ELSA-2020-5023

ELSA-2020-5023 - kernel security and bug fix update

Type:SECURITY
Impact:MODERATE
Release Date:2020-11-11

Description


[3.10.0-1160.6.1.OL7]
- Oracle Linux certificates (Ilya Okomin)
- Oracle Linux RHCK Module Signing Key was compiled into kernel (olkmod_signing_key.x509)(alexey.petrenko@oracle.com)
- Update x509.genkey [Orabug: 24817676]
- Conflict with shim-ia32 and shim-x64 <= 15-2.0.3

[3.10.0-1160.6.1]
- [net] netfilter: nf_queue: place bridge physports into queue_entry struct (Florian Westphal) [1885682]
- [net] netfilter: nf_queue: do not release refcouts until nf_reinject is done (Florian Westphal) [1885682]
- [net] netfilter: nf_queue: make nf_queue_entry_release_refs static (Florian Westphal) [1885682]
- [net] bluetooth: l2cap: Fix calling sk_filter on non-socket based channel (Gopal Tiwari) [1888253] {CVE-2020-12351}
- [net] bluetooth: a2mp: Fix not initializing all members (Gopal Tiwari) [1888797] {CVE-2020-12352}

[3.10.0-1160.5.1]
- [x86] x86/PCI: Mark Intel C620 MROMs as having non-compliant BARs (Myron Stowe) [1849223]
- [kernel] uprobes: Change handle_swbp() to send SIGTRAP with si_code=SI_KERNEL, to fix GDB regression (Oleg Nesterov) [1861396]
- [video] vgacon: Fix for missing check in scrollback handling (Lyude Paul) [1859468] {CVE-2020-14331}
- [pci] hv: Retry PCI bus D0 entry on invalid device state (Mohammed Gamal) [1846667]
- [pci] hv: Fix the PCI HyperV probe failure path to release resource properly (Mohammed Gamal) [1846667]
- [x86] xen: Add call of speculative_store_bypass_ht_init() to PV paths (Vladis Dronov) [1882468]
- [powerpc] powerpc/smp: Use nid as fallback for package_id (Desnes Augusto Nunes do Rosario) [1826306]
- [powerpc] powerpc/smp: Add Power9 scheduler topology (Desnes Augusto Nunes do Rosario) [1826306]
- [kernel] sched: Add a new SD_SHARE_POWERDOMAIN for sched_domain (Desnes Augusto Nunes do Rosario) [1826306]
- [powerpc] sched, powerpc: Create a dedicated topology table (Desnes Augusto Nunes do Rosario) [1826306]
- [s390] sched, s390: Create a dedicated topology table (Desnes Augusto Nunes do Rosario) [1826306]
- [s390] s390/topology: Remove call to update_cpu_masks() (Desnes Augusto Nunes do Rosario) [1826306]
- [powerpc] powerpc/smp: Add cpu_l2_cache_map (Desnes Augusto Nunes do Rosario) [1826306]
- [powerpc] powerpc/smp: Rework CPU topology construction (Desnes Augusto Nunes do Rosario) [1826306]
- [powerpc] powerpc/smp: Use cpu_to_chip_id() to find core siblings (Desnes Augusto Nunes do Rosario) [1826306]
- [powerpc] powerpc, hotplug: Avoid to touch non-existent cpumasks (Desnes Augusto Nunes do Rosario) [1826306]

[3.10.0-1160.4.1]
- [block] virtio-blk: handle block_device_operations callbacks after hot unplug (Stefan Hajnoczi) [1811893]
- [scsi] Revert 'scsi: qla2xxx: Fix crash on qla2x00_mailbox_command' (Nilesh Javali) [1826127]
- [scsi] scsi: qla2xxx: Fix stale mem access on driver unload (Nilesh Javali) [1826127]
- [scsi] scsi: qedf: Fix crash when MFW calls for protocol stats while function is still probing (Nilesh Javali) [1836443]
- [scsi] scsi: qedf: Keep track of num of pending flogi (Nilesh Javali) [1836443]
- [scsi] scsi: qedf: Fix race betwen fipvlan request and response path (Nilesh Javali) [1836443]
- [scsi] scsi: qedf: Decrease the LL2 MTU size to 2500 (Nilesh Javali) [1836443]
- [scsi] scsi: qedf: Check for module unloading bit before processing link update AEN (Nilesh Javali) [1836443]
- [scsi] scsi: qedf: Initiator fails to re-login to switch after link down (Nilesh Javali) [1836443]
- [scsi] scsi: qedf: Fix crash during sg_reset (Nilesh Javali) [1836443]
- [scsi] scsi: qedf: Stop sending fipvlan request on unload (Nilesh Javali) [1836443]
- [message] scsi: mptscsih: Fix read sense data size (Tomas Henzl) [1829803]
- [scsi] scsi: megaraid_sas: Clear affinity hint (Tomas Henzl) [1828312]

