2.1.el6
Связанные CVE
Связанные уязвимости
The Linux kernel before 3.2.2 does not properly restrict SG_IO ioctl calls, which allows local users to bypass intended restrictions on disk read and write operations by sending a SCSI command to (1) a partition block device or (2) an LVM volume.
The Linux kernel before 3.2.2 does not properly restrict SG_IO ioctl calls, which allows local users to bypass intended restrictions on disk read and write operations by sending a SCSI command to (1) a partition block device or (2) an LVM volume.
The Linux kernel before 3.2.2 does not properly restrict SG_IO ioctl calls, which allows local users to bypass intended restrictions on disk read and write operations by sending a SCSI command to (1) a partition block device or (2) an LVM volume.
The Linux kernel before 3.2.2 does not properly restrict SG_IO ioctl c ...
The Linux kernel before 3.2.2 does not properly restrict SG_IO ioctl calls, which allows local users to bypass intended restrictions on disk read and write operations by sending a SCSI command to (1) a partition block device or (2) an LVM volume.