Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2024-12845

Опубликовано: 25 нояб. 2024
Источник: oracle-oval
Платформа: Oracle Linux 7
Платформа: Oracle Linux 8

Описание

ELSA-2024-12845: Unbreakable Enterprise kernel security update (IMPORTANT)

[5.4.17-2136.336.5.3.1.el8uek]

  • mm: avoid leaving partial pfn mappings around in error case (Linus Torvalds) [Orabug: 37311329] {CVE-2024-47674}
  • mm: add remap_pfn_range_notrack (Christoph Hellwig) [Orabug: 37311329] {CVE-2024-47674}
  • mm/memory.c: make remap_pfn_range() reject unaligned addr (Alex Zhang) [Orabug: 37311329] {CVE-2024-47674}
  • mm: fix ambiguous comments for better code readability (chenqiwu) [Orabug: 37311329] {CVE-2024-47674}
  • mm: clarify a confusing comment for remap_pfn_range() (WANG Wenhu) [Orabug: 37311329] {CVE-2024-47674}
  • devlink: fix possible use-after-free and memory leaks in devlink_init() (Vasiliy Kovalev) [Orabug: 37311325] {CVE-2024-26734}

Обновленные пакеты

Oracle Linux 7

Oracle Linux aarch64

kernel-uek

5.4.17-2136.336.5.3.1.el7uek

kernel-uek-debug

5.4.17-2136.336.5.3.1.el7uek

kernel-uek-debug-devel

5.4.17-2136.336.5.3.1.el7uek

kernel-uek-devel

5.4.17-2136.336.5.3.1.el7uek

kernel-uek-doc

5.4.17-2136.336.5.3.1.el7uek

kernel-uek-tools

5.4.17-2136.336.5.3.1.el7uek

kernel-uek-tools-libs

5.4.17-2136.336.5.3.1.el7uek

perf

5.4.17-2136.336.5.3.1.el7uek

python-perf

5.4.17-2136.336.5.3.1.el7uek

Oracle Linux x86_64

kernel-uek

5.4.17-2136.336.5.3.1.el7uek

kernel-uek-container

5.4.17-2136.336.5.3.1.el7uek

kernel-uek-container-debug

5.4.17-2136.336.5.3.1.el7uek

kernel-uek-debug

5.4.17-2136.336.5.3.1.el7uek

kernel-uek-debug-devel

5.4.17-2136.336.5.3.1.el7uek

kernel-uek-devel

5.4.17-2136.336.5.3.1.el7uek

kernel-uek-doc

5.4.17-2136.336.5.3.1.el7uek

kernel-uek-tools

5.4.17-2136.336.5.3.1.el7uek

Oracle Linux 8

Oracle Linux aarch64

kernel-uek

5.4.17-2136.336.5.3.1.el8uek

kernel-uek-debug

5.4.17-2136.336.5.3.1.el8uek

kernel-uek-debug-devel

5.4.17-2136.336.5.3.1.el8uek

kernel-uek-devel

5.4.17-2136.336.5.3.1.el8uek

kernel-uek-doc

5.4.17-2136.336.5.3.1.el8uek

Oracle Linux x86_64

kernel-uek

5.4.17-2136.336.5.3.1.el8uek

kernel-uek-container

5.4.17-2136.336.5.3.1.el8uek

kernel-uek-container-debug

5.4.17-2136.336.5.3.1.el8uek

kernel-uek-debug

5.4.17-2136.336.5.3.1.el8uek

kernel-uek-debug-devel

5.4.17-2136.336.5.3.1.el8uek

kernel-uek-devel

5.4.17-2136.336.5.3.1.el8uek

kernel-uek-doc

5.4.17-2136.336.5.3.1.el8uek

Связанные CVE

Связанные уязвимости

oracle-oval
7 месяцев назад

ELSA-2024-12830: Unbreakable Enterprise kernel security update (IMPORTANT)

oracle-oval
8 месяцев назад

ELSA-2024-12796: Unbreakable Enterprise kernel security update (IMPORTANT)

CVSS3: 7.8
ubuntu
около 1 года назад

In the Linux kernel, the following vulnerability has been resolved: devlink: fix possible use-after-free and memory leaks in devlink_init() The pernet operations structure for the subsystem must be registered before registering the generic netlink family. Make an unregister in case of unsuccessful registration.

CVSS3: 5.5
redhat
около 1 года назад

In the Linux kernel, the following vulnerability has been resolved: devlink: fix possible use-after-free and memory leaks in devlink_init() The pernet operations structure for the subsystem must be registered before registering the generic netlink family. Make an unregister in case of unsuccessful registration.

CVSS3: 7.8
nvd
около 1 года назад

In the Linux kernel, the following vulnerability has been resolved: devlink: fix possible use-after-free and memory leaks in devlink_init() The pernet operations structure for the subsystem must be registered before registering the generic netlink family. Make an unregister in case of unsuccessful registration.