Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2021-9457

Опубликовано: 22 сент. 2021
Источник: oracle-oval
Платформа: Oracle Linux 7
Платформа: Oracle Linux 8

Описание

ELSA-2021-9457: Unbreakable Enterprise kernel security update (IMPORTANT)

[5.4.17-2102.205.7.3]

  • btrfs: fix NULL pointer dereference when deleting device by invalid id (Qu Wenruo) [Orabug: 33281078] {CVE-2021-3739}

Обновленные пакеты

Oracle Linux 7

Oracle Linux aarch64

kernel-uek

5.4.17-2102.205.7.3.el7uek

kernel-uek-debug

5.4.17-2102.205.7.3.el7uek

kernel-uek-debug-devel

5.4.17-2102.205.7.3.el7uek

kernel-uek-devel

5.4.17-2102.205.7.3.el7uek

kernel-uek-doc

5.4.17-2102.205.7.3.el7uek

kernel-uek-tools

5.4.17-2102.205.7.3.el7uek

kernel-uek-tools-libs

5.4.17-2102.205.7.3.el7uek

perf

5.4.17-2102.205.7.3.el7uek

python-perf

5.4.17-2102.205.7.3.el7uek

Oracle Linux x86_64

kernel-uek

5.4.17-2102.205.7.3.el7uek

kernel-uek-debug

5.4.17-2102.205.7.3.el7uek

kernel-uek-debug-devel

5.4.17-2102.205.7.3.el7uek

kernel-uek-devel

5.4.17-2102.205.7.3.el7uek

kernel-uek-doc

5.4.17-2102.205.7.3.el7uek

kernel-uek-tools

5.4.17-2102.205.7.3.el7uek

Oracle Linux 8

Oracle Linux aarch64

kernel-uek

5.4.17-2102.205.7.3.el8uek

kernel-uek-debug

5.4.17-2102.205.7.3.el8uek

kernel-uek-debug-devel

5.4.17-2102.205.7.3.el8uek

kernel-uek-devel

5.4.17-2102.205.7.3.el8uek

kernel-uek-doc

5.4.17-2102.205.7.3.el8uek

Oracle Linux x86_64

kernel-uek

5.4.17-2102.205.7.3.el8uek

kernel-uek-debug

5.4.17-2102.205.7.3.el8uek

kernel-uek-debug-devel

5.4.17-2102.205.7.3.el8uek

kernel-uek-devel

5.4.17-2102.205.7.3.el8uek

kernel-uek-doc

5.4.17-2102.205.7.3.el8uek

Связанные CVE

Связанные уязвимости

CVSS3: 7.1
ubuntu
больше 3 лет назад

A NULL pointer dereference flaw was found in the btrfs_rm_device function in fs/btrfs/volumes.c in the Linux Kernel, where triggering the bug requires ‘CAP_SYS_ADMIN’. This flaw allows a local attacker to crash the system or leak kernel internal information. The highest threat from this vulnerability is to system availability.

CVSS3: 6.2
redhat
почти 4 года назад

A NULL pointer dereference flaw was found in the btrfs_rm_device function in fs/btrfs/volumes.c in the Linux Kernel, where triggering the bug requires ‘CAP_SYS_ADMIN’. This flaw allows a local attacker to crash the system or leak kernel internal information. The highest threat from this vulnerability is to system availability.

CVSS3: 7.1
nvd
больше 3 лет назад

A NULL pointer dereference flaw was found in the btrfs_rm_device function in fs/btrfs/volumes.c in the Linux Kernel, where triggering the bug requires ‘CAP_SYS_ADMIN’. This flaw allows a local attacker to crash the system or leak kernel internal information. The highest threat from this vulnerability is to system availability.

CVSS3: 7.1
msrc
больше 3 лет назад

Описание отсутствует

CVSS3: 7.1
debian
больше 3 лет назад

A NULL pointer dereference flaw was found in the btrfs_rm_device funct ...