ELSA-2021-0003

ELSA-2021-0003 - kernel security and bug fix update

Type:SECURITY
Severity:IMPORTANT
Release Date:2021-01-05

Description


[4.18.0-240.10.1_3.OL8]
- Oracle Linux certificates (Kevin Lyons)
- Disable signing for aarch64 (Ilya Okomin)
- Oracle Linux RHCK Module Signing Key was added to the kernel trusted keys list (olkmod_signing_key.pem) [Orabug: 29539237]
- Update x509.genkey [Orabug: 24817676]
- Conflict with shim-ia32 and shim-x64 <= 15-2.0.3.el7

[4.18.0-240.10.1_3]
- [net] SUNRPC: Signalled ASYNC tasks need to exit (Scott Mayhew) [1907667 1872310]

[4.18.0-240.9.1_3]
- [net] tunnels: Fix off-by-one in lower MTU bounds for ICMP/ICMPv6 replies (Antoine Tenart) [1902082 1895765]
- [net] net-sysfs: add backlog len and CPU id to softnet data (Paolo Abeni) [1883314 1866909]
- [net] try to avoid unneeded backlog flush (Paolo Abeni) [1883314 1866909]
- [net] skbuff: fix a data race in skb_queue_len() (Paolo Abeni) [1883314 1866909]
- [powerpc] mm/mmu_gather: invalidate TLB correctly on batch allocation failure and flush (Diego Domingos) [1899208 1805031]
- [powerpc] powerpc/mmu_gather: enable RCU_TABLE_FREE even for !SMP case (Diego Domingos) [1899208 1805031]
- [net] netfilter: ctnetlink: add a range check for l3/l4 protonum (Florian Westphal) [1892665 1892666] {CVE-2020-25211}
- [char] random: decouple random and urandom extrng fops (Vladis Dronov) [1899584 1890711]
- [char] random: Add a poll handler to extrng_fops (Vladis Dronov) [1886192 1884857]


Related CVEs


CVE-2020-25211

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 8 (aarch64) kernel-4.18.0-240.10.1.el8_3.src.rpm2aebfbcc1911b772a3193c650233a19b-
bpftool-4.18.0-240.10.1.el8_3.aarch64.rpme88dc62b44294b438c1ddf324ab62704-
kernel-cross-headers-4.18.0-240.10.1.el8_3.aarch64.rpm23937b1e35e85c70cec0d69b5bff0362-
kernel-headers-4.18.0-240.10.1.el8_3.aarch64.rpm5fcc4d6196b1446b1fb53bd2bd541654-
kernel-tools-4.18.0-240.10.1.el8_3.aarch64.rpm45923c398728e6ca0eae93e38621e852-
kernel-tools-libs-4.18.0-240.10.1.el8_3.aarch64.rpm93415807aa228a0fdabf88548ccfbb32-
kernel-tools-libs-devel-4.18.0-240.10.1.el8_3.aarch64.rpm48c2942bda16ef63967d6a1974ef6453-
perf-4.18.0-240.10.1.el8_3.aarch64.rpmec96949a014bc0bc3cf8f3db7a1defef-
python3-perf-4.18.0-240.10.1.el8_3.aarch64.rpm79d25a85100030b9dc44acbaab15c4a8-
Oracle Linux 8 (x86_64) kernel-4.18.0-240.10.1.el8_3.src.rpm2aebfbcc1911b772a3193c650233a19b-
bpftool-4.18.0-240.10.1.el8_3.x86_64.rpmc8853da88ba16d882024f85c56c8d9cb-
kernel-4.18.0-240.10.1.el8_3.x86_64.rpm3266d9313fa519981e62bf2a907b7d00-
kernel-abi-whitelists-4.18.0-240.10.1.el8_3.noarch.rpm43ad52578ff851e4fa7fb43dac897a11-
kernel-core-4.18.0-240.10.1.el8_3.x86_64.rpmd31e073bcb33f5b203f086906bcf4897-
kernel-cross-headers-4.18.0-240.10.1.el8_3.x86_64.rpm0c0df3b4993978cec0389c2cbc369704-
kernel-debug-4.18.0-240.10.1.el8_3.x86_64.rpm71a8aa603cddcb118a2b08d0f8d1ee9d-
kernel-debug-core-4.18.0-240.10.1.el8_3.x86_64.rpmfbe3d179982fe62d052d59d9c87790af-
kernel-debug-devel-4.18.0-240.10.1.el8_3.x86_64.rpmc5fa19b3391c211beed2efc64e21eb0b-
kernel-debug-modules-4.18.0-240.10.1.el8_3.x86_64.rpm4c07ae7bab47ba28a0e499491dca3923-
kernel-debug-modules-extra-4.18.0-240.10.1.el8_3.x86_64.rpm886a1084d0bd25efeaaf023a009e0b7f-
kernel-devel-4.18.0-240.10.1.el8_3.x86_64.rpma7cfa2c60a957be9d41a31fdee854b53-
kernel-doc-4.18.0-240.10.1.el8_3.noarch.rpmc47b693d439b770253d9fb9c57c16675-
kernel-headers-4.18.0-240.10.1.el8_3.x86_64.rpm7ab0290bb4b98f1f50c04f0d4bf06a50-
kernel-modules-4.18.0-240.10.1.el8_3.x86_64.rpma3c1be570ee4ee0049d5f5b7aef5332e-
kernel-modules-extra-4.18.0-240.10.1.el8_3.x86_64.rpm05f732eb2add3cb95f0849de017aaf3c-
kernel-tools-4.18.0-240.10.1.el8_3.x86_64.rpm65df530c4543c1ade0d5248906129681-
kernel-tools-libs-4.18.0-240.10.1.el8_3.x86_64.rpmb481a63e4a5d757e7d83873a35f62cb0-
kernel-tools-libs-devel-4.18.0-240.10.1.el8_3.x86_64.rpmb2044ffd6ef8eaec81077ba90a74d07c-
perf-4.18.0-240.10.1.el8_3.x86_64.rpma0c7f78a31d4452faacd82f3d95eec9e-
python3-perf-4.18.0-240.10.1.el8_3.x86_64.rpmb4ab5816ef24daa0a912ec29dc9f917d-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete