ELSA-2015-0674

ELSA-2015-0674 - kernel security and bug fix update

Type:SECURITY
Severity:IMPORTANT
Release Date:2015-03-11

Description


[2.6.32-504.12.2]
- [infiniband] core: Prevent integer overflow in ib_umem_get address arithmetic (Doug Ledford) [1181173 1179327] {CVE-2014-8159}

[2.6.32-504.12.1]
- [fs] splice: perform generic write checks (Eric Sandeen) [1163798 1155900] {CVE-2014-7822}

[2.6.32-504.11.1]
- [virt] kvm: excessive pages un-pinning in kvm_iommu_map error path (Jacob Tanenbaum) [1156520 1156521] {CVE-2014-8369}
- [x86] crypto: Add support for 192 & 256 bit keys to AESNI RFC4106 (Jarod Wilson) [1184332 1176211]
- [block] nvme: Clear QUEUE_FLAG_STACKABLE (David Milburn) [1180555 1155715]
- [net] netfilter: conntrack: disable generic tracking for known protocols (Daniel Borkmann) [1182071 1114697] {CVE-2014-8160}
- [xen] pvhvm: Fix vcpu hotplugging hanging (Vitaly Kuznetsov) [1179343 1164278]
- [xen] pvhvm: Don't point per_cpu(xen_vpcu, 33 and larger) to shared_info (Vitaly Kuznetsov) [1179343 1164278]
- [xen] enable PVHVM VCPU placement when using more than 32 CPUs (Vitaly Kuznetsov) [1179343 1164278]
- [xen] support large numbers of CPUs with vcpu info placement (Vitaly Kuznetsov) [1179343 1164278]

[2.6.32-504.10.1]
- [netdrv] tg3: Change nvram command timeout value to 50ms (Ivan Vecera) [1182903 1176230]

[2.6.32-504.9.1]
- [net] ipv6: increase ip6_rt_max_size to 16384 (Hannes Frederic Sowa) [1177581 1112946]
- [net] ipv6: don't set DST_NOCOUNT for remotely added routes (Hannes Frederic Sowa) [1177581 1112946]
- [net] ipv6: don't count addrconf generated routes against gc limit (Hannes Frederic Sowa) [1177581 1112946]
- [net] ipv6: Don't put artificial limit on routing table size (Hannes Frederic Sowa) [1177581 1112946]
- [scsi] bnx2fc: fix tgt spinlock locking (Maurizio Lombardi) [1179098 1079656]


Related CVEs


CVE-2014-7822
CVE-2014-8160
CVE-2014-8159
CVE-2014-8369

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 6 (i386) kernel-2.6.32-504.12.2.el6.src.rpm087a353483acbe539ec0cdbb4b50d1e4ELSA-2021-9212
kernel-2.6.32-504.12.2.el6.i686.rpme0fd1bdc8ab54430e4ad7489f5ee385cELSA-2021-9212
kernel-abi-whitelists-2.6.32-504.12.2.el6.noarch.rpmff8cf2c5c55c214ccb63098c500a6f77ELSA-2021-9212
kernel-debug-2.6.32-504.12.2.el6.i686.rpm048d225b7039722fcadc4b8a957e62adELSA-2021-9212
kernel-debug-devel-2.6.32-504.12.2.el6.i686.rpmc3578e84fc56e5bcccce0f4481046ba7ELSA-2021-9212
kernel-devel-2.6.32-504.12.2.el6.i686.rpm683e3f6269cc6a1a7a57cf0e4dbe6fe7ELSA-2021-9212
kernel-doc-2.6.32-504.12.2.el6.noarch.rpm2ced38522a0efaf62a88f090323d6450ELSA-2021-9212
kernel-firmware-2.6.32-504.12.2.el6.noarch.rpm063d9158c5b9fb7374635b11e13eecacELSA-2021-9212
kernel-headers-2.6.32-504.12.2.el6.i686.rpma2eb70c74a601e60b742e6239523b5eaELSA-2021-9212
perf-2.6.32-504.12.2.el6.i686.rpm4a934d58c39c2a13ca0df690ce0ad54dELSA-2021-9212
python-perf-2.6.32-504.12.2.el6.i686.rpmb8f9f6e1f5f8bdb89360187ed7d3ff6cELSA-2021-9212
Oracle Linux 6 (x86_64) kernel-2.6.32-504.12.2.el6.src.rpm087a353483acbe539ec0cdbb4b50d1e4ELSA-2021-9212
kernel-2.6.32-504.12.2.el6.x86_64.rpmd0e6d996442bc417a0d7e576b9033888ELSA-2021-9212
kernel-abi-whitelists-2.6.32-504.12.2.el6.noarch.rpmff8cf2c5c55c214ccb63098c500a6f77ELSA-2021-9212
kernel-debug-2.6.32-504.12.2.el6.x86_64.rpm287513639e4c11fa988c164e89094409ELSA-2021-9212
kernel-debug-devel-2.6.32-504.12.2.el6.x86_64.rpme5272c7d1293a6e05b47f421e0a64fa6ELSA-2021-9212
kernel-devel-2.6.32-504.12.2.el6.x86_64.rpm2a76232ba6f54ae71289c54ced013be9ELSA-2021-9212
kernel-doc-2.6.32-504.12.2.el6.noarch.rpm2ced38522a0efaf62a88f090323d6450ELSA-2021-9212
kernel-firmware-2.6.32-504.12.2.el6.noarch.rpm063d9158c5b9fb7374635b11e13eecacELSA-2021-9212
kernel-headers-2.6.32-504.12.2.el6.x86_64.rpmac018698f2f06c7afa85135369953ce1ELSA-2021-9212
perf-2.6.32-504.12.2.el6.x86_64.rpm07730823f36975ab34620fef686f70eeELSA-2021-9212
python-perf-2.6.32-504.12.2.el6.x86_64.rpma36ea315b46e977bcdd8803b69b7094fELSA-2021-9212



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete