Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2023-12527

Опубликовано: 27 июн. 2023
Источник: oracle-oval
Платформа: Oracle Linux 6

Описание

ELSA-2023-12527: kernel security update (IMPORTANT)

[2.6.32-754.35.1.0.8.el6.OL6]

  • Fix epoll: Keep a reference on files added to the check list (Julian Pidancet) {CVE-2020-0466} [Orabug: 34625224]

Обновленные пакеты

Oracle Linux 6

Oracle Linux x86_64

kernel

2.6.32-754.35.1.0.8.el6

kernel-abi-whitelists

2.6.32-754.35.1.0.8.el6

kernel-debug

2.6.32-754.35.1.0.8.el6

kernel-debug-devel

2.6.32-754.35.1.0.8.el6

kernel-devel

2.6.32-754.35.1.0.8.el6

kernel-doc

2.6.32-754.35.1.0.8.el6

kernel-firmware

2.6.32-754.35.1.0.8.el6

kernel-headers

2.6.32-754.35.1.0.8.el6

perf

2.6.32-754.35.1.0.8.el6

python-perf

2.6.32-754.35.1.0.8.el6

Oracle Linux i686

kernel

2.6.32-754.35.1.0.8.el6

kernel-abi-whitelists

2.6.32-754.35.1.0.8.el6

kernel-debug

2.6.32-754.35.1.0.8.el6

kernel-debug-devel

2.6.32-754.35.1.0.8.el6

kernel-devel

2.6.32-754.35.1.0.8.el6

kernel-doc

2.6.32-754.35.1.0.8.el6

kernel-firmware

2.6.32-754.35.1.0.8.el6

kernel-headers

2.6.32-754.35.1.0.8.el6

perf

2.6.32-754.35.1.0.8.el6

python-perf

2.6.32-754.35.1.0.8.el6

Связанные CVE

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 4 лет назад

In do_epoll_ctl and ep_loop_check_proc of eventpoll.c, there is a possible use after free due to a logic error. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-147802478References: Upstream kernel

CVSS3: 7.8
redhat
больше 4 лет назад

In do_epoll_ctl and ep_loop_check_proc of eventpoll.c, there is a possible use after free due to a logic error. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-147802478References: Upstream kernel

CVSS3: 7.8
nvd
больше 4 лет назад

In do_epoll_ctl and ep_loop_check_proc of eventpoll.c, there is a possible use after free due to a logic error. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-147802478References: Upstream kernel

CVSS3: 7.8
debian
больше 4 лет назад

In do_epoll_ctl and ep_loop_check_proc of eventpoll.c, there is a poss ...

github
около 3 лет назад

In do_epoll_ctl and ep_loop_check_proc of eventpoll.c, there is a possible use after free due to a logic error. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-147802478References: Upstream kernel