ELSA-2009-1132

ELSA-2009-1132 - kernel security and bug fix update

Type:SECURITY
Severity:IMPORTANT
Release Date:2009-07-01

Description



[2.6.9-89.0.3.0.1.EL]
- fix skb alignment that was causing sendto() to fail with EFAULT (Olaf Kirch)
[orabug 6845794]
fix enomem due to larger mtu size page alloc (Zach Brown) [orabug 5486128]
- backout patch sysrq-b that queues upto keventd thread (Guru Anbalagane)
[orabug 6125546]
- netrx/netpoll race avoidance (Tina Yang) [orabug 6143381]
- [XEN] Fix elf_core_dump (Tina Yang) [orabug 6995928]
- use lfence instead of cpuid instruction to implement memory barriers
(Herbert van den Bergh) [orabug 7452412]
- add netpoll support to xen netfront (Tina Yang) [orabz 7261]
- [xen] execshield: fix endless GPF fault loop (Stephen Tweedie) [orabug 7175395]
- [xen]: port el5u2 patch that allows 64-bit PVHVM guest to boot with 32-bit
dom0 [orabug 7452107] xenstore
- [mm] update shrink_zone patch to allow 100% swap utilization (John Sobecki,
Chris Mason, Chuck Anderson, Dave McCracken) [orabug 7566319,6086839]
- [kernel] backport report_lost_ticks patch from EL5.2 (John Sobecki)
[orabug 6110605]
- [xen] fix for hung JVM thread after #GPF [orabug 7916406] (Chuck Anderson)
- port EL5U3 patch to adjust totalhigh_pages in the balloon driver [orabug 8300888]
- check to see if hypervisor supports memory reservation change (Chuck Anderson) [orabug7556514]
- [XEN] use hypercall to fixmap pte updates (Mukesh Rathor) [orabug 8433329]
- [XEN] Extend physical mask to 40bit for machine above 64G [orabug 8312526]
- fix oops in show_partition using RCU (Wen gang Wang) [orabug 8423936]

[2.6.9-89.0.3]
-agp: zero pages before sending to userspace (Jiri Olsa) [497023 497024] {CVE-2009-1192}
-agp: fix boot issue with agp zero pages patch (Jiri Olsa) [497023 497024] {CVE-2009-1192}
-e1000: fix skb_over_panic (Neil Horman) [502982 502983] {CVE-2009-1385}
-kernel: proc: avoid information leaks to non privileged processes (Amerigo Wang) [499549 499548]
-netpoll: bust poll_lock when doing netdump (Neil Horman) [504565 494688]

[2.6.9-89.0.2]
-xen: local denial of service [500948 500949] {CVE-2009-1758}
-nfs: fix client handling of MAY_EXEC in nfs_permission [500299 500300] {CVE-2009-1630}

[2.6.9-89.0.1]
-Reapply: fix race condition in input.c (Vivek Goyal) [501804 501064]
-nfs: inode of the overwritten file will remain in the icache (Flavio Leitner) [501802 494015]
-fix timespec off by one errors (Jason Baron) [501800 496201]
-add some long missing capabilities to cap_fs_mask (Eric Paris) [499073 499074] [497269 497270] {CVE-2009-1072}
-net: tcp: clear probes_out more aggressively in tcp_ack (Jiri Pirko) [501754 494428]


