Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2019-4600

Опубликовано: 08 апр. 2019
Источник: oracle-oval
Платформа: Oracle Linux 6
Платформа: Oracle Linux 7

Описание

ELSA-2019-4600: Unbreakable Enterprise kernel security update (IMPORTANT)

kernel-uek [3.8.13-118.32.1]

  • x86/fpu: Factor out memset(xstate, 0) in fpu_finit() paths (Oleg Nesterov) [Orabug: 29012034]
  • x86/fpu: Always allow FPU in interrupt if use_eager_fpu() (Oleg Nesterov) [Orabug: 29012034]
  • x86/fpu: Fix 32-bit signal frame handling (Dave Hansen) [Orabug: 29012034]
  • x86/fpu: Don't do __thread_fpu_end() if use_eager_fpu() (Oleg Nesterov) [Orabug: 29012034]
  • x86/fpu: Don't reset fpu_counter (Oleg Nesterov) [Orabug: 29012034]
  • x86, fpu: Fix math_state_restore() race with kernel_fpu_begin() (Oleg Nesterov) [Orabug: 29012034]
  • x86, fpu: Introduce per-cpu in_kernel_fpu state (Oleg Nesterov) [Orabug: 29012034]
  • x86, fpu: Don't abuse has_fpu in __kernel_fpu_begin/end() (Oleg Nesterov) [Orabug: 29012034]
  • x86: Allow FPU to be used at interrupt time even with eagerfpu (Pekka Riikonen) [Orabug: 29012034]
  • can: gw: ensure DLC boundaries after CAN frame modification (Oliver Hartkopp) [Orabug: 29215300] {CVE-2019-3701} {CVE-2019-3701}
  • ext4: verify the depth of extent tree in ext4_find_extent() (Theodore Ts'o) [Orabug: 29396713] {CVE-2018-10877} {CVE-2018-10877}
  • ext4: always verify the magic number in xattr blocks (Theodore Ts'o) [Orabug: 29437128] {CVE-2018-10879} {CVE-2018-10879}
  • ext4: add corruption check in ext4_xattr_set_entry() (Theodore Ts'o) [Orabug: 29437128] {CVE-2018-10879} {CVE-2018-10879}
  • ext4: clear i_data in ext4_inode_info when removing inline data (Theodore Ts'o) [Orabug: 29540710] {CVE-2018-10881} {CVE-2018-10881}
  • ext4: add more inode number paranoia checks (Theodore Ts'o) [Orabug: 29545567] {CVE-2018-10882} {CVE-2018-10882}

Обновленные пакеты

Oracle Linux 6

Oracle Linux x86_64

dtrace-modules-3.8.13-118.32.1.el6uek

0.4.5-3.el6

kernel-uek

3.8.13-118.32.1.el6uek

kernel-uek-debug

3.8.13-118.32.1.el6uek

kernel-uek-debug-devel

3.8.13-118.32.1.el6uek

kernel-uek-devel

3.8.13-118.32.1.el6uek

kernel-uek-doc

3.8.13-118.32.1.el6uek

kernel-uek-firmware

3.8.13-118.32.1.el6uek

Oracle Linux 7

Oracle Linux x86_64

dtrace-modules-3.8.13-118.32.1.el7uek

0.4.5-3.el7

kernel-uek

3.8.13-118.32.1.el7uek

kernel-uek-debug

3.8.13-118.32.1.el7uek

kernel-uek-debug-devel

3.8.13-118.32.1.el7uek

kernel-uek-devel

3.8.13-118.32.1.el7uek

kernel-uek-doc

3.8.13-118.32.1.el7uek

kernel-uek-firmware

3.8.13-118.32.1.el7uek

Связанные уязвимости

suse-cvrf
почти 7 лет назад

Security update for the Linux Kernel

suse-cvrf
почти 7 лет назад

Security update for the Linux Kernel

suse-cvrf
почти 7 лет назад

Security update for the Linux Kernel

suse-cvrf
почти 7 лет назад

Security update for the Linux Kernel

suse-cvrf
почти 7 лет назад

Security update for the Linux Kernel