ELSA-2014-0771

ELSA-2014-0771 - kernel security and bug fix update

Type:SECURITY
Impact:IMPORTANT
Release Date:2014-06-19

Description


[2.6.32-431.20.3]
- [kernel] futex: Make lookup_pi_state more robust (Jerome Marchand) [1104516 1104517] {CVE-2014-3153}
- [kernel] futex: Always cleanup owner tid in unlock_pi (Jerome Marchand) [1104516 1104517] {CVE-2014-3153}
- [kernel] futex: Validate atomic acquisition in futex_lock_pi_atomic() (Jerome Marchand) [1104516 1104517] {CVE-2014-3153}
- [kernel] futex: prevent requeue pi on same futex (Jerome Marchand) [1104516 1104517] {CVE-2014-3153}
- [fs] autofs4: fix device ioctl mount lookup (Ian Kent) [1069630 999708]
- [fs] vfs: introduce kern_path_mountpoint() (Ian Kent) [1069630 999708]
- [fs] vfs: rename user_path_umountat() to user_path_mountpoint_at() (Ian Kent) [1069630 999708]
- [fs] vfs: massage umount_lookup_last() a bit to reduce nesting (Ian Kent) [1069630 999708]
- [fs] vfs: allow umount to handle mountpoints without revalidating them (Ian Kent) [1069630 999708]
- Revert: [fs] vfs: allow umount to handle mountpoints without revalidating them (Ian Kent) [1069630 999708]
- Revert: [fs] vfs: massage umount_lookup_last() a bit to reduce nesting (Ian Kent) [1069630 999708]
- Revert: [fs] vfs: rename user_path_umountat() to user_path_mountpoint_at() (Ian Kent) [1069630 999708]
- Revert: [fs] vfs: introduce kern_path_mountpoint() (Ian Kent) [1069630 999708]
- Revert: [fs] autofs4: fix device ioctl mount lookup (Ian Kent) [1069630 999708]

[2.6.32-431.20.2]
- [block] floppy: don't write kernel-only members to FDRAWCMD ioctl output (Denys Vlasenko) [1094308 1094310] {CVE-2014-1738 CVE-2014-1737}
- [block] floppy: ignore kernel-only members in FDRAWCMD ioctl input (Denys Vlasenko) [1094308 1094310] {CVE-2014-1738 CVE-2014-1737}
- [fs] vfs: fix autofs/afs/etc magic mountpoint breakage (Frantisek Hrbata) [1094370 1079347] {CVE-2014-0203}
- [char] n_tty: Fix n_tty_write crash when echoing in raw mode (Aristeu Rozanski) [1094236 1094237] {CVE-2014-0196}

[2.6.32-431.20.1]
- [net] rtnetlink: Only supply IFLA_VF_PORTS information when RTEXT_FILTER_VF is set (Jiri Pirko) [1092870 1081282]
- [net] rtnetlink: Warn when interface's information won't fit in our packet (Jiri Pirko) [1092870 1081282]
- [net] bridge: Correctly receive hw-accelerated vlan traffic (Vlad Yasevich) [1096214 1067722]
- [net] vlan: Allow accelerated packets to flow through the bridge (Vlad Yasevich) [1096214 1067722]
- [infiniband] qib: Add missing serdes init sequence (Doug Ledford) [1080104 1005491]
- [infiniband] qib: Fix txselect regression (Doug Ledford) [1080104 1005491]
- [netdrv] ixgbevf: fix vlan acceleration (Nikolay Aleksandrov) [1094287 1069028]
- [security] selinux: Fix kernel BUG on empty security contexts (Paul Moore) [1062502 1064545] {CVE-2014-1874}
- [netdrv] libertas: potential oops in debugfs (Denys Vlasenko) [1034176 1034177] {CVE-2013-6378}
- [kernel] cgroup: move put_css_set() after setting CGRP_RELEASABLE bit to fix notify_on_release (Naoya Horiguchi) [1081909 1037465]
- [kernel] sched: Use exit hook to avoid use-after-free crash (Naoya Horiguchi) [1081914 1032347]
- [kernel] cgroup: replace list_del() with list_del_init() to avoid panic (Naoya Horiguchi) [1081915 1032343]
- [x86] turbostat: display C8, C9, C10 residency (Neil Horman) [1096711 1080637]
- [scsi] lpfc 8.3.44: Fix kernel panics from corrupted ndlp list (Rob Evers) [1086839 1063699]
- [s390] fix kernel crash due to linkage stack instructions (Hendrik Brueckner) [1067678 1067679] {CVE-2014-2039}
- [x86] kvm: rate-limit global clock updates (Andrew Jones) [1090750 1072373]
- [kernel] hrtimers: Move SMP function call to thread context (Mateusz Guzik) [1079869 1073129]
- [kernel] hrtimers: Support resuming with two or more CPUs online (Mateusz Guzik) [1079869 1073129]
- [fs] autofs4: fix device ioctl mount lookup (Ian Kent) [1069630 999708]
- [fs] vfs: introduce kern_path_mountpoint() (Ian Kent) [1069630 999708]
- [fs] vfs: rename user_path_umountat() to user_path_mountpoint_at() (Ian Kent) [1069630 999708]
- [fs] vfs: massage umount_lookup_last() a bit to reduce nesting (Ian Kent) [1069630 999708]
- [fs] vfs: allow umount to handle mountpoints without revalidating them (Ian Kent) [1069630 999708]
- [fs] ext4: fix WARN_ON from ext4_releasepage() (Carlos Maiolino) [1063508 1036814]
- [fs] vfs: fix getname() && do_getname() interaction (Oleg Nesterov) [1075653 1024689]
- [x86] apic: Make disabled_cpu_apicid static read_mostly, fix typos (Nigel Croxon) [1082622 980621]
- [x86] kexec: Add disable_cpu_apicid kernel parameter (Nigel Croxon) [1082622 980621]
- [kvm] x86: use kvm_read/write_guest_virt_system in task switch (Paolo Bonzini) [1070296 1018581]
- [kvm] x86: small cleanups to kvm_task_switch (Paolo Bonzini) [1070296 1018581]
- [kvm] x86: propagate error from kvm_load_segment_descriptor (Paolo Bonzini) [1070296 1018581]
- [kvm] x86: improve save_guest_segment_descriptor (Paolo Bonzini) [1070296 1018581]
- [kvm] x86: introduce kvm_write_guest_virt_system (Paolo Bonzini) [1070296 1018581]
- [kvm] x86: Fix task switch privilege checks (Paolo Bonzini) [1070296 1018581]
- [powerpc] Make function that parses RTAS error logs global (Steve Best) [1091424 1028682]
- [powerpc] pseries: Add RTAS event log v6 definition (Steve Best) [1091424 1028682]
- [powerpc] pseries: Parse and handle EPOW interrupts (Steve Best) [1091424 1028682]
- [fs] nfsd: don't try to reuse an expired DRC entry off the list (Jeff Layton) [1088779 1036972]
- [fs] nfsd: when reusing an existing repcache entry, unhash it first (Jeff Layton) [1088779 1036972]

[2.6.32-431.19.1]
- [kernel] sched: fix cpu_power initialization (Radim Krcmar) [1091826 1065304]
- [fs] gfs2: Fix uninitialized VFS inode in gfs2_create_inode (Abhijith Das) [1092002 1059808]

[2.6.32-431.18.1]
- [block] fix race between request completion and timeout handling (Jeff Moyer) [1089915 919756]


Related CVEs


CVE-2014-1737
CVE-2014-2039
CVE-2014-1738
CVE-2014-1874
CVE-2014-3153
CVE-2013-6378
CVE-2014-0203

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 6 (i386) kernel-2.6.32-431.20.3.el6.src.rpm27122a7eaf23ad120cfc502cd9301fe353fdd343f5a929dc2620da47ee983a74ELSA-2024-1831ol6_i386_latest_archive
kernel-2.6.32-431.20.3.el6.src.rpm27122a7eaf23ad120cfc502cd9301fe353fdd343f5a929dc2620da47ee983a74ELSA-2024-1831ol6_u5_i386_patch
kernel-2.6.32-431.20.3.el6.i686.rpmb1cda961f1ba45fd5d308b0ca6097f064d17bfc671a7546e7f8b05645e50e970ELSA-2024-1831ol6_i386_latest_archive
kernel-2.6.32-431.20.3.el6.i686.rpmb1cda961f1ba45fd5d308b0ca6097f064d17bfc671a7546e7f8b05645e50e970ELSA-2024-1831ol6_u5_i386_patch
kernel-abi-whitelists-2.6.32-431.20.3.el6.noarch.rpm5afb3d9da067a76452bcd76fe7abe49784ce9b33942fe59baad288899b10542eELSA-2024-1831ol6_i386_latest_archive
kernel-abi-whitelists-2.6.32-431.20.3.el6.noarch.rpm5afb3d9da067a76452bcd76fe7abe49784ce9b33942fe59baad288899b10542eELSA-2024-1831ol6_u5_i386_patch
kernel-debug-2.6.32-431.20.3.el6.i686.rpm77c69beada16ad55431b1f9ec64556e062ca0dd1b6565fac3f2f8c4f16c5f303ELSA-2024-1831ol6_i386_latest_archive
kernel-debug-2.6.32-431.20.3.el6.i686.rpm77c69beada16ad55431b1f9ec64556e062ca0dd1b6565fac3f2f8c4f16c5f303ELSA-2024-1831ol6_u5_i386_patch
kernel-debug-devel-2.6.32-431.20.3.el6.i686.rpm18cdf729d918305323d1aae72b63e68abbd8ee6d9c6a8ed4e26c7836783739b9ELSA-2024-1831ol6_i386_latest_archive
kernel-debug-devel-2.6.32-431.20.3.el6.i686.rpm18cdf729d918305323d1aae72b63e68abbd8ee6d9c6a8ed4e26c7836783739b9ELSA-2024-1831ol6_u5_i386_patch
kernel-devel-2.6.32-431.20.3.el6.i686.rpm51a4826d80c16e97bd12d3820d6357d38b21f78d278ad0cadbb186fc4f942ce0ELSA-2024-1831ol6_i386_latest_archive
kernel-devel-2.6.32-431.20.3.el6.i686.rpm51a4826d80c16e97bd12d3820d6357d38b21f78d278ad0cadbb186fc4f942ce0ELSA-2024-1831ol6_u5_i386_patch
kernel-doc-2.6.32-431.20.3.el6.noarch.rpmb266ec630f18edf0d19fa85b3d25b68328c76d61fece5bef35b53072c90aac7aELSA-2024-1831ol6_i386_latest_archive
kernel-doc-2.6.32-431.20.3.el6.noarch.rpmb266ec630f18edf0d19fa85b3d25b68328c76d61fece5bef35b53072c90aac7aELSA-2024-1831ol6_u5_i386_patch
kernel-firmware-2.6.32-431.20.3.el6.noarch.rpm3efa834eeccc051b69f4900f0c1f9af2467cd5ddd004780412de2f8b60789a41ELSA-2024-1831ol6_i386_latest_archive
kernel-firmware-2.6.32-431.20.3.el6.noarch.rpm3efa834eeccc051b69f4900f0c1f9af2467cd5ddd004780412de2f8b60789a41ELSA-2024-1831ol6_u5_i386_patch
kernel-headers-2.6.32-431.20.3.el6.i686.rpm5a22fa1403cee214bd21941005c91834370a208f81459137ef882939849e2e53ELSA-2024-1831ol6_i386_latest_archive
kernel-headers-2.6.32-431.20.3.el6.i686.rpm5a22fa1403cee214bd21941005c91834370a208f81459137ef882939849e2e53ELSA-2024-1831ol6_u5_i386_patch
perf-2.6.32-431.20.3.el6.i686.rpm430e5cc67ce8efa5b5702176c441b59849f90a057e2b634e3ac4a119dabb0fd4ELSA-2024-1831ol6_i386_latest_archive
perf-2.6.32-431.20.3.el6.i686.rpm430e5cc67ce8efa5b5702176c441b59849f90a057e2b634e3ac4a119dabb0fd4ELSA-2024-1831ol6_u5_i386_patch
python-perf-2.6.32-431.20.3.el6.i686.rpm3754ed0a96b5c888cfe7678ade2177882b74036855957a80b9ff014dec275acaELSA-2024-1831ol6_i386_latest_archive
python-perf-2.6.32-431.20.3.el6.i686.rpm3754ed0a96b5c888cfe7678ade2177882b74036855957a80b9ff014dec275acaELSA-2024-1831ol6_u5_i386_patch
