Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2017-0892

Опубликовано: 11 апр. 2017
Источник: oracle-oval
Платформа: Oracle Linux 6

Описание

ELSA-2017-0892: kernel security and bug fix update (IMPORTANT)

[2.6.32-696.1.1]

  • [block] fix use-after-free in seq file (Denys Vlasenko) [1418548 1418549] {CVE-2016-7910}
  • [firmware] Replacing the chelsio firmware (t4,t5)fw-1.15.37.0 (Sai Vemuri) [1433865 1425749]
  • [kernel] genirq: Avoid taking sparse_irq_lock for non-existent irqs (Dave Wysochanski) [1428106 1360930]
  • [tty] n_hdlc: get rid of racy n_hdlc.tbuf (Herton R. Krzesinski) [1429917 1429918] {CVE-2017-2636}

Обновленные пакеты

Oracle Linux 6

Oracle Linux x86_64

kernel

2.6.32-696.1.1.el6

kernel-abi-whitelists

2.6.32-696.1.1.el6

kernel-debug

2.6.32-696.1.1.el6

kernel-debug-devel

2.6.32-696.1.1.el6

kernel-devel

2.6.32-696.1.1.el6

kernel-doc

2.6.32-696.1.1.el6

kernel-firmware

2.6.32-696.1.1.el6

kernel-headers

2.6.32-696.1.1.el6

perf

2.6.32-696.1.1.el6

python-perf

2.6.32-696.1.1.el6

Oracle Linux i686

kernel

2.6.32-696.1.1.el6

kernel-abi-whitelists

2.6.32-696.1.1.el6

kernel-debug

2.6.32-696.1.1.el6

kernel-debug-devel

2.6.32-696.1.1.el6

kernel-devel

2.6.32-696.1.1.el6

kernel-doc

2.6.32-696.1.1.el6

kernel-firmware

2.6.32-696.1.1.el6

kernel-headers

2.6.32-696.1.1.el6

perf

2.6.32-696.1.1.el6

python-perf

2.6.32-696.1.1.el6

Связанные CVE

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 8 лет назад

Use-after-free vulnerability in the disk_seqf_stop function in block/genhd.c in the Linux kernel before 4.7.1 allows local users to gain privileges by leveraging the execution of a certain stop operation even if the corresponding start operation had failed.

CVSS3: 7
redhat
почти 9 лет назад

Use-after-free vulnerability in the disk_seqf_stop function in block/genhd.c in the Linux kernel before 4.7.1 allows local users to gain privileges by leveraging the execution of a certain stop operation even if the corresponding start operation had failed.

CVSS3: 7.8
nvd
больше 8 лет назад

Use-after-free vulnerability in the disk_seqf_stop function in block/genhd.c in the Linux kernel before 4.7.1 allows local users to gain privileges by leveraging the execution of a certain stop operation even if the corresponding start operation had failed.

CVSS3: 7.8
debian
больше 8 лет назад

Use-after-free vulnerability in the disk_seqf_stop function in block/g ...

CVSS3: 7
ubuntu
больше 8 лет назад

Race condition in drivers/tty/n_hdlc.c in the Linux kernel through 4.10.1 allows local users to gain privileges or cause a denial of service (double free) by setting the HDLC line discipline.