Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2017-3620

Опубликовано: 19 сент. 2017
Источник: oracle-oval
Платформа: Oracle Linux 6
Платформа: Oracle Linux 7

Описание

ELSA-2017-3620: Unbreakable Enterprise kernel security update (IMPORTANT)

kernel-uek [4.1.12-103.3.8.1]

  • Bluetooth: Properly check L2CAP config option output buffer length (Ben Seri) [Orabug: 26796363] {CVE-2017-1000251}

Обновленные пакеты

Oracle Linux 6

Oracle Linux x86_64

dtrace-modules-4.1.12-103.3.8.1.el6uek

0.6.1-3.el6

kernel-uek

4.1.12-103.3.8.1.el6uek

kernel-uek-debug

4.1.12-103.3.8.1.el6uek

kernel-uek-debug-devel

4.1.12-103.3.8.1.el6uek

kernel-uek-devel

4.1.12-103.3.8.1.el6uek

kernel-uek-doc

4.1.12-103.3.8.1.el6uek

kernel-uek-firmware

4.1.12-103.3.8.1.el6uek

Oracle Linux 7

Oracle Linux x86_64

dtrace-modules-4.1.12-103.3.8.1.el7uek

0.6.1-3.el7

kernel-uek

4.1.12-103.3.8.1.el7uek

kernel-uek-debug

4.1.12-103.3.8.1.el7uek

kernel-uek-debug-devel

4.1.12-103.3.8.1.el7uek

kernel-uek-devel

4.1.12-103.3.8.1.el7uek

kernel-uek-doc

4.1.12-103.3.8.1.el7uek

kernel-uek-firmware

4.1.12-103.3.8.1.el7uek

Связанные CVE

Связанные уязвимости

CVSS3: 8
ubuntu
около 8 лет назад

The native Bluetooth stack in the Linux Kernel (BlueZ), starting at the Linux kernel version 2.6.32 and up to and including 4.13.1, are vulnerable to a stack overflow vulnerability in the processing of L2CAP configuration responses resulting in Remote code execution in kernel space.

CVSS3: 7.5
redhat
около 8 лет назад

The native Bluetooth stack in the Linux Kernel (BlueZ), starting at the Linux kernel version 2.6.32 and up to and including 4.13.1, are vulnerable to a stack overflow vulnerability in the processing of L2CAP configuration responses resulting in Remote code execution in kernel space.

CVSS3: 8
nvd
около 8 лет назад

The native Bluetooth stack in the Linux Kernel (BlueZ), starting at the Linux kernel version 2.6.32 and up to and including 4.13.1, are vulnerable to a stack overflow vulnerability in the processing of L2CAP configuration responses resulting in Remote code execution in kernel space.

CVSS3: 8
debian
около 8 лет назад

The native Bluetooth stack in the Linux Kernel (BlueZ), starting at th ...

suse-cvrf
около 8 лет назад

Security update for Linux Kernel Live Patch 1 for SLE 12 SP3