Описание
ELSA-2020-5881: Unbreakable Enterprise kernel security update (IMPORTANT)
[2.6.39-400.326.1]
- ath9k_htc: release allocated buffer if timed out (Navid Emamdoost) [Orabug: 31351574] {CVE-2019-19073}
- USB: serial: io_ti: fix information leak in completion handler (Johan Hovold) [Orabug: 31352086] {CVE-2017-8924}
- mm/hugetlb: fix a race between hugetlb sysctl handlers (Muchun Song) [Orabug: 31884244] {CVE-2020-25285}
- ext4: fix potential negative array index in do_split() (Eric Sandeen) [Orabug: 31895333] {CVE-2020-14314}
Обновленные пакеты
Oracle Linux 5
Oracle Linux x86_64
kernel-uek
2.6.39-400.326.1.el5uek
kernel-uek-debug
2.6.39-400.326.1.el5uek
kernel-uek-debug-devel
2.6.39-400.326.1.el5uek
kernel-uek-devel
2.6.39-400.326.1.el5uek
kernel-uek-doc
2.6.39-400.326.1.el5uek
kernel-uek-firmware
2.6.39-400.326.1.el5uek
Oracle Linux i386
kernel-uek
2.6.39-400.326.1.el5uek
kernel-uek-debug
2.6.39-400.326.1.el5uek
kernel-uek-debug-devel
2.6.39-400.326.1.el5uek
kernel-uek-devel
2.6.39-400.326.1.el5uek
kernel-uek-doc
2.6.39-400.326.1.el5uek
kernel-uek-firmware
2.6.39-400.326.1.el5uek
Oracle Linux 6
Oracle Linux x86_64
kernel-uek
2.6.39-400.326.1.el6uek
kernel-uek-debug
2.6.39-400.326.1.el6uek
kernel-uek-debug-devel
2.6.39-400.326.1.el6uek
kernel-uek-devel
2.6.39-400.326.1.el6uek
kernel-uek-doc
2.6.39-400.326.1.el6uek
kernel-uek-firmware
2.6.39-400.326.1.el6uek
Oracle Linux i686
kernel-uek
2.6.39-400.326.1.el6uek
kernel-uek-debug
2.6.39-400.326.1.el6uek
kernel-uek-debug-devel
2.6.39-400.326.1.el6uek
kernel-uek-devel
2.6.39-400.326.1.el6uek
kernel-uek-doc
2.6.39-400.326.1.el6uek
kernel-uek-firmware
2.6.39-400.326.1.el6uek
Связанные уязвимости
ELSA-2020-5879: Unbreakable Enterprise kernel security update (IMPORTANT)
ELSA-2020-5866: Unbreakable Enterprise kernel security update (IMPORTANT)
ELSA-2020-5884: Unbreakable Enterprise kernel security update (IMPORTANT)
A memory out-of-bounds read flaw was found in the Linux kernel before 5.9-rc2 with the ext3/ext4 file system, in the way it accesses a directory with broken indexing. This flaw allows a local user to crash the system if the directory exists. The highest threat from this vulnerability is to system availability.
A memory out-of-bounds read flaw was found in the Linux kernel before 5.9-rc2 with the ext3/ext4 file system, in the way it accesses a directory with broken indexing. This flaw allows a local user to crash the system if the directory exists. The highest threat from this vulnerability is to system availability.