ELSA-2023-12915

ELSA-2023-12915 - Unbreakable Enterprise kernel-container security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2023-10-17

Description


[5.4.17-2136.323.8.2.el8]
- netfilter: nfnetlink_osf: avoid OOB read (Wander Lairson Costa) [Orabug: 35824307]
- netfilter: xt_sctp: validate the flag_info count (Wander Lairson Costa) [Orabug: 35824307]
- netfilter: xt_u32: validate user space input (Wander Lairson Costa) [Orabug: 35824307]
- netfilter: ipset: add the missing IP_SET_HASH_WITH_NET0 macro for ip_set_hash_netportnet.c (Kyle Zeng) [Orabug: 35824307] {CVE-2023-42753}


Related CVEs


CVE-2023-42753

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 8 (x86_64) kernel-uek-container-5.4.17-2136.323.8.2.el8.src.rpm95d5368bfe6e7130df263c94d5e33d34-ol8_x86_64_UEKR6
kernel-uek-container-5.4.17-2136.323.8.2.el8.x86_64.rpm3af667dfea59bbfe913705551f6b6d33-ol8_x86_64_UEKR6
kernel-uek-container-debug-5.4.17-2136.323.8.2.el8.x86_64.rpm2cac36d536b5f04eee86c55c629500d5-ol8_x86_64_UEKR6



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete