Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2019-4594

Опубликовано: 26 мар. 2019
Источник: oracle-oval
Платформа: Oracle Linux 6
Платформа: Oracle Linux 7

Описание

ELSA-2019-4594: Unbreakable Enterprise kernel security update (IMPORTANT)

[4.1.12-124.26.5]

  • scsi: scsi_transport_iscsi: modify detected conn err to KERN_ERR (Fred Herard) [Orabug: 29487790]
  • xen/blkfront: avoid NULL blkfront_info dereference on device removal (Vasilis Liaskovitis) [Orabug: 29469740]

[4.1.12-124.26.4U]

  • bnxt_en: Fix race conditions in .ndo_get_stats64(). (Michael Chan) [Orabug: 29129625]
  • ext4: always verify the magic number in xattr blocks (Theodore Ts'o) [Orabug: 29437127] {CVE-2018-10879} {CVE-2018-10879}
  • ext4: add corruption check in ext4_xattr_set_entry() (Theodore Ts'o) [Orabug: 29437127] {CVE-2018-10879} {CVE-2018-10879}
  • net: add netif_is_lag_port helper (Jiri Pirko) [Orabug: 29495360]
  • net: add netif_is_lag_master helper (Jiri Pirko) [Orabug: 29495360]
  • net: add netif_is_team_port helper (Jiri Pirko) [Orabug: 29495360]
  • net: add netif_is_team_master helper (Jiri Pirko) [Orabug: 29495360]

Обновленные пакеты

Oracle Linux 6

Oracle Linux x86_64

kernel-uek

4.1.12-124.26.5.el6uek

kernel-uek-debug

4.1.12-124.26.5.el6uek

kernel-uek-debug-devel

4.1.12-124.26.5.el6uek

kernel-uek-devel

4.1.12-124.26.5.el6uek

kernel-uek-doc

4.1.12-124.26.5.el6uek

kernel-uek-firmware

4.1.12-124.26.5.el6uek

Oracle Linux 7

Oracle Linux x86_64

kernel-uek

4.1.12-124.26.5.el7uek

kernel-uek-debug

4.1.12-124.26.5.el7uek

kernel-uek-debug-devel

4.1.12-124.26.5.el7uek

kernel-uek-devel

4.1.12-124.26.5.el7uek

kernel-uek-doc

4.1.12-124.26.5.el7uek

kernel-uek-firmware

4.1.12-124.26.5.el7uek

Связанные CVE

Связанные уязвимости

CVSS3: 4.2
ubuntu
почти 7 лет назад

A flaw was found in the Linux kernel's ext4 filesystem. A local user can cause a use-after-free in ext4_xattr_set_entry function and a denial of service or unspecified other impact may occur by renaming a file in a crafted ext4 filesystem image.

CVSS3: 4.2
redhat
около 7 лет назад

A flaw was found in the Linux kernel's ext4 filesystem. A local user can cause a use-after-free in ext4_xattr_set_entry function and a denial of service or unspecified other impact may occur by renaming a file in a crafted ext4 filesystem image.

CVSS3: 4.2
nvd
почти 7 лет назад

A flaw was found in the Linux kernel's ext4 filesystem. A local user can cause a use-after-free in ext4_xattr_set_entry function and a denial of service or unspecified other impact may occur by renaming a file in a crafted ext4 filesystem image.

CVSS3: 4.2
debian
почти 7 лет назад

A flaw was found in the Linux kernel's ext4 filesystem. A local user c ...

CVSS3: 7.8
github
около 3 лет назад

A flaw was found in the Linux kernel's ext4 filesystem. A local user can cause a use-after-free in ext4_xattr_set_entry function and a denial of service or unspecified other impact may occur by renaming a file in a crafted ext4 filesystem image.