Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2021-1071

Опубликовано: 07 апр. 2021
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2021-1071: kernel security and bug fix update (IMPORTANT)

[3.10.0-1160.24.1.OL7]

  • Update Oracle Linux certificates (Ilya Okomin)
  • Oracle Linux RHCK Module Signing Key was compiled into kernel (olkmod_signing_key.x509)(alexey.petrenko@oracle.com)
  • Update x509.genkey [Orabug: 24817676]
  • Conflict with shim-ia32 and shim-x64 <= 15-2.0.9
  • Update oracle(kernel-sig-key) value to match new certificate (Ilya Okomin)

[3.10.0-1160.24.1]

  • scsi: iscsi: Verify lengths on passthrough PDUs (Chris Leech) [1930826] {CVE-2021-27365}
  • scsi: iscsi: Ensure sysfs attributes are limited to PAGE_SIZE (Chris Leech) [1930849] {CVE-2021-27363}
  • scsi: iscsi: Restrict sessions and handles to admin capabilities (Chris Leech) [1930807] {CVE-2021-27364}
  • redhat: add CI file for kernel-private (Bruno Meneguele)

[3.10.0-1160.23.1]

  • tcm_loop: add WQ_MEM_RECLAIM and flush_work (Maurizio Lombardi) [1925652]
  • net/mlx4_en: Handle TX error CQE (Alaa Hleihel) [1925691]
  • net/mlx4_en: Avoid scheduling restart task if it is already running (Alaa Hleihel) [1925691]

[3.10.0-1160.22.1]

  • mm: do not stall register_shrinker() (Rafael Aquini) [1926043]
  • sched/rt: Fix PI handling vs. sched_setscheduler() (Phil Auld) [1928082]
  • sched/rt: Simplify pull_rt_task() logic and remove .leaf_rt_rq_list (Phil Auld) [1928082]
  • sched: Queue RT tasks to head when prio drops (Phil Auld) [1928082]
  • sched/core: Use READ_ONCE()/WRITE_ONCE() in move_queued_task()/task_rq_lock() (Phil Auld) [1928082]
  • mmc: block: handle complete_work on separate workqueue (Ming Lei) [1918916]
  • tcp: fix to update snd_wl1 in bulk receiver fast path (Vladis Dronov) [1929804]

Обновленные пакеты

Oracle Linux 7

Oracle Linux x86_64

bpftool

3.10.0-1160.24.1.el7

kernel

3.10.0-1160.24.1.el7

kernel-abi-whitelists

3.10.0-1160.24.1.el7

kernel-debug

3.10.0-1160.24.1.el7

kernel-debug-devel

3.10.0-1160.24.1.el7

kernel-devel

3.10.0-1160.24.1.el7

kernel-doc

3.10.0-1160.24.1.el7

kernel-headers

3.10.0-1160.24.1.el7

kernel-tools

3.10.0-1160.24.1.el7

kernel-tools-libs

3.10.0-1160.24.1.el7

kernel-tools-libs-devel

3.10.0-1160.24.1.el7

perf

3.10.0-1160.24.1.el7

python-perf

3.10.0-1160.24.1.el7

Связанные уязвимости

suse-cvrf
около 4 лет назад

Security update for the Linux Kernel (Live Patch 37 for SLE 12 SP3)

oracle-oval
больше 4 лет назад

ELSA-2021-9116: Unbreakable Enterprise kernel-container security update (IMPORTANT)

oracle-oval
больше 4 лет назад

ELSA-2021-9115: Unbreakable Enterprise kernel-container security update (IMPORTANT)

oracle-oval
больше 4 лет назад

ELSA-2021-9114: Unbreakable Enterprise kernel security update (IMPORTANT)

oracle-oval
больше 4 лет назад

ELSA-2021-9113: Unbreakable Enterprise kernel security update (IMPORTANT)

Уязвимость ELSA-2021-1071