Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2017-2863

Опубликовано: 06 окт. 2017
Источник: oracle-oval
Платформа: Oracle Linux 6

Описание

ELSA-2017-2863: kernel security and bug fix update (MODERATE)

[2.6.32-696.13.2.OL6]

  • Update genkey [bug 25599697]

[2.6.32-696.13.2]

  • [net] l2cap: prevent stack overflow on incoming bluetooth packet (Neil Horman) [1490060 1490062] {CVE-2017-1000251}
  • [fs] binfmt_elf.c:load_elf_binary(): return -EINVAL on zero-length mappings (Petr Matousek) [1492959 1492961] {CVE-2017-1000253}
  • [fs] binfmt_elf.c: fix bug in loading of PIE binaries (Petr Matousek) [1492959 1492961] {CVE-2017-1000253}

[2.6.32-696.13.1]

  • [netdv] brcmfmac: fix possible buffer overflow in brcmf_cfg80211_mgmt_tx() (Stanislaw Gruszka) [1474783 1474782] {CVE-2017-7541}
  • [x86] fix /proc/mtrr with base/size more than 44bits (Jerome Marchand) [1482855 1466530]

[2.6.32-696.12.1]

  • [fs] gfs2: clear gl_object when deleting an inode in gfs2_delete_inode (Robert S Peterson) [1479397 1464541]
  • [fs] gfs2: clear gl_object if gfs2_create_inode fails (Robert S Peterson) [1479397 1464541]
  • [fs] gfs2: set gl_object in inode lookup only after block type check (Robert S Peterson) [1479397 1464541]
  • [fs] gfs2: introduce helpers for setting and clearing gl_object (Robert S Peterson) [1479397 1464541]

[2.6.32-696.11.1]

  • [scsi] Add STARGET_CREATED_REMOVE state to scsi_target_state (Ewan Milne) [1472127 1452358]

Обновленные пакеты

Oracle Linux 6

Oracle Linux x86_64

kernel

2.6.32-696.13.2.el6

kernel-abi-whitelists

2.6.32-696.13.2.el6

kernel-debug

2.6.32-696.13.2.el6

kernel-debug-devel

2.6.32-696.13.2.el6

kernel-devel

2.6.32-696.13.2.el6

kernel-doc

2.6.32-696.13.2.el6

kernel-firmware

2.6.32-696.13.2.el6

kernel-headers

2.6.32-696.13.2.el6

perf

2.6.32-696.13.2.el6

python-perf

2.6.32-696.13.2.el6

Oracle Linux i686

kernel

2.6.32-696.13.2.el6

kernel-abi-whitelists

2.6.32-696.13.2.el6

kernel-debug

2.6.32-696.13.2.el6

kernel-debug-devel

2.6.32-696.13.2.el6

kernel-devel

2.6.32-696.13.2.el6

kernel-doc

2.6.32-696.13.2.el6

kernel-firmware

2.6.32-696.13.2.el6

kernel-headers

2.6.32-696.13.2.el6

perf

2.6.32-696.13.2.el6

python-perf

2.6.32-696.13.2.el6

Связанные CVE

Связанные уязвимости

CVSS3: 7.8
ubuntu
почти 8 лет назад

The brcmf_cfg80211_mgmt_tx function in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c in the Linux kernel before 4.12.3 allows local users to cause a denial of service (buffer overflow and system crash) or possibly gain privileges via a crafted NL80211_CMD_FRAME Netlink packet.

CVSS3: 6.8
redhat
почти 8 лет назад

The brcmf_cfg80211_mgmt_tx function in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c in the Linux kernel before 4.12.3 allows local users to cause a denial of service (buffer overflow and system crash) or possibly gain privileges via a crafted NL80211_CMD_FRAME Netlink packet.

CVSS3: 7.8
nvd
почти 8 лет назад

The brcmf_cfg80211_mgmt_tx function in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c in the Linux kernel before 4.12.3 allows local users to cause a denial of service (buffer overflow and system crash) or possibly gain privileges via a crafted NL80211_CMD_FRAME Netlink packet.

CVSS3: 7.8
debian
почти 8 лет назад

The brcmf_cfg80211_mgmt_tx function in drivers/net/wireless/broadcom/b ...

CVSS3: 7.8
github
около 3 лет назад

The brcmf_cfg80211_mgmt_tx function in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c in the Linux kernel before 4.12.3 allows local users to cause a denial of service (buffer overflow and system crash) or possibly gain privileges via a crafted NL80211_CMD_FRAME Netlink packet.