Related CVEs


CVE-2009-1072
CVE-2009-1192
CVE-2009-1385
CVE-2009-1630
CVE-2009-1758

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 4 (i386) kernel-2.6.9-89.0.3.0.1.EL.src.rpm240f3491d654933c2e2fed907cd9ccdeELBA-2011-1796
ocfs2-2.6.9-89.0.3.0.1.EL-1.2.9-1.el4.src.rpmb6e0b279fbd8d6fab991ea0b9e84b176-
oracleasm-2.6.9-89.0.3.0.1.EL-2.0.5-1.el4.src.rpm14c46ae51f3ba91778c1c055bf36cb2c-
kernel-2.6.9-89.0.3.0.1.EL.i686.rpm945dd575faceca3d338326f96196c66dELBA-2011-1796
kernel-devel-2.6.9-89.0.3.0.1.EL.i686.rpm2f8ba747ca00a272061bc7d56ca57d73ELBA-2011-1796
kernel-doc-2.6.9-89.0.3.0.1.EL.noarch.rpmf7240e4095e4babb715c697a9cc2abc2ELBA-2011-1796
kernel-hugemem-2.6.9-89.0.3.0.1.EL.i686.rpm6ac922fc67e9deca449351cf3d1d5a79ELBA-2011-1796
kernel-hugemem-devel-2.6.9-89.0.3.0.1.EL.i686.rpm7d3bb6c9b7bf5fd982746a0f296bcb63ELBA-2011-1796
kernel-smp-2.6.9-89.0.3.0.1.EL.i686.rpmd3e7371bcf359d12b3995c3efc240734ELBA-2011-1796
kernel-smp-devel-2.6.9-89.0.3.0.1.EL.i686.rpm2f49ee96618f42e9fda11d1bd01a5e51ELBA-2011-1796
kernel-xenU-2.6.9-89.0.3.0.1.EL.i686.rpm8ddd59d37df5760f093407be35b6b98eELBA-2011-1796
kernel-xenU-devel-2.6.9-89.0.3.0.1.EL.i686.rpmf07f4b62085999f4d3e581329cfb1ebdELBA-2011-1796
ocfs2-2.6.9-89.0.3.0.1.EL-1.2.9-1.el4.i686.rpma925d6963f8e76a6f1778014321373a8-
ocfs2-2.6.9-89.0.3.0.1.ELhugemem-1.2.9-1.el4.i686.rpmfc90da4e0230635ef00bee4b78679341-
ocfs2-2.6.9-89.0.3.0.1.ELsmp-1.2.9-1.el4.i686.rpma06af0908ab561a53965cd7a8c060e00-
ocfs2-2.6.9-89.0.3.0.1.ELxenU-1.2.9-1.el4.i686.rpm6709cade2a21ea14fbad6431d2836f7e-
oracleasm-2.6.9-89.0.3.0.1.EL-2.0.5-1.el4.i686.rpm76089a966b6634488334623c93314ac2-
oracleasm-2.6.9-89.0.3.0.1.ELhugemem-2.0.5-1.el4.i686.rpm0758ca31dd984ced70dc8bf9a3908c46-
oracleasm-2.6.9-89.0.3.0.1.ELsmp-2.0.5-1.el4.i686.rpm0a8ed51579d3749b99fcfc01cae5e084-
oracleasm-2.6.9-89.0.3.0.1.ELxenU-2.0.5-1.el4.i686.rpm208e91a7b52184c017a8ac6c6869f43e-
Oracle Linux 4 (ia64) kernel-2.6.9-89.0.3.0.1.EL.src.rpm240f3491d654933c2e2fed907cd9ccdeELBA-2011-1796
ocfs2-2.6.9-89.0.3.0.1.EL-1.2.9-1.el4.src.rpmb6e0b279fbd8d6fab991ea0b9e84b176-
oracleasm-2.6.9-89.0.3.0.1.EL-2.0.5-1.el4.src.rpm14c46ae51f3ba91778c1c055bf36cb2c-
kernel-2.6.9-89.0.3.0.1.EL.ia64.rpm6bc2460166d064410de8b1627e64c8a7ELBA-2011-1796
kernel-devel-2.6.9-89.0.3.0.1.EL.ia64.rpma6a3d769c7c42d3b89dc1fe98efa9058ELBA-2011-1796
kernel-doc-2.6.9-89.0.3.0.1.EL.noarch.rpmf7240e4095e4babb715c697a9cc2abc2ELBA-2011-1796
kernel-largesmp-2.6.9-89.0.3.0.1.EL.ia64.rpmd40612e4726fe2efce2d513b38c8a747ELBA-2011-1796
kernel-largesmp-devel-2.6.9-89.0.3.0.1.EL.ia64.rpmdd709646ba3ca2a160dca801536c905bELBA-2011-1796
ocfs2-2.6.9-89.0.3.0.1.EL-1.2.9-1.el4.ia64.rpm42205da932b5f2348809cb87c8ac3eb2-
ocfs2-2.6.9-89.0.3.0.1.ELlargesmp-1.2.9-1.el4.ia64.rpm828e2b3da0572b0309b01cbbb75f9023-
oracleasm-2.6.9-89.0.3.0.1.EL-2.0.5-1.el4.ia64.rpm5da4d09fd0dbf67a963d546d75818553-
oracleasm-2.6.9-89.0.3.0.1.ELlargesmp-2.0.5-1.el4.ia64.rpm45ffb0a875dd118dce58ea1450130fc9-
Oracle Linux 4 (x86_64) kernel-2.6.9-89.0.3.0.1.EL.src.rpm240f3491d654933c2e2fed907cd9ccdeELBA-2011-1796
ocfs2-2.6.9-89.0.3.0.1.EL-1.2.9-1.el4.src.rpmb6e0b279fbd8d6fab991ea0b9e84b176-
oracleasm-2.6.9-89.0.3.0.1.EL-2.0.5-1.el4.src.rpm14c46ae51f3ba91778c1c055bf36cb2c-
kernel-2.6.9-89.0.3.0.1.EL.x86_64.rpmec7646252227b1f19697f109ba516c35ELBA-2011-1796
kernel-devel-2.6.9-89.0.3.0.1.EL.x86_64.rpmf4efebfcb19ef5db8fe4f014eeaf76e0ELBA-2011-1796
kernel-doc-2.6.9-89.0.3.0.1.EL.noarch.rpmf7240e4095e4babb715c697a9cc2abc2ELBA-2011-1796
kernel-largesmp-2.6.9-89.0.3.0.1.EL.x86_64.rpm81d20e0cfbd37b23b4c7021a0fe88f46ELBA-2011-1796
kernel-largesmp-devel-2.6.9-89.0.3.0.1.EL.x86_64.rpm0aa4a93537971c6502794b7849f0b813ELBA-2011-1796
kernel-smp-2.6.9-89.0.3.0.1.EL.x86_64.rpmda99e36fe27e8db76b58b7b5d924cb72ELBA-2011-1796
kernel-smp-devel-2.6.9-89.0.3.0.1.EL.x86_64.rpmdb48848b4e3dc3e84cd73adaa8042549ELBA-2011-1796
kernel-xenU-2.6.9-89.0.3.0.1.EL.x86_64.rpm7e5c97bd8c6bedf6e593c72c5fda6345ELBA-2011-1796
kernel-xenU-devel-2.6.9-89.0.3.0.1.EL.x86_64.rpmecd0acc54f2517c0e19e6c60afc9f0adELBA-2011-1796
ocfs2-2.6.9-89.0.3.0.1.EL-1.2.9-1.el4.x86_64.rpmd3019e9d138c13e792921260a7db1788-
ocfs2-2.6.9-89.0.3.0.1.ELlargesmp-1.2.9-1.el4.x86_64.rpma9e750b2a8a7813f9badf9e43b777a59-
ocfs2-2.6.9-89.0.3.0.1.ELsmp-1.2.9-1.el4.x86_64.rpm0c510342f5aa9c947abed593c1086cfe-
ocfs2-2.6.9-89.0.3.0.1.ELxenU-1.2.9-1.el4.x86_64.rpme88b70d9d05c97cca791ace61f98ffef-
oracleasm-2.6.9-89.0.3.0.1.EL-2.0.5-1.el4.x86_64.rpmf0d2715479091c9ffb6527e3db6a0936-
oracleasm-2.6.9-89.0.3.0.1.ELlargesmp-2.0.5-1.el4.x86_64.rpm2eda31610cd725ba7ff26b177ed60d0a-
oracleasm-2.6.9-89.0.3.0.1.ELsmp-2.0.5-1.el4.x86_64.rpm0b97b4cf76de6bde7474d8ed09bff3d8-
oracleasm-2.6.9-89.0.3.0.1.ELxenU-2.0.5-1.el4.x86_64.rpme67aeebf8e2ae8ae098acb4947f39c97-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete