ELSA-2009-0459

ELSA-2009-0459 - kernel security and bug fix update

Type:SECURITY
Severity:IMPORTANT
Release Date:2009-05-01

Description



[2.6.9-78.0.22.0.1.EL]
- [xen] fix for hung JVM thread after #GPF [orabug 7916406] (Chuck Anderson)
- fix entropy flag in bnx2 driver to generate entropy pool (John Sobecki)
[orabug 5931647]
- fix skb alignment that was causing sendto() to fail with EFAULT (Olaf Kirch)
[orabug 6845794]
- fix enomem due to larger mtu size page alloc (Zach Brown) [orabug 5486128]
- fix per_cpu() api bug_on with rds (Zach Brown) [orabug 5760648]
- backout patch sysrq-b that queues upto keventd thread (Guru Anbalagane)
[orabug 6125546]
- netrx/netpoll race avoidance (Tina Yang) [orabug 6143381]
- fix guest spinning in xen (Herbert van den Bergh) [orabug 7004010]
- fix serial port lock recursion (Herbert van den Bergh) [orabug 6761872]
- [XEN] Fix elf_core_dump (Tina Yang) [orabug 6995928]
- fix in nfs_attribute_timeout() (Trond Myklebust) [orabug 7378108]
- use lfence instead of cpuid instruction to implement memory barriers
(Herbert van den Bergh) [orabug 7452412]
- add netpoll support to xen netfront (Tina Yang) [orabz 7261]
- [xen] execshield: fix endless GPF fault loop (Stephen Tweedie) [orabug 7175395]
- port Red Hat bug 472572: HVM crash in net/core/dev.c during boot [orabug 7653948]
The following Red Hat patches were ported from the source RPM at:
http://people.redhat.com/vgoyal/rhel4/SRPMS.kernel/kernel-2.6.9-78.22.EL.src.rpm
linux-2.6.9-xen-fix-netfront-mem-leak.patch
linux-2.6.9-xen-xen-vnif-stops-working-on-reception-of-duplicat.patch
- fix kernel null dereference in ap_suspend() during migration [orabug 7635625]
Ported from the el5u2 xenpv-0.1-9.0.1.el5 patch
ovs-bugz7262-fix-migration-hang-due-to-write-lock-starvation.patch.
In el5u2, the fix is to the xenpv driver. For el4u7, the xenpv driver
was moved into the kernel.
- port el4u6 xenpv patch (orabug 7442030) for live migration hang
[orabug 7458244]
- [xen]: port el5u2 patch that allows 64-bit PVHVM guest to boot with 32-bit
dom0 [orabug 7452107]
- [mm] update shrink_zone patch to allow 100% swap utilization (John Sobecki,
Chris Mason, Chuck Anderson, Dave McCracken) [orabug 7566319,6086839]
- [nfs] update fix for attribute caching when using actimeo=0 (Chuck Lever,
John Sobecki) [ORABUG 7131141,7156607,7388056] [RHBZ 446083,476726]
- [kernel] backport report_lost_ticks patch from EL5.2 (John Sobecki)
[orabug 6110605]
- port EL5U3 patch to adjust totalhigh_pages in the balloon driver [orabug 8300888]
- check to see if hypervisor supports memory reservation change (Chuck Anderson) [orabug7556514]
- [XEN] use hypercall to fixmap pte updates (Mukesh Rathor) [orabug 8433329]
- [XEN] Extend physical mask to 40bit for machine above 64G [orabug 8312526]
- fix oops in show_partition using RCU (Wen gang Wang) [orabug 8423936]

[2.6.9-78.0.22]
-nmi watchdog: fix LAPIC mode detection on cpus with supported performance counters (John Villalovos) [497330 491338]

[2.6.9-78.0.21]
-igb: prevent deadlock while executing netdump (Andy Gospodarek) [480579 435886]

[2.6.9-78.0.20]
-mce: do not clear status registers in fatal conditions (Aristeu Rozanski) [494915 489695]

[2.6.9-78.0.19]
-xen: guest will crash if rtl8139 nic is only one specified (Don Dutile) [477146 472572]
-fix CLONE_PARENT and parent_exec_id interaction (Don Howard) [479961 479962] {CVE-2009-0028}
-x86_64: syscall_audit: fix 32/64 syscall hole (Jerome Marchand) [487999 488000] {CVE-2009-0834}
-x86_64: backport is_compat_task (Jerome Marchand) [487999 488000] {CVE-2009-0834}
-megaraid: fix a bug in reset handler (Tomas Henzl) [493420 481662]
-ext3: ext3_symlink should use gfp_nofs allocations inside (Flavio Leitner) [493422 489768]

[2.6.9-78.0.18]
-igb: prevent deadlock while executing netdump (Andy Gospodarek) [480579 435886]
-nfs: fix pages of a memory mapped nfs file get corrupted (Peter Staubach) [490119 432974]
-aio: fix race in aio_complete that leads to a process hang (Jeff Moyer) [489935 456686]
-mptfusion: remove check for type disk (Tomas Henzl) [487399 465514]
-kernel: fix kernel memory disclosure in getsockopt() with option SO_BSDCOMPAT (Don Howard) [486515 486516] {CVE-2009-0676}
-ia64: fix deadlock in ia64 sys_ptrace (Jerome Marchand) [484904 442816]
-nfs: remove bogus lock if signalled case (Bryn M. Reeves) [456284 456285] {CVE-2008-4307}
-nmi watchdog: generate load on all cpus while testing if the watchdog works (Aristeu Rozanski) [479184 488018]
-nmi watchdog: move check_nmi_watchdog to later in boot time (Aristeu Rozanski) [479184 458859]


Related CVEs


CVE-2008-4307
CVE-2009-0028
CVE-2009-0676
CVE-2009-0834

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 4 (i386) kernel-2.6.9-78.0.22.0.1.EL.src.rpm449feaa5a4eddbb540110d70e2481581ELBA-2011-1796
ocfs2-2.6.9-78.0.22.0.1.EL-1.2.9-1.el4.src.rpm32c238aba3969577d549519605aa7931-
oracleasm-2.6.9-78.0.22.0.1.EL-2.0.5-1.el4.src.rpm7fbc636bcdb6962a9d30cc82d43d515d-
kernel-2.6.9-78.0.22.0.1.EL.i686.rpm64a77986f2e47a3e5eac87a644bf7bffELBA-2011-1796
kernel-devel-2.6.9-78.0.22.0.1.EL.i686.rpmb4241267e3a24b8badd85180dac81912ELBA-2011-1796
kernel-doc-2.6.9-78.0.22.0.1.EL.noarch.rpm209d96c29f6e9c075122640d50895558ELBA-2011-1796
kernel-hugemem-2.6.9-78.0.22.0.1.EL.i686.rpm6e3093298b4c2a8f9066298caa6db20aELBA-2011-1796
kernel-hugemem-devel-2.6.9-78.0.22.0.1.EL.i686.rpmcf49ab7d85cc748d3b9f8246177f4adcELBA-2011-1796
kernel-smp-2.6.9-78.0.22.0.1.EL.i686.rpmfd6f005144da1866927e1c34552447aaELBA-2011-1796
kernel-smp-devel-2.6.9-78.0.22.0.1.EL.i686.rpm9632fe43b0469e1bfa073cd145fd08c3ELBA-2011-1796
kernel-xenU-2.6.9-78.0.22.0.1.EL.i686.rpmcdfcaa45899cef562cf3f62dc4a3d602ELBA-2011-1796
kernel-xenU-devel-2.6.9-78.0.22.0.1.EL.i686.rpm1db0abf1e5582fa371fb78611376beb8ELBA-2011-1796
ocfs2-2.6.9-78.0.22.0.1.EL-1.2.9-1.el4.i686.rpm78a7e7059e77a838432497e3275937d2-
ocfs2-2.6.9-78.0.22.0.1.ELhugemem-1.2.9-1.el4.i686.rpm4a6d494a0ac57cd6dd87ec2f10d91f25-
ocfs2-2.6.9-78.0.22.0.1.ELsmp-1.2.9-1.el4.i686.rpm718529b8f4d9eb1e3b9bc8e902ecc891-
ocfs2-2.6.9-78.0.22.0.1.ELxenU-1.2.9-1.el4.i686.rpm3ce289ab51e8df1d9405c0decb681d33-
oracleasm-2.6.9-78.0.22.0.1.EL-2.0.5-1.el4.i686.rpm232ad11cae7f5b70c1ae08b827ec2fcf-
oracleasm-2.6.9-78.0.22.0.1.ELhugemem-2.0.5-1.el4.i686.rpmcf0ae57b15e1ca33c0f1596b853e1779-
oracleasm-2.6.9-78.0.22.0.1.ELsmp-2.0.5-1.el4.i686.rpm723050687a860ce0305121a883623d73-
oracleasm-2.6.9-78.0.22.0.1.ELxenU-2.0.5-1.el4.i686.rpm1b7fc2daf4130eacd2de1513fee07964-
Oracle Linux 4 (ia64) kernel-2.6.9-78.0.22.0.1.EL.src.rpm449feaa5a4eddbb540110d70e2481581ELBA-2011-1796
ocfs2-2.6.9-78.0.22.0.1.EL-1.2.9-1.el4.src.rpm32c238aba3969577d549519605aa7931-
oracleasm-2.6.9-78.0.22.0.1.EL-2.0.5-1.el4.src.rpm7fbc636bcdb6962a9d30cc82d43d515d-
kernel-2.6.9-78.0.22.0.1.EL.ia64.rpm97b029e93e7773a4375a8b1b26898dccELBA-2011-1796
kernel-devel-2.6.9-78.0.22.0.1.EL.ia64.rpm6a500a7fee8fa0df1ac9c4cf091e8757ELBA-2011-1796
kernel-doc-2.6.9-78.0.22.0.1.EL.noarch.rpm209d96c29f6e9c075122640d50895558ELBA-2011-1796
kernel-largesmp-2.6.9-78.0.22.0.1.EL.ia64.rpmdeea6c1e739d925f09ca2186dbc59ff7ELBA-2011-1796
kernel-largesmp-devel-2.6.9-78.0.22.0.1.EL.ia64.rpm661e58076f369595eca603f76e94fc5eELBA-2011-1796
ocfs2-2.6.9-78.0.22.0.1.EL-1.2.9-1.el4.ia64.rpmcdacede91e65ccb5bafff1ded960a8a5-
ocfs2-2.6.9-78.0.22.0.1.ELlargesmp-1.2.9-1.el4.ia64.rpm96b8f6cce672a3a29d2ca5c68a360309-
oracleasm-2.6.9-78.0.22.0.1.EL-2.0.5-1.el4.ia64.rpmc42f322fa943daef913c1457dfa8ad59-
oracleasm-2.6.9-78.0.22.0.1.ELlargesmp-2.0.5-1.el4.ia64.rpm73944df3918e962d8390dadee6aa1673-
Oracle Linux 4 (x86_64) kernel-2.6.9-78.0.22.0.1.EL.src.rpm449feaa5a4eddbb540110d70e2481581ELBA-2011-1796
ocfs2-2.6.9-78.0.22.0.1.EL-1.2.9-1.el4.src.rpm32c238aba3969577d549519605aa7931-
oracleasm-2.6.9-78.0.22.0.1.EL-2.0.5-1.el4.src.rpm7fbc636bcdb6962a9d30cc82d43d515d-
kernel-2.6.9-78.0.22.0.1.EL.x86_64.rpmdbdf75d39bf17bd006c9bc5cd4e02644ELBA-2011-1796
kernel-devel-2.6.9-78.0.22.0.1.EL.x86_64.rpmae273337663f4ccfdada2388628f6bebELBA-2011-1796
kernel-doc-2.6.9-78.0.22.0.1.EL.noarch.rpm209d96c29f6e9c075122640d50895558ELBA-2011-1796
kernel-largesmp-2.6.9-78.0.22.0.1.EL.x86_64.rpm5f85f5e678b1f99fa8790a45773c6363ELBA-2011-1796
kernel-largesmp-devel-2.6.9-78.0.22.0.1.EL.x86_64.rpm48f61097c77fe55f2742116123878363ELBA-2011-1796
kernel-smp-2.6.9-78.0.22.0.1.EL.x86_64.rpm9dcad7d5dd8597cf03aa36e04d9d879dELBA-2011-1796
kernel-smp-devel-2.6.9-78.0.22.0.1.EL.x86_64.rpma006e4e6c030663af7548cf5ef1df312ELBA-2011-1796
kernel-xenU-2.6.9-78.0.22.0.1.EL.x86_64.rpmb2d6516be55c79954f1c0bf76c52a2e4ELBA-2011-1796
kernel-xenU-devel-2.6.9-78.0.22.0.1.EL.x86_64.rpmf93c55ff025c7261a6351bab2b7db9d4ELBA-2011-1796
ocfs2-2.6.9-78.0.22.0.1.EL-1.2.9-1.el4.x86_64.rpmec46f1d4084adb57bab2f076227f8b37-
ocfs2-2.6.9-78.0.22.0.1.ELlargesmp-1.2.9-1.el4.x86_64.rpme77710f8e8cf2c182822a77451e947cc-
ocfs2-2.6.9-78.0.22.0.1.ELsmp-1.2.9-1.el4.x86_64.rpmcc55e10914f5da70a605d2c5cb5c4c7b-
ocfs2-2.6.9-78.0.22.0.1.ELxenU-1.2.9-1.el4.x86_64.rpmdec22b9770918bd9b91a15f3d9bc5334-
oracleasm-2.6.9-78.0.22.0.1.EL-2.0.5-1.el4.x86_64.rpm5e4e0d065955b150cd80bdb091a65d2f-
oracleasm-2.6.9-78.0.22.0.1.ELlargesmp-2.0.5-1.el4.x86_64.rpmad2c1808b23a6b421f589eb5195280ea-
oracleasm-2.6.9-78.0.22.0.1.ELsmp-2.0.5-1.el4.x86_64.rpm69c9fedb56aa6ed94bea8a1e53c09a78-
oracleasm-2.6.9-78.0.22.0.1.ELxenU-2.0.5-1.el4.x86_64.rpm5699662b3cb9dbd03b65a98c99314b3b-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete