Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-RU-2018:0779-1

Опубликовано: 22 мар. 2018
Источник: suse-cvrf

Описание

Recommended update for drbd and drbd-utils

This update for drbd and drbd-utils provides the following fixes:

Changes in drbd:

  • Fix a possible kernel trace while starting the initial syncing of a stacked drbd. (bsc#1058770)
  • Fix auto promotion after split-brain. (bsc#1074228)
  • Support passing '--force' to drbdadm dump-md. (bsc#1077176)
  • Many upstream fixes in version 9.0.8 (bsc#1045473):
    • Fix a race condition between adding connections and receiving data.
    • Fix a OOPS on a diskfull node when a request from a diskless node.
    • Fix a distributed deadlock when doing a discard/write-same burst.
    • Fix an issue with diskless nodes adopting wrong current UUIDs.
    • Fix wrongly rejected two-phase-state transactions.
    • Fix initial resync, triggered by '--force primary'.
    • Speed-up AL-updates with bio flags REQ_META and REQ_PRIO.
    • Merged changes from 8.4.10 and with that compatibility with Linux-4.12.
  • The kernel modules were rebuilt with retpoline support to mitigate Spectre v2 (bsc#1068032 CVE-2017-5715)

Changes in drbd-utils:

  • Fix the wrong device due to udev change. (bsc#1059566)
  • Support passing '--force' to drbdadm dump-md. (bsc#1077176)
  • Fix a possible kernel trace while starting the initial syncing of a stacked drbd. (bsc#1058770)
  • Backport some fixes of peer_device objects.
  • Do not hardcode loglevel local5 and make it possible to change that using --logfacility. (bsc#1064402)
  • Update documentation and examples regarding fencing: it is now moved from the dir to the net section. (bsc#1061145)
  • Skip running drbdadm sh-b-pri in drbd9. (bsc#1061147)
  • Disable quorum in default configuration. (bsc#1032142)
  • Fix auto promotion after split-brain. (bsc#1074228)
  • Use upstream's RA.

Список пакетов

SUSE Linux Enterprise High Availability Extension 12 SP2
drbd-9.0.8+git.c8bc3670-10.8.1
drbd-kmp-default-9.0.8+git.c8bc3670_k4.4.114_92.67-10.8.1
drbd-utils-9.0.0-8.15.1

Описание

Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.


Затронутые продукты
SUSE Linux Enterprise High Availability Extension 12 SP2:drbd-9.0.8+git.c8bc3670-10.8.1
SUSE Linux Enterprise High Availability Extension 12 SP2:drbd-kmp-default-9.0.8+git.c8bc3670_k4.4.114_92.67-10.8.1
SUSE Linux Enterprise High Availability Extension 12 SP2:drbd-utils-9.0.0-8.15.1

Ссылки
Уязвимость SUSE-RU-2018:0779-1