ELSA-2010-0504

ELSA-2010-0504 - kernel security and bug fix update

Type:SECURITY
Severity:IMPORTANT
Release Date:2010-07-01

Description



[2.6.18-194.8.1.0.1.el5]
- [xen] check to see if hypervisor supports memory reservation change
(Chuck Anderson) [orabug 7556514]
- Add entropy support to igb (John Sobecki) [orabug 7607479]
- [nfs] convert ENETUNREACH to ENOTCONN [orabug 7689332]
- [NET] Add xen pv/bonding netconsole support (Tina Yang) [orabug 6993043]
[bz 7258]
- [mm] shrink_zone patch (John Sobecki,Chris Mason) [orabug 6086839]
- fix aacraid not to reset during kexec (Joe Jin) [orabug 8516042]
- [nfsd] fix failure of file creation from hpux client (Wen gang Wang)
[orabug 7579314]
- [qla] fix qla not to query hccr (Guru Anbalagane) [Orabug 8746702]
- [net] bonding: fix xen+bonding+netconsole panic issue (Joe Jin) [orabug 9504524]
- [rds] Patch rds to 1.4.2-14 (Andy Grover) [orabug 9471572, 9344105]
RDS: Fix BUG_ONs to not fire when in a tasklet
ipoib: Fix lockup of the tx queue
RDS: Do not call set_page_dirty() with irqs off (Sherman Pun)
RDS: Properly unmap when getting a remote access error (Tina Yang)
RDS: Fix locking in rds_send_drop_to()
- [mm] Enahance shrink_zone patch allow full swap utilization, and also be
NUMA-aware (John Sobecki, Chris Mason, Herbert van den Bergh)
[orabug 9245919]

[2.6.18-194.8.1.el5]
- [net] cnic: fix bnx2x panic w/multiple interfaces enabled (Stanislaw Gruszka) [607087 602402]

[2.6.18-194.7.1.el5]
- [virt] don't compute pvclock adjustments if we trust tsc (Glauber Costa) [601080 570824]
- [virt] add a global synchronization point for pvclock (Glauber Costa) [601080 570824]
- [virt] enable pvclock flags in vcpu_time_info structure (Glauber Costa) [601080 570824]
- [misc] add atomic64_cmpxcgh to x86_64 include files (Glauber Costa) [601080 570824]
- [x86] grab atomic64 types from upstream (Glauber Costa) [601080 570824]

[2.6.18-194.6.1.el5]
- [fs] gfs2: fix permissions checking for setflags ioctl (Steven Whitehouse) [595580 595399] {CVE-2010-1641}
- [mm] clear page errors when issuing a fresh read of page (Rik van Riel) [599739 590763]
- [misc] keys: do not find already freed keyrings (Vitaly Mayatskikh) [585099 585100] {CVE-2010-1437}
- [net] sctp: file must be valid before setting timeout (Jiri Pirko) [598355 578261]
- [net] tg3: fix panic in tg3_interrupt (John Feeney) [600498 569106]
- [net] e1000/e1000e: implement simple interrupt moderation (Andy Gospodarek) [599332 586416]
- [net] cnic: Fix crash during bnx2x MTU change (Stanislaw Gruszka) [596385 582367]
- [net] bxn2x: add dynamic lro disable support (Stanislaw Gruszka) [596385 582367]
- [net] implement dev_disable_lro api for RHEL5 (Stanislaw Gruszka) [596385 582367]
- [x86_64] fix time drift due to faulty lost tick tracking (Ulrich Obergfell) [601090 579711]
- [net] neigh: fix state transitions via Netlink request (Jiri Pirko) [600215 485903]
- [mm] fix hugepage corruption using vm.drop_caches (Larry Woodman) [599737 579469]
- [nfs] don't unhash dentry in nfs_lookup_revalidate (Jeff Layton) [596384 582321]
- [fs] remove unneccessary f_ep_lock from fasync_helper (Lachlan McIlroy) [599730 567479]
- [xen] set hypervisor present CPUID bit (Paolo Bonzini) [599734 573771]

[2.6.18-194.5.1.el5]
- [net] bonding: fix broken multicast with round-robin mode (Andy Gospodarek) [594057 570645]
- [net] tg3: fix INTx fallback when MSI fails (Steve Best) [592844 587666]
- [net] sched: fix SFQ qdisc crash w/limit of 2 packets (Jiri Pirko) [594054 579774]
- [nfs] revert retcode check in nfs_revalidate_mapping() (Jeff Layton) [594061 557423]
- [misc] futex: handle futex value corruption gracefully (Jerome Marchand) [563093 480396] {CVE-2010-0622}
- [misc] futex: handle user space corruption gracefully (Jerome Marchand) [563093 480396] {CVE-2010-0622}
- [misc] futex: fix fault handling in futex_lock_pi (Jerome Marchand) [563093 480396] {CVE-2010-0622}
- [net] e1000: fix WoL init when WoL disabled in EEPROM (Dean Nelson) [591493 568561]
- [virtio] fix GFP flags passed by virtio balloon driver (Amit Shah) [591611 584683]
- [net] sctp: fix skb_over_panic w/too many unknown params (Neil Horman) [584657 584658] {CVE-2010-1173}
- [acpi] fix WARN on unregister in power meter driver (Matthew Garrett) [592846 576246]
- [mm] keep get_unmapped_area_prot functional (Danny Feng) [556709 556710] {CVE-2010-0291}
- [mm] switch do_brk to get_unmapped_area (Danny Feng) [556709 556710] {CVE-2010-0291}
- [mm] take arch_mmap_check into get_unmapped_area (Danny Feng) [556709 556710] {CVE-2010-0291}
- [mm] get rid of open-coding in ia64_brk (Danny Feng) [556709 556710] {CVE-2010-0291}
- [mm] unify sys_mmap* functions (Danny Feng) [556709 556710] {CVE-2010-0291}
- [mm] kill ancient cruft in s390 compat mmap (Danny Feng) [556709 556710] {CVE-2010-0291}
- [mm] fix pgoff in have to relocate case of mremap (Danny Feng) [556709 556710] {CVE-2010-0291}
- [mm] fix the arch checks in MREMAP_FIXED case (Danny Feng) [556709 556710] {CVE-2010-0291}
- [mm] fix checks for expand-in-place mremap (Danny Feng) [556709 556710] {CVE-2010-0291}
- [mm] add new vma_expandable helper function (Danny Feng) [556709 556710] {CVE-2010-0291}
- [mm] move MREMAP_FIXED into its own header (Danny Feng) [556709 556710] {CVE-2010-0291}
- [mm] move locating vma code and checks on it (Danny Feng) [556709 556710] {CVE-2010-0291}

[2.6.18-194.4.1.el5]
- [acpi] warn on hot-add of memory exceeding 4G boundary (Prarit Bhargava) [587957 571544]
- [net] tipc: fix various oopses in uninitialized code (Neil Horman) [578058 558693] {CVE-2010-1187}
- [block] cfq-iosched: fix IOPRIO_CLASS_IDLE accounting (Jeff Moyer) [588219 574285]
- [block] cfq-iosched: async queue allocation per priority (Jeff Moyer) [588219 574285]
- [block] cfq-iosched: fix async queue behaviour (Jeff Moyer) [588219 574285]
- [block] cfq-iosched: propagate down request sync flag (Jeff Moyer) [588219 574285]
- [block] introduce the rq_is_sync macro (Jeff Moyer) [588219 574285]
- [fs] vfs: fix LOOKUP_FOLLOW on automount symlinks (Jeff Layton) [567815 567816] {CVE-2010-1088}
- [nfs] fix an oops when truncating a file (Jeff Layton) [567194 567195] {CVE-2010-1087}
- [fs] fix kernel oops while copying from ext3 to gfs2 (Abhijith Das) [586008 555754] {CVE-2010-1436}


Related CVEs


CVE-2010-0291
CVE-2010-0622
CVE-2010-1087
CVE-2010-1088
CVE-2010-1173
CVE-2010-1187
CVE-2010-1436
CVE-2010-1437
CVE-2010-1641

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 5 (i386) kernel-2.6.18-194.8.1.0.1.el5.src.rpm9676978d985fc885c6eeb2d6e470b73cELSA-2017-1482-1
ocfs2-2.6.18-194.8.1.0.1.el5-1.4.7-1.el5.src.rpme12d8d55cb56d00e9bb405d5934591f0-
oracleasm-2.6.18-194.8.1.0.1.el5-2.0.5-1.el5.src.rpm92f581b81892e3093cbe0877d297c913-
kernel-2.6.18-194.8.1.0.1.el5.i686.rpmbd27a8ad30fbc3faf8d6e2b9c459c717ELSA-2017-1482-1
kernel-PAE-2.6.18-194.8.1.0.1.el5.i686.rpmde1120fa180f5adff65d86dab93e6855ELSA-2017-1482-1
kernel-PAE-devel-2.6.18-194.8.1.0.1.el5.i686.rpma952c994206cd34dc10817545c015b7cELSA-2017-1482-1
kernel-debug-2.6.18-194.8.1.0.1.el5.i686.rpmfea74bd1d6d5c0cf2ee1ba8656967140ELSA-2017-1482-1
kernel-debug-devel-2.6.18-194.8.1.0.1.el5.i686.rpme9c8a9df31ae0245574545aac0142b14ELSA-2017-1482-1
kernel-devel-2.6.18-194.8.1.0.1.el5.i686.rpmb8a81f275234031240ad3c9e25061c5dELSA-2017-1482-1
kernel-doc-2.6.18-194.8.1.0.1.el5.noarch.rpm3650499f66dd4cf38fb9879e6b3c0cf5ELSA-2017-1482-1
kernel-headers-2.6.18-194.8.1.0.1.el5.i386.rpm645726c7f735c40510bcea8efab8634dELSA-2017-1482-1
kernel-xen-2.6.18-194.8.1.0.1.el5.i686.rpmdb33c6351f501655648f3bcca2ef65acELSA-2017-1482-1
kernel-xen-devel-2.6.18-194.8.1.0.1.el5.i686.rpm74e9c682392fc73b87475151ba6df16fELSA-2017-1482-1
ocfs2-2.6.18-194.8.1.0.1.el5-1.4.7-1.el5.i686.rpm6a1770a5004ef8fb9048ffe6e5827498-
ocfs2-2.6.18-194.8.1.0.1.el5PAE-1.4.7-1.el5.i686.rpmcd492e97296984f5215d253ded42c63d-
ocfs2-2.6.18-194.8.1.0.1.el5debug-1.4.7-1.el5.i686.rpm67b77fe565e431ae6ef8f423b468eb68-
ocfs2-2.6.18-194.8.1.0.1.el5xen-1.4.7-1.el5.i686.rpm840973dac2ffc80b0a26b00610661e75-
oracleasm-2.6.18-194.8.1.0.1.el5-2.0.5-1.el5.i686.rpme1906e9df39b47c31e8e3aaea62aea36-
oracleasm-2.6.18-194.8.1.0.1.el5PAE-2.0.5-1.el5.i686.rpm1fc04338b9407750af1d1898ed475710-
oracleasm-2.6.18-194.8.1.0.1.el5debug-2.0.5-1.el5.i686.rpm7b04a3b5c85f69ccf82fa2628effd3ab-
oracleasm-2.6.18-194.8.1.0.1.el5xen-2.0.5-1.el5.i686.rpm919a4bb292091a6a90827493759f5d1b-
Oracle Linux 5 (ia64) kernel-2.6.18-194.8.1.0.1.el5.src.rpm9676978d985fc885c6eeb2d6e470b73cELSA-2017-1482-1
ocfs2-2.6.18-194.8.1.0.1.el5-1.4.7-1.el5.src.rpme12d8d55cb56d00e9bb405d5934591f0-
oracleasm-2.6.18-194.8.1.0.1.el5-2.0.5-1.el5.src.rpm92f581b81892e3093cbe0877d297c913-
kernel-2.6.18-194.8.1.0.1.el5.ia64.rpm28cdeb609105624471c9517a530666abELSA-2017-1482-1
kernel-debug-2.6.18-194.8.1.0.1.el5.ia64.rpm6dafc1670c35dee4036fd6da84036f1eELSA-2017-1482-1
kernel-debug-devel-2.6.18-194.8.1.0.1.el5.ia64.rpm22c3d0600852030ccc062fd28f64e773ELSA-2017-1482-1
kernel-devel-2.6.18-194.8.1.0.1.el5.ia64.rpm681c0be3ece00ae64c90e5ac655ac139ELSA-2017-1482-1
kernel-doc-2.6.18-194.8.1.0.1.el5.noarch.rpm3650499f66dd4cf38fb9879e6b3c0cf5ELSA-2017-1482-1
kernel-headers-2.6.18-194.8.1.0.1.el5.ia64.rpmed74ea7dbac30d1dcd0ff5998d08b255ELSA-2017-1482-1
kernel-xen-2.6.18-194.8.1.0.1.el5.ia64.rpm8b4a6390409921f20b812362761d7f05ELSA-2017-1482-1
kernel-xen-devel-2.6.18-194.8.1.0.1.el5.ia64.rpm36394c900adbc54496fc648c083856f7ELSA-2017-1482-1
ocfs2-2.6.18-194.8.1.0.1.el5-1.4.7-1.el5.ia64.rpmcd2546808e4a5dbb55799f396048ba6a-
ocfs2-2.6.18-194.8.1.0.1.el5debug-1.4.7-1.el5.ia64.rpmcad0e5149670c9634d1241357c0189b7-
ocfs2-2.6.18-194.8.1.0.1.el5xen-1.4.7-1.el5.ia64.rpm0edb80cd2e93c17389b22efee237f5ae-
oracleasm-2.6.18-194.8.1.0.1.el5-2.0.5-1.el5.ia64.rpm10cc7eeaca334faee97d36c0ad53fa6b-
oracleasm-2.6.18-194.8.1.0.1.el5debug-2.0.5-1.el5.ia64.rpmfd283c842cdffec839a6e0c8bce85bd9-
oracleasm-2.6.18-194.8.1.0.1.el5xen-2.0.5-1.el5.ia64.rpm168b9c26a79871335240857f5aedc53c-
Oracle Linux 5 (x86_64) kernel-2.6.18-194.8.1.0.1.el5.src.rpm9676978d985fc885c6eeb2d6e470b73cELSA-2017-1482-1
ocfs2-2.6.18-194.8.1.0.1.el5-1.4.7-1.el5.src.rpme12d8d55cb56d00e9bb405d5934591f0-
oracleasm-2.6.18-194.8.1.0.1.el5-2.0.5-1.el5.src.rpm92f581b81892e3093cbe0877d297c913-
kernel-2.6.18-194.8.1.0.1.el5.x86_64.rpma5422a4205b972777344f8503cf84f13ELSA-2017-1482-1
kernel-debug-2.6.18-194.8.1.0.1.el5.x86_64.rpm717de5c3a4f1774f4c2609e9c291e9a7ELSA-2017-1482-1
kernel-debug-devel-2.6.18-194.8.1.0.1.el5.x86_64.rpm585c897338bddba785e774c57100caf8ELSA-2017-1482-1
kernel-devel-2.6.18-194.8.1.0.1.el5.x86_64.rpm96cac0187f3be0175d95dcac1a874e43ELSA-2017-1482-1
kernel-doc-2.6.18-194.8.1.0.1.el5.noarch.rpm3650499f66dd4cf38fb9879e6b3c0cf5ELSA-2017-1482-1
kernel-headers-2.6.18-194.8.1.0.1.el5.x86_64.rpm3c7337f4f8e14b85c7334ac7b30647a2ELSA-2017-1482-1
kernel-xen-2.6.18-194.8.1.0.1.el5.x86_64.rpm1532a16c8df339027bc614f97332681cELSA-2017-1482-1
kernel-xen-devel-2.6.18-194.8.1.0.1.el5.x86_64.rpmf75ca60065d1868da7cce8319105a789ELSA-2017-1482-1
ocfs2-2.6.18-194.8.1.0.1.el5-1.4.7-1.el5.x86_64.rpm3d0591eaa47d70dbeb55a653719e28ea-
ocfs2-2.6.18-194.8.1.0.1.el5debug-1.4.7-1.el5.x86_64.rpme3d9a0f3aa01659f4bd129d449b3041c-
ocfs2-2.6.18-194.8.1.0.1.el5xen-1.4.7-1.el5.x86_64.rpm503681657bb7acc48740d74781298a3c-
oracleasm-2.6.18-194.8.1.0.1.el5-2.0.5-1.el5.x86_64.rpm79cd020be8e588cb62ac179f3822479e-
oracleasm-2.6.18-194.8.1.0.1.el5debug-2.0.5-1.el5.x86_64.rpmcbbd7a52c0ae1689838f9ab16a82fd6d-
oracleasm-2.6.18-194.8.1.0.1.el5xen-2.0.5-1.el5.x86_64.rpmf5267ed17e8db3315c3f5401b0d276f3-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete