Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2024-12354

Опубликовано: 07 мая 2024
Источник: oracle-oval
Платформа: Oracle Linux 6
Платформа: Oracle Linux 7

Описание

ELSA-2024-12354: Unbreakable Enterprise kernel security update (IMPORTANT)

[4.1.12-124.85.1]

  • Bluetooth: btsdio: fix use after free bug in btsdio_remove due to race condition (Zheng Wang) [Orabug: 35282809] {CVE-2023-1989}

Обновленные пакеты

Oracle Linux 6

Oracle Linux x86_64

kernel-uek

4.1.12-124.85.1.el6uek

kernel-uek-debug

4.1.12-124.85.1.el6uek

kernel-uek-debug-devel

4.1.12-124.85.1.el6uek

kernel-uek-devel

4.1.12-124.85.1.el6uek

kernel-uek-doc

4.1.12-124.85.1.el6uek

kernel-uek-firmware

4.1.12-124.85.1.el6uek

Oracle Linux 7

Oracle Linux x86_64

kernel-uek

4.1.12-124.85.1.el7uek

kernel-uek-debug

4.1.12-124.85.1.el7uek

kernel-uek-debug-devel

4.1.12-124.85.1.el7uek

kernel-uek-devel

4.1.12-124.85.1.el7uek

kernel-uek-doc

4.1.12-124.85.1.el7uek

kernel-uek-firmware

4.1.12-124.85.1.el7uek

Связанные CVE

Связанные уязвимости

CVSS3: 7
ubuntu
больше 2 лет назад

A use-after-free flaw was found in btsdio_remove in drivers\bluetooth\btsdio.c in the Linux Kernel. In this flaw, a call to btsdio_remove with an unfinished job, may cause a race problem leading to a UAF on hdev devices.

CVSS3: 7
redhat
больше 2 лет назад

A use-after-free flaw was found in btsdio_remove in drivers\bluetooth\btsdio.c in the Linux Kernel. In this flaw, a call to btsdio_remove with an unfinished job, may cause a race problem leading to a UAF on hdev devices.

CVSS3: 7
nvd
больше 2 лет назад

A use-after-free flaw was found in btsdio_remove in drivers\bluetooth\btsdio.c in the Linux Kernel. In this flaw, a call to btsdio_remove with an unfinished job, may cause a race problem leading to a UAF on hdev devices.

CVSS3: 7
debian
больше 2 лет назад

A use-after-free flaw was found in btsdio_remove in drivers\bluetooth\ ...

CVSS3: 7
github
больше 2 лет назад

A use-after-free flaw was found in btsdio_remove in drivers\bluetooth\btsdio.c in the Linux Kernel. In this flaw, a call to btsdio_remove with an unfinished job, may cause a race problem leading to a UAF on hdev devices.