Oracle Linux 6 (x86_64) kernel-2.6.32-431.20.3.el6.src.rpm27122a7eaf23ad120cfc502cd9301fe353fdd343f5a929dc2620da47ee983a74ELSA-2024-1831ol6_u5_x86_64_patch
kernel-2.6.32-431.20.3.el6.src.rpm27122a7eaf23ad120cfc502cd9301fe353fdd343f5a929dc2620da47ee983a74ELSA-2024-1831ol6_x86_64_latest_archive
kernel-2.6.32-431.20.3.el6.x86_64.rpm34fe754aca175d098d78d5a1f8bf18f00d53991f88fb1d7affd5e6a9d5c712a6ELSA-2024-1831ol6_u5_x86_64_patch
kernel-2.6.32-431.20.3.el6.x86_64.rpm34fe754aca175d098d78d5a1f8bf18f00d53991f88fb1d7affd5e6a9d5c712a6ELSA-2024-1831ol6_x86_64_latest_archive
kernel-abi-whitelists-2.6.32-431.20.3.el6.noarch.rpm5afb3d9da067a76452bcd76fe7abe49784ce9b33942fe59baad288899b10542eELSA-2024-1831ol6_u5_x86_64_patch
kernel-abi-whitelists-2.6.32-431.20.3.el6.noarch.rpm5afb3d9da067a76452bcd76fe7abe49784ce9b33942fe59baad288899b10542eELSA-2024-1831ol6_x86_64_latest_archive
kernel-debug-2.6.32-431.20.3.el6.x86_64.rpme11650bb359c4d6b939ec93f5e022cbc18f8acd1d12add551e920ba6c33f5d2eELSA-2024-1831ol6_u5_x86_64_patch
kernel-debug-2.6.32-431.20.3.el6.x86_64.rpme11650bb359c4d6b939ec93f5e022cbc18f8acd1d12add551e920ba6c33f5d2eELSA-2024-1831ol6_x86_64_latest_archive
kernel-debug-devel-2.6.32-431.20.3.el6.x86_64.rpm8e6ac87948f95704fa557fd92d0c9e2bff36874ed89cda3b3d725aff0f6319f5ELSA-2024-1831ol6_u5_x86_64_patch
kernel-debug-devel-2.6.32-431.20.3.el6.x86_64.rpm8e6ac87948f95704fa557fd92d0c9e2bff36874ed89cda3b3d725aff0f6319f5ELSA-2024-1831ol6_x86_64_latest_archive
kernel-devel-2.6.32-431.20.3.el6.x86_64.rpm089e32212ea214788932a8786684071d923fd378c05974c8aefa59cdd6d58ee0ELSA-2024-1831ol6_u5_x86_64_patch
kernel-devel-2.6.32-431.20.3.el6.x86_64.rpm089e32212ea214788932a8786684071d923fd378c05974c8aefa59cdd6d58ee0ELSA-2024-1831ol6_x86_64_latest_archive
kernel-doc-2.6.32-431.20.3.el6.noarch.rpmb266ec630f18edf0d19fa85b3d25b68328c76d61fece5bef35b53072c90aac7aELSA-2024-1831ol6_u5_x86_64_patch
kernel-doc-2.6.32-431.20.3.el6.noarch.rpmb266ec630f18edf0d19fa85b3d25b68328c76d61fece5bef35b53072c90aac7aELSA-2024-1831ol6_x86_64_latest_archive
kernel-firmware-2.6.32-431.20.3.el6.noarch.rpm3efa834eeccc051b69f4900f0c1f9af2467cd5ddd004780412de2f8b60789a41ELSA-2024-1831ol6_u5_x86_64_patch
kernel-firmware-2.6.32-431.20.3.el6.noarch.rpm3efa834eeccc051b69f4900f0c1f9af2467cd5ddd004780412de2f8b60789a41ELSA-2024-1831ol6_x86_64_latest_archive
kernel-headers-2.6.32-431.20.3.el6.x86_64.rpma4ec1bb901e54455b95a20e90eeea5c4f102766aa31a3a8e826c9c6e1a4d561cELSA-2024-1831ol6_u5_x86_64_patch
kernel-headers-2.6.32-431.20.3.el6.x86_64.rpma4ec1bb901e54455b95a20e90eeea5c4f102766aa31a3a8e826c9c6e1a4d561cELSA-2024-1831ol6_x86_64_latest_archive
perf-2.6.32-431.20.3.el6.x86_64.rpma3d9d05c71a75e420c89394fb8edeb4dd72b95a9310593ea1b7ac425b88db46fELSA-2024-1831ol6_u5_x86_64_patch
perf-2.6.32-431.20.3.el6.x86_64.rpma3d9d05c71a75e420c89394fb8edeb4dd72b95a9310593ea1b7ac425b88db46fELSA-2024-1831ol6_x86_64_latest_archive
python-perf-2.6.32-431.20.3.el6.x86_64.rpmb1235b17f2ca60cd45ac58da3d1b36ce280089664313769e1465c1f3a94d1afaELSA-2024-1831ol6_u5_x86_64_patch
python-perf-2.6.32-431.20.3.el6.x86_64.rpmb1235b17f2ca60cd45ac58da3d1b36ce280089664313769e1465c1f3a94d1afaELSA-2024-1831ol6_x86_64_latest_archive



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete