ELBA-2022-1198-1

ELBA-2022-1198-1 - kernel bug fix update

Type:BUG
Severity:NA
Release Date:2022-04-06

Description


[3.10.0-1160.62.1.0.1.el7.OL7]
- [xen/netfront] stop tx queues during live migration (Orabug: 33446314)
- [xen/balloon] Support xend-based toolstack (Orabug: 28663970)
- [x86/apic/x2apic] avoid allocate multiple irq vectors for a single interrupt on multiple cpu, otherwise irq vectors would be used up when there are only 2 cpu online per node. [Orabug: 28691156]
- [bonding] avoid repeated display of same link status change. [Orabug: 28109857]
- [ipc] ipc/sem.c: bugfix for semctl(,,GETZCNT) (Manfred Spraul) [Orabug: 22552377
- kexec: Increase KEXEC_AUTO_RESERVED_SIZE to 256M [Orabug: 31517048]

[3.10.0-1160.62.1.el7.OL7]
- Update Oracle Linux certificates (Ilya Okomin)
- Oracle Linux RHCK Module Signing Key was compiled into kernel (olkmod_signing_key.x509)(alexey.petrenko@oracle.com)
- Update x509.genkey [Orabug: 24817676]
- Conflict with shim-ia32 and shim-x64 <= 15-2.0.9.el7
- Update oracle(kernel-sig-key) value to match new certificate (Ilya Okomin)

[3.10.0-1160.62.1.el7]
- cifs: fix handling of DFS links where we can not access all components (Ronnie Sahlberg) [1937304]
- redhat: kernel.spec: install new kernel boot entry in posttrans, not post (Denys Vlasenko) [1893756]
- [s390] s390/cpumf: Support for CPU Measurement Facility CSVN 7 (Mete Durlu) [2048920]
- dm table: fix iterate_devices based device capability checks (Mike Snitzer) [2054743]
- buffer: eliminate the need to call free_more_memory() in __getblk_slow() (Carlos Maiolino) [2030609]
- buffer: grow_dev_page() should use __GFP_NOFAIL for all cases (Carlos Maiolino) [2030609]
- buffer: have alloc_page_buffers() use __GFP_NOFAIL (Carlos Maiolino) [2030609]
- mm: memcg: do not fail __GFP_NOFAIL charges (Rafael Aquini) [2054345]
- mm: filemap: do not drop action modifier flags from the gfp_mask passed to __add_to_page_cache_locked() (Rafael Aquini) [2054345]
- Added ZSTREAM=yes to makefile (Lucas Zampieri)

[3.10.0-1160.61.1.el7]
- x86/efi: reset the correct tlb_state when returning from efi_switch_mm() (Rafael Aquini) [2055587]

[3.10.0-1160.60.1.el7]
- svcrdma: Fix leak of svc_rdma_recv_ctxt objects (Benjamin Coddington) [2028740]
- sunrpc: Remove unneeded pointer dereference (Benjamin Coddington) [2028740]
- x86/platform/uv: Add more to secondary CPU kdump info (Frank Ramsay) [2042462]
- [s390] s390/AP: support new dynamic AP bus size limit (Claudio Imbrenda) [1997156]
- CI: Enable baseline realtime checks (Veronika Kabatova)
- CI: Rename pipelines to include release names (Veronika Kabatova)
- RDMA/cma: Do not change route.addr.src_addr.ss_family (Kamal Heib) [2032075] {CVE-2021-4028}
- fget: clarify and improve __fget_files() implementation (Miklos Szeredi) [2032478] {CVE-2021-4083}
- fget: check that the fd still exists after getting a ref to it (Miklos Szeredi) [2032478] {CVE-2021-4083}
- net: Set fput_needed iff FDPUT_FPUT is set (Miklos Szeredi) [2032478] {CVE-2021-4083}
- vfs, fdtable: Add fget_task helper (Miklos Szeredi) [2032478] {CVE-2021-4083}
- fs: add fget_many() and fput_many() (Miklos Szeredi) [2032478] {CVE-2021-4083}
- fs/file.c: __fget() and dup2() atomicity rules (Miklos Szeredi) [2032478] {CVE-2021-4083}
- vfs: Don't let __fdget_pos() get FMODE_PATH files (Miklos Szeredi) [2032478] {CVE-2021-4083}
- get rid of fget_light() (Miklos Szeredi) [2032478] {CVE-2021-4083}
- sockfd_lookup_light(): switch to fdget^W^Waway from fget_light (Miklos Szeredi) [2032478] {CVE-2021-4083}
- fs: __fget_light() can use __fget() in slow path (Miklos Szeredi) [2032478] {CVE-2021-4083}
- fs: factor out common code in fget_light() and fget_raw_light() (Miklos Szeredi) [2032478] {CVE-2021-4083}
- fs: factor out common code in fget() and fget_raw() (Miklos Szeredi) [2032478] {CVE-2021-4083}
- introduce __fcheck_files() to fix rcu_dereference_check_fdtable(), kill rcu_my_thread_group_empty() (Miklos Szeredi) [2032478] {CVE-2021-4083}




Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (x86_64) kernel-3.10.0-1160.62.1.0.1.el7.src.rpmdeff83b898d8422a2c03d3c0f422dcb8-
bpftool-3.10.0-1160.62.1.0.1.el7.x86_64.rpm589ffaeeea0286285aef74667062d8b8-
kernel-3.10.0-1160.62.1.0.1.el7.x86_64.rpmd9164e7cf001fec3ee1184d2f85f2d81-
kernel-abi-whitelists-3.10.0-1160.62.1.0.1.el7.noarch.rpm34c4f1c79249236aa4276827514032e8-
kernel-debug-3.10.0-1160.62.1.0.1.el7.x86_64.rpmac613611e547269b8d03fb49045196a3-
kernel-debug-devel-3.10.0-1160.62.1.0.1.el7.x86_64.rpmba57e873a833a962f9c31814de350e64-
kernel-devel-3.10.0-1160.62.1.0.1.el7.x86_64.rpm1f1e63aff52b215c93d08f5eb48f3a1a-
kernel-doc-3.10.0-1160.62.1.0.1.el7.noarch.rpmfb1b2c1ecaccc4eac091231611931d26-
kernel-headers-3.10.0-1160.62.1.0.1.el7.x86_64.rpmfdf68cc02d71aa7d86bad3709a5e50b7-
kernel-tools-3.10.0-1160.62.1.0.1.el7.x86_64.rpm016645985ff5ad660a49a70ad9cd53e6-
kernel-tools-libs-3.10.0-1160.62.1.0.1.el7.x86_64.rpm9ddf7140c123b37b1bd065371d31a210-
kernel-tools-libs-devel-3.10.0-1160.62.1.0.1.el7.x86_64.rpme0ba4eaced662342254f043aa5f8b5a3-
perf-3.10.0-1160.62.1.0.1.el7.x86_64.rpma1ebd0986462eac05ed974b0fa880da3-
python-perf-3.10.0-1160.62.1.0.1.el7.x86_64.rpmc94575720fa20a8f3fee225dd3c378ed-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete