Описание
ELSA-2012-1064: kernel security and bug fix update (IMPORTANT)
[2.6.32-279.1.1.el6]
- [kernel] Prevent keyctl new_session from causing a panic (David Howells) [833433 827424] {CVE-2012-2745}
- [net] ipv6/netfilter: fix null pointer dereference in nf_ct_frag6_reasm() (Petr Matousek) [833410 833412] {CVE-2012-2744}
- [fs] nfs: Map minor mismatch error to protocol not support error (Steve Dickson) [832365 796352]
- [fs] ext4: Fix overflow caused by missing cast in ext4_fallocate() (Lukas Czerner) [833034 830209]
- [ata] libata: Add 2GB ATA Flash Disk/ADMA428M to DMA blacklist (Prarit Bhargava) [832363 812904]
- [netdrv] r8169: fix typo in firmware filenames (Ivan Vecera) [832359 829211]
Обновленные пакеты
Oracle Linux 6
Oracle Linux x86_64
kernel
2.6.32-279.1.1.el6
kernel-debug
2.6.32-279.1.1.el6
kernel-debug-devel
2.6.32-279.1.1.el6
kernel-devel
2.6.32-279.1.1.el6
kernel-doc
2.6.32-279.1.1.el6
kernel-firmware
2.6.32-279.1.1.el6
kernel-headers
2.6.32-279.1.1.el6
perf
2.6.32-279.1.1.el6
python-perf
2.6.32-279.1.1.el6
Oracle Linux i686
kernel
2.6.32-279.1.1.el6
kernel-debug
2.6.32-279.1.1.el6
kernel-debug-devel
2.6.32-279.1.1.el6
kernel-devel
2.6.32-279.1.1.el6
kernel-doc
2.6.32-279.1.1.el6
kernel-firmware
2.6.32-279.1.1.el6
kernel-headers
2.6.32-279.1.1.el6
perf
2.6.32-279.1.1.el6
python-perf
2.6.32-279.1.1.el6
Связанные CVE
Связанные уязвимости
net/ipv6/netfilter/nf_conntrack_reasm.c in the Linux kernel before 2.6.34, when the nf_conntrack_ipv6 module is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) via certain types of fragmented IPv6 packets.
net/ipv6/netfilter/nf_conntrack_reasm.c in the Linux kernel before 2.6.34, when the nf_conntrack_ipv6 module is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) via certain types of fragmented IPv6 packets.
net/ipv6/netfilter/nf_conntrack_reasm.c in the Linux kernel before 2.6.34, when the nf_conntrack_ipv6 module is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) via certain types of fragmented IPv6 packets.
net/ipv6/netfilter/nf_conntrack_reasm.c in the Linux kernel before 2.6 ...
The copy_creds function in kernel/cred.c in the Linux kernel before 3.3.2 provides an invalid replacement session keyring to a child process, which allows local users to cause a denial of service (panic) via a crafted application that uses the fork system call.