Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2013-1034-1

Опубликовано: 10 июл. 2013
Источник: oracle-oval
Платформа: Oracle Linux 5

Описание

ELSA-2013-1034-1: kernel security and bug fix update (LOW)

kernel [2.6.18-348.12.1.0.1]

  • [oprofile] x86, mm: Add __get_user_pages_fast() [orabug 14277030]
  • [oprofile] export __get_user_pages_fast() function [orabug 14277030]
  • [oprofile] oprofile, x86: Fix nmi-unsafe callgraph support [orabug 14277030]
  • [oprofile] oprofile: use KM_NMI slot for kmap_atomic [orabug 14277030]
  • [oprofile] oprofile: i386 add get_user_pages_fast support [orabug 14277030]
  • [kernel] Initialize the local uninitialized variable stats. [orabug 14051367]
  • [fs] JBD:make jbd support 512B blocks correctly for ocfs2. [orabug 13477763]
  • [x86 ] fix fpu context corrupt when preempt in signal context [orabug 14038272]
  • [mm] fix hugetlb page leak (Dave McCracken) [orabug 12375075]
  • fix ia64 build error due to add-support-above-32-vcpus.patch(Zhenzhong Duan)
  • [x86] use dynamic vcpu_info remap to support more than 32 vcpus (Zhenzhong Duan)
  • [x86] Fix lvt0 reset when hvm boot up with noapic param
  • [scsi] remove printks when doing I/O to a dead device (John Sobecki, Chris Mason) [orabug 12342275]
  • [char] ipmi: Fix IPMI errors due to timing problems (Joe Jin) [orabug 12561346]
  • [scsi] Fix race when removing SCSI devices (Joe Jin) [orabug 12404566]
  • [net] net: Redo the broken redhat netconsole over bonding (Tina Yang) [orabug 12740042]
  • [fs] nfs: Fix __put_nfs_open_context() NULL pointer panic (Joe Jin) [orabug 12687646]
  • fix filp_close() race (Joe Jin) [orabug 10335998]
  • make xenkbd.abs_pointer=1 by default [orabug 67188919]
  • [xen] check to see if hypervisor supports memory reservation change (Chuck Anderson) [orabug 7556514]
  • [net] Enable entropy for bnx2,bnx2x,e1000e,igb,ixgb,ixgbe,ixgbevf (John Sobecki) [orabug 10315433]
  • [NET] Add xen pv netconsole support (Tina Yang) [orabug 6993043] [bz 7258]
  • [mm] Patch shrink_zone to yield during severe mempressure events, avoiding hangs and evictions (John Sobecki,Chris Mason) [orabug 6086839]
  • [mm] Enhance shrink_zone patch allow full swap utilization, and also be NUMA-aware (John Sobecki,Chris Mason,Herbert van den Bergh) [orabug 9245919]
  • fix aacraid not to reset during kexec (Joe Jin) [orabug 8516042]
  • [xen] PVHVM guest with PoD crashes under memory pressure (Chuck Anderson) [orabug 9107465]
  • [xen] PV guest with FC HBA hangs during shutdown (Chuck Anderson) [orabug 9764220]
  • Support 256GB+ memory for pv guest (Mukesh Rathor) [orabug 9450615]
  • fix overcommit memory to use percpu_counter for (KOSAKI Motohiro, Guru Anbalagane) [orabug 6124033]
  • [ipmi] make configurable timeouts for kcs of ipmi [orabug 9752208]
  • [ib] fix memory corruption (Andy Grover) [orabug 9972346]
  • [usb] USB: fix __must_check warnings in drivers/usb/core/ (Junxiao Bi) [orabug 14795203]
  • [usb] usbcore: fix endpoint device creation (Junxiao Bi) [orabug 14795203]
  • [usb] usbcore: fix refcount bug in endpoint removal (Junxiao Bi) [orabug 14795203]

[2.6.18-348.12.1]

  • Revert: [fs] afs: export a couple of core functions for AFS write support (Lukas Czerner) [960014 692071]
  • Revert: [fs] ext4: drop ec_type from the ext4_ext_cache structure (Lukas Czerner) [960014 692071]
  • Revert: [fs] ext4: handle NULL p_ext in ext4_ext_next_allocated_block() (Lukas Czerner) [960014 692071]
  • Revert: [fs] ext4: make FIEMAP and delayed allocation play well together (Lukas Czerner) [960014 692071]
  • Revert: [fs] ext4: Fix possibly very long loop in fiemap (Lukas Czerner) [960014 692071]
  • Revert: [fs] ext4: prevent race while walking extent tree for fiemap (Lukas Czerner) [960014 692071]

[2.6.18-348.11.1]

  • Revert: [kernel] kmod: make request_module() killable (Frantisek Hrbata) [858752 858753] {CVE-2012-4398}
  • Revert: [kernel] kmod: avoid deadlock from recursive kmod call (Frantisek Hrbata) [858752 858753] {CVE-2012-4398}
  • Revert: [kernel] wait_for_helper: remove unneeded do_sigaction() (Frantisek Hrbata) [858752 858753] {CVE-2012-4398}
  • Revert: [kernel] Fix ____call_usermodehelper errs being silently ignored (Frantisek Hrbata) [858752 858753] {CVE-2012-4398}
  • Revert: [kernel] wait_for_helper: SIGCHLD from u/s cause use-after-free (Frantisek Hrbata) [858752 858753] {CVE-2012-4398}
  • Revert: [kernel] kmod: avoid deadlock from recursive request_module call (Frantisek Hrbata) [957152 949568]
  • Revert: [x86-64] non lazy sleazy fpu implementation (Prarit Bhargava) [948187 731531]
  • Revert: [i386] add sleazy FPU optimization (Prarit Bhargava) [948187 731531]
  • Revert: [x86] fpu: fix CONFIG_PREEMPT=y corruption of FPU stack (Prarit Bhargava) [948187 731531]
  • Revert: [ia64] fix KABI breakage on ia64 (Prarit Bhargava) [966878 960783]

[2.6.18-348.10.1]

  • [net] Bluetooth: fix possible info leak in bt_sock_recvmsg() (Radomir Vrbovsky) [955600 955601] {CVE-2013-3224}
  • [net] Bluetooth: HCI & L2CAP information leaks (Jacob Tanenbaum) [922415 922416] {CVE-2012-6544}
  • [misc] signal: use __ARCH_HAS_SA_RESTORER instead of SA_RESTORER (Nikola Pajkovsky) [920503 920504] {CVE-2013-0914}
  • [misc] signal: always clear sa_restorer on execve (Nikola Pajkovsky) [920503 920504] {CVE-2013-0914}
  • [misc] signal: Def __ARCH_HAS_SA_RESTORER for sa_restorer clear (Nikola Pajkovsky) [920503 920504] {CVE-2013-0914}
  • [net] cxgb4: zero out another firmware request struct (Jay Fenlason) [971872 872531]
  • [net] cxgb4: clear out most firmware request structures (Jay Fenlason) [971872 872531]
  • [kernel] Make futex_wait() use an hrtimer for timeout (Prarit Bhargava) [958021 864648]

[2.6.18-348.9.1]

  • [net] tg3: buffer overflow in VPD firmware parsing (Jacob Tanenbaum) [949939 949940] {CVE-2013-1929}
  • [net] atm: update msg_namelen in vcc_recvmsg() (Nikola Pajkovsky) [955222 955223] {CVE-2013-3222}
  • [fs] ext4: prevent race while walking extent tree for fiemap (Lukas Czerner) [960014 692071]
  • [fs] ext4: Fix possibly very long loop in fiemap (Lukas Czerner) [960014 692071]
  • [fs] ext4: make FIEMAP and delayed allocation play well together (Lukas Czerner) [960014 692071]
  • [fs] ext4: handle NULL p_ext in ext4_ext_next_allocated_block() (Lukas Czerner) [960014 692071]
  • [fs] ext4: drop ec_type from the ext4_ext_cache structure (Lukas Czerner) [960014 692071]
  • [fs] afs: export a couple of core functions for AFS write support (Lukas Czerner) [960014 692071]
  • [net] llc: Fix missing msg_namelen update in llc_ui_recvmsg() (Jesper Brouer) [956096 956097] {CVE-2013-3231}
  • [net] tipc: fix info leaks via msg_name in recv_msg/recv_stream (Jesper Brouer) [956148 956149] {CVE-2013-3235}
  • [net] Bluetooth: RFCOMM Fix info leak in ioctl(RFCOMMGETDEVLIST) (Radomir Vrbovsky) [922406 922407] {CVE-2012-6545}
  • [net] Bluetooth: RFCOMM - Fix info leak via getsockname() (Radomir Vrbovsky) [922406 922407] {CVE-2012-6545}
  • [kernel] kmod: avoid deadlock from recursive request_module call (Frantisek Hrbata) [957152 949568]
  • [kernel] wait_for_helper: SIGCHLD from u/s cause use-after-free (Frantisek Hrbata) [858752 858753] {CVE-2012-4398}
  • [kernel] Fix ____call_usermodehelper errs being silently ignored (Frantisek Hrbata) [858752 858753] {CVE-2012-4398}
  • [kernel] wait_for_helper: remove unneeded do_sigaction() (Frantisek Hrbata) [858752 858753] {CVE-2012-4398}
  • [kernel] kmod: avoid deadlock from recursive kmod call (Frantisek Hrbata) [858752 858753] {CVE-2012-4398}
  • [kernel] kmod: make request_module() killable (Frantisek Hrbata) [858752 858753] {CVE-2012-4398}

[2.6.18-348.8.1]

  • [ia64] fix KABI breakage on ia64 (Prarit Bhargava) [966878 960783]

[2.6.18-348.7.1]

  • [pci] intel-iommu: Prev devs with RMRRs from going in SI Domain (Tony Camuso) [957606 839334]

Обновленные пакеты

Oracle Linux 5

Oracle Linux ia64

kernel

2.6.18-348.12.1.0.1.el5

kernel-debug

2.6.18-348.12.1.0.1.el5

kernel-debug-devel

2.6.18-348.12.1.0.1.el5

kernel-devel

2.6.18-348.12.1.0.1.el5

kernel-doc

2.6.18-348.12.1.0.1.el5

kernel-headers

2.6.18-348.12.1.0.1.el5

kernel-xen

2.6.18-348.12.1.0.1.el5

kernel-xen-devel

2.6.18-348.12.1.0.1.el5

ocfs2-2.6.18-348.12.1.0.1.el5

1.4.10-1.el5

ocfs2-2.6.18-348.12.1.0.1.el5debug

1.4.10-1.el5

ocfs2-2.6.18-348.12.1.0.1.el5xen

1.4.10-1.el5

oracleasm-2.6.18-348.12.1.0.1.el5

2.0.5-1.el5

oracleasm-2.6.18-348.12.1.0.1.el5debug

2.0.5-1.el5

oracleasm-2.6.18-348.12.1.0.1.el5xen

2.0.5-1.el5

Oracle Linux x86_64

kernel

2.6.18-348.12.1.0.1.el5

kernel-debug

2.6.18-348.12.1.0.1.el5

kernel-debug-devel

2.6.18-348.12.1.0.1.el5

kernel-devel

2.6.18-348.12.1.0.1.el5

kernel-doc

2.6.18-348.12.1.0.1.el5

kernel-headers

2.6.18-348.12.1.0.1.el5

kernel-xen

2.6.18-348.12.1.0.1.el5

kernel-xen-devel

2.6.18-348.12.1.0.1.el5

ocfs2-2.6.18-348.12.1.0.1.el5

1.4.10-1.el5

ocfs2-2.6.18-348.12.1.0.1.el5debug

1.4.10-1.el5

ocfs2-2.6.18-348.12.1.0.1.el5xen

1.4.10-1.el5

oracleasm-2.6.18-348.12.1.0.1.el5

2.0.5-1.el5

oracleasm-2.6.18-348.12.1.0.1.el5debug

2.0.5-1.el5

oracleasm-2.6.18-348.12.1.0.1.el5xen

2.0.5-1.el5

Oracle Linux i386

kernel

2.6.18-348.12.1.0.1.el5

kernel-PAE

2.6.18-348.12.1.0.1.el5

kernel-PAE-devel

2.6.18-348.12.1.0.1.el5

kernel-debug

2.6.18-348.12.1.0.1.el5

kernel-debug-devel

2.6.18-348.12.1.0.1.el5

kernel-devel

2.6.18-348.12.1.0.1.el5

kernel-doc

2.6.18-348.12.1.0.1.el5

kernel-headers

2.6.18-348.12.1.0.1.el5

kernel-xen

2.6.18-348.12.1.0.1.el5

kernel-xen-devel

2.6.18-348.12.1.0.1.el5

ocfs2-2.6.18-348.12.1.0.1.el5

1.4.10-1.el5

ocfs2-2.6.18-348.12.1.0.1.el5PAE

1.4.10-1.el5

ocfs2-2.6.18-348.12.1.0.1.el5debug

1.4.10-1.el5

ocfs2-2.6.18-348.12.1.0.1.el5xen

1.4.10-1.el5

oracleasm-2.6.18-348.12.1.0.1.el5

2.0.5-1.el5

oracleasm-2.6.18-348.12.1.0.1.el5PAE

2.0.5-1.el5

oracleasm-2.6.18-348.12.1.0.1.el5debug

2.0.5-1.el5

oracleasm-2.6.18-348.12.1.0.1.el5xen

2.0.5-1.el5

Связанные уязвимости

oracle-oval
около 12 лет назад

ELSA-2013-1034: kernel security and bug fix update (LOW)

ubuntu
больше 12 лет назад

net/tipc/socket.c in the Linux kernel before 3.9-rc7 does not initialize a certain data structure and a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.

redhat
больше 12 лет назад

net/tipc/socket.c in the Linux kernel before 3.9-rc7 does not initialize a certain data structure and a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.

nvd
больше 12 лет назад

net/tipc/socket.c in the Linux kernel before 3.9-rc7 does not initialize a certain data structure and a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.

debian
больше 12 лет назад

net/tipc/socket.c in the Linux kernel before 3.9-rc7 does not initiali ...