Описание
ELSA-2016-3635: Unbreakable Enterprise kernel security update (IMPORTANT)
kernel-uek [4.1.12-61.1.17]
- sched: panic on corrupted stack end (Jann Horn) [Orabug: 24971921] {CVE-2016-1583}
- ecryptfs: forbid opening files without mmap handler (Jann Horn) [Orabug: 24971921] {CVE-2016-1583}
- proc: prevent stacking filesystems on top (Jann Horn) [Orabug: 24971921] {CVE-2016-1583}
Обновленные пакеты
Oracle Linux 6
Oracle Linux x86_64
dtrace-modules-4.1.12-61.1.17.el6uek
0.5.3-2.el6
kernel-uek
4.1.12-61.1.17.el6uek
kernel-uek-debug
4.1.12-61.1.17.el6uek
kernel-uek-debug-devel
4.1.12-61.1.17.el6uek
kernel-uek-devel
4.1.12-61.1.17.el6uek
kernel-uek-doc
4.1.12-61.1.17.el6uek
kernel-uek-firmware
4.1.12-61.1.17.el6uek
Oracle Linux 7
Oracle Linux x86_64
dtrace-modules-4.1.12-61.1.17.el7uek
0.5.3-2.el7
kernel-uek
4.1.12-61.1.17.el7uek
kernel-uek-debug
4.1.12-61.1.17.el7uek
kernel-uek-debug-devel
4.1.12-61.1.17.el7uek
kernel-uek-devel
4.1.12-61.1.17.el7uek
kernel-uek-doc
4.1.12-61.1.17.el7uek
kernel-uek-firmware
4.1.12-61.1.17.el7uek
Связанные CVE
Связанные уязвимости
The ecryptfs_privileged_open function in fs/ecryptfs/kthread.c in the Linux kernel before 4.6.3 allows local users to gain privileges or cause a denial of service (stack memory consumption) via vectors involving crafted mmap calls for /proc pathnames, leading to recursive pagefault handling.
The ecryptfs_privileged_open function in fs/ecryptfs/kthread.c in the Linux kernel before 4.6.3 allows local users to gain privileges or cause a denial of service (stack memory consumption) via vectors involving crafted mmap calls for /proc pathnames, leading to recursive pagefault handling.
The ecryptfs_privileged_open function in fs/ecryptfs/kthread.c in the Linux kernel before 4.6.3 allows local users to gain privileges or cause a denial of service (stack memory consumption) via vectors involving crafted mmap calls for /proc pathnames, leading to recursive pagefault handling.
The ecryptfs_privileged_open function in fs/ecryptfs/kthread.c in the ...