[3.10.0-1160.3.1]
- [net] net-sysfs: Call dev_hold always in rx_queue_add_kobject (Hangbin Liu) [1846454] {CVE-2019-20811}
- [net] net-sysfs: Call dev_hold always in netdev_queue_add_kobject (Hangbin Liu) [1846454] {CVE-2019-20811}
- [net] net-sysfs: call dev_hold if kobject_init_and_add success (Hangbin Liu) [1846454] {CVE-2019-20811}
- [netdrv] macvlan: Change status when lower device goes down (Hangbin Liu) [1848950]
- [netdrv] macvlan: make operstate and carrier more accurate (Hangbin Liu) [1848950]
- [infiniband] RDMA/ipoib: Fix ABBA deadlock with ipoib_reap_ah() (Kamal Heib) [1858707]
- [infiniband] RDMA/ipoib: Return void from ipoib_ib_dev_stop() (Kamal Heib) [1858707]
- [net] tcp: limit sk_write_qlen based on sndbuf size (Florian Westphal) [1847765]
- [netdrv] net/mlx5e: Modify uplink state on interface up/down (Alaa Hleihel) [1733181]
- [netdrv] net/mlx5: E-Switch, Disable esw manager vport correctly (Alaa Hleihel) [1733181]
- [netdrv] net/mlx5: E-Switch, Properly refer to host PF vport as other vport (Alaa Hleihel) [1733181]


Related CVEs


CVE-2019-20811
CVE-2020-14331

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 7 (x86_64) kernel-3.10.0-1160.6.1.el7.src.rpmc55496aec03384e5a8b285ff7dbb10988e9293e4fc12f22ba4b198b64aceed82ELSA-2025-1281ol7_x86_64_latest
kernel-3.10.0-1160.6.1.el7.src.rpmc55496aec03384e5a8b285ff7dbb10988e9293e4fc12f22ba4b198b64aceed82ELSA-2025-1281ol7_x86_64_optional_latest
kernel-3.10.0-1160.6.1.el7.src.rpmc55496aec03384e5a8b285ff7dbb10988e9293e4fc12f22ba4b198b64aceed82ELSA-2025-1281ol7_x86_64_u9_patch
bpftool-3.10.0-1160.6.1.el7.x86_64.rpm9cf7f02d5677f9e48bfe1f8422d529ef0393e4a70cc5470f82c91b7888f64274ELSA-2025-1281ol7_x86_64_latest
bpftool-3.10.0-1160.6.1.el7.x86_64.rpm9cf7f02d5677f9e48bfe1f8422d529ef0393e4a70cc5470f82c91b7888f64274ELSA-2025-1281ol7_x86_64_u9_patch
kernel-3.10.0-1160.6.1.el7.x86_64.rpm90d3a070777c3cd3547c486c5c01ea43c854ec9d0e560d1d45f999449adcb768ELSA-2025-1281ol7_x86_64_latest
kernel-3.10.0-1160.6.1.el7.x86_64.rpm90d3a070777c3cd3547c486c5c01ea43c854ec9d0e560d1d45f999449adcb768ELSA-2025-1281ol7_x86_64_u9_patch
kernel-abi-whitelists-3.10.0-1160.6.1.el7.noarch.rpm7df52b18286c4d6df9026ecde022a6fd67f5b9bb2584acb23713620853c1e034ELSA-2025-1281ol7_x86_64_latest
kernel-abi-whitelists-3.10.0-1160.6.1.el7.noarch.rpm7df52b18286c4d6df9026ecde022a6fd67f5b9bb2584acb23713620853c1e034ELSA-2025-1281ol7_x86_64_u9_patch
kernel-debug-3.10.0-1160.6.1.el7.x86_64.rpm7ed3f9fb04f7cad07bc8261232ae87fb9069ed824ea9efd020e1bf604e11685dELSA-2025-1281ol7_x86_64_latest
kernel-debug-3.10.0-1160.6.1.el7.x86_64.rpm7ed3f9fb04f7cad07bc8261232ae87fb9069ed824ea9efd020e1bf604e11685dELSA-2025-1281ol7_x86_64_u9_patch
kernel-debug-devel-3.10.0-1160.6.1.el7.x86_64.rpmb6179a3ec609919432683e7b4ad3996e25d5f7125ace30008decb5dcb1ba5d1bELSA-2025-1281ol7_x86_64_latest
kernel-debug-devel-3.10.0-1160.6.1.el7.x86_64.rpmb6179a3ec609919432683e7b4ad3996e25d5f7125ace30008decb5dcb1ba5d1bELSA-2025-1281ol7_x86_64_u9_patch
kernel-devel-3.10.0-1160.6.1.el7.x86_64.rpm03b1dff9acc6ede02e9a99db4e63f108925a0484e8598487e6fda771860ab64dELSA-2025-1281ol7_x86_64_latest
kernel-devel-3.10.0-1160.6.1.el7.x86_64.rpm03b1dff9acc6ede02e9a99db4e63f108925a0484e8598487e6fda771860ab64dELSA-2025-1281ol7_x86_64_u9_patch
kernel-doc-3.10.0-1160.6.1.el7.noarch.rpm0c61696c6c6f1bc4c2363262d6e08be1f8418c5f834cff66b2c2aa30f9fae54dELSA-2025-1281ol7_x86_64_latest
kernel-doc-3.10.0-1160.6.1.el7.noarch.rpm0c61696c6c6f1bc4c2363262d6e08be1f8418c5f834cff66b2c2aa30f9fae54dELSA-2025-1281ol7_x86_64_u9_patch
kernel-headers-3.10.0-1160.6.1.el7.x86_64.rpm82ca7126ce62e28fd708b731c3f9cc2101eade8b33b1fa4291c6d9cb90ae3d48ELSA-2025-1281exadata_dbserver_19.2.21.0.0_x86_64_base
kernel-headers-3.10.0-1160.6.1.el7.x86_64.rpm82ca7126ce62e28fd708b731c3f9cc2101eade8b33b1fa4291c6d9cb90ae3d48ELSA-2025-1281exadata_dbserver_19.3.15.0.0_x86_64_base
kernel-headers-3.10.0-1160.6.1.el7.x86_64.rpm82ca7126ce62e28fd708b731c3f9cc2101eade8b33b1fa4291c6d9cb90ae3d48ELSA-2025-1281exadata_dbserver_20.1.5.0.0_x86_64_base
kernel-headers-3.10.0-1160.6.1.el7.x86_64.rpm82ca7126ce62e28fd708b731c3f9cc2101eade8b33b1fa4291c6d9cb90ae3d48ELSA-2025-1281ol7_x86_64_latest
kernel-headers-3.10.0-1160.6.1.el7.x86_64.rpm82ca7126ce62e28fd708b731c3f9cc2101eade8b33b1fa4291c6d9cb90ae3d48ELSA-2025-1281ol7_x86_64_u9_patch
kernel-tools-3.10.0-1160.6.1.el7.x86_64.rpma64ea0da965e5f98217b2d938ca70ff81ef544a24e837912b13986a91a16de8eELSA-2025-1281ol7_x86_64_latest
kernel-tools-3.10.0-1160.6.1.el7.x86_64.rpma64ea0da965e5f98217b2d938ca70ff81ef544a24e837912b13986a91a16de8eELSA-2025-1281ol7_x86_64_u9_patch
kernel-tools-libs-3.10.0-1160.6.1.el7.x86_64.rpm8d4bb7c7de433cc94322fe41998948589d21e058d6d73112a43695ab80067391ELSA-2025-1281ol7_x86_64_latest
kernel-tools-libs-3.10.0-1160.6.1.el7.x86_64.rpm8d4bb7c7de433cc94322fe41998948589d21e058d6d73112a43695ab80067391ELSA-2025-1281ol7_x86_64_u9_patch
kernel-tools-libs-devel-3.10.0-1160.6.1.el7.x86_64.rpmc515a11a5c74b571d4a08a9c7d7e33c26fa00d187eecbf98cb2a4e257c1db37eELSA-2025-1281ol7_x86_64_optional_latest
perf-3.10.0-1160.6.1.el7.x86_64.rpm6cf467d78d1b8a879df1065be78fcd989f7649e351fa5ea783d072ade8912d8aELSA-2025-20019ol7_x86_64_latest
perf-3.10.0-1160.6.1.el7.x86_64.rpm6cf467d78d1b8a879df1065be78fcd989f7649e351fa5ea783d072ade8912d8aELSA-2025-20019ol7_x86_64_u9_patch
python-perf-3.10.0-1160.6.1.el7.x86_64.rpme796c848fd562f1824707c920fcf6cb337331ea2c15be7e16e7c48e11b981218ELSA-2025-20019ol7_x86_64_latest
python-perf-3.10.0-1160.6.1.el7.x86_64.rpme796c848fd562f1824707c920fcf6cb337331ea2c15be7e16e7c48e11b981218ELSA-2025-20019ol7_x86_64_u9_patch



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete