Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2018-1852

Опубликовано: 14 июн. 2018
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2018-1852: kernel security update (MODERATE)

[3.10.0-862.3.3.OL7]

  • Oracle Linux certificates (Alexey Petrenko)
  • Oracle Linux RHCK Module Signing Key was compiled into kernel (olkmod_signing_key.x509)(alexey.petrenko@oracle.com)
  • Update x509.genkey [bug 24817676]

[3.10.0-862.3.3]

  • [x86] always enable eager FPU by default on non-AMD processors (Paolo Bonzini) [1589051 1589048] {CVE-2018-3665}

Обновленные пакеты

Oracle Linux 7

Oracle Linux x86_64

kernel

3.10.0-862.3.3.el7

kernel-abi-whitelists

3.10.0-862.3.3.el7

kernel-debug

3.10.0-862.3.3.el7

kernel-debug-devel

3.10.0-862.3.3.el7

kernel-devel

3.10.0-862.3.3.el7

kernel-doc

3.10.0-862.3.3.el7

kernel-headers

3.10.0-862.3.3.el7

kernel-tools

3.10.0-862.3.3.el7

kernel-tools-libs

3.10.0-862.3.3.el7

kernel-tools-libs-devel

3.10.0-862.3.3.el7

perf

3.10.0-862.3.3.el7

python-perf

3.10.0-862.3.3.el7

Связанные CVE

Связанные уязвимости

CVSS3: 5.6
ubuntu
около 7 лет назад

System software utilizing Lazy FP state restore technique on systems using Intel Core-based microprocessors may potentially allow a local process to infer data from another process through a speculative execution side channel.

CVSS3: 5.6
redhat
около 7 лет назад

System software utilizing Lazy FP state restore technique on systems using Intel Core-based microprocessors may potentially allow a local process to infer data from another process through a speculative execution side channel.

CVSS3: 5.6
nvd
около 7 лет назад

System software utilizing Lazy FP state restore technique on systems using Intel Core-based microprocessors may potentially allow a local process to infer data from another process through a speculative execution side channel.

CVSS3: 5.6
debian
около 7 лет назад

System software utilizing Lazy FP state restore technique on systems u ...

suse-cvrf
около 7 лет назад

Security update for the Linux Kernel (Live Patch 11 for SLE 12 SP3)