ELSA-2017-3200

ELSA-2017-3200 - kernel security and bug fix update

Type:SECURITY
Severity:IMPORTANT
Release Date:2017-11-15

Description


[2.6.32-696.16.1.OL6]
- Update genkey [bug 25599697]

[2.6.32-696.16.1]
- [net] packet: fix tp_reserve race in packet_set_ring (Stefano Brivio) [1481941 1481943] {CVE-2017-1000111}
- [net] packet: fix overflow in check for tp_frame_nr (Stefano Brivio) [1481941 1481943] {CVE-2017-1000111}
- [net] packet: fix overflow in check for tp_reserve (Stefano Brivio) [1481941 1481943] {CVE-2017-1000111}
- [netdrv] sfc: tx ring can only have 2048 entries for all EF10 NICs (Jarod Wilson) [1498019 1441773]
- [fs] sunrpc: always treat the invalid cache as unexpired (Thiago Becker) [1497976 1477288]
- [fs] sunrpc: xpt_auth_cache should be ignored when expired (Thiago Becker) [1497976 1477288]
- [net] tcp: initialize rcv_mss to TCP_MIN_MSS instead of 0 (Davide Caratti) [1488344 1488340] {CVE-2017-14106}
- [net] tcp: fix 0 divide in __tcp_select_window() (Davide Caratti) [1488344 1488340] {CVE-2017-14106}
- [scsi] lpfc: fix 'integer constant too large' error on 32bit archs (Maurizio Lombardi) [1487220 1441169]
- [scsi] lpfc: version 11.0.1.6 is 11.0.0.6 with no_hba_reset patches (Maurizio Lombardi) [1487220 1441169]
- [scsi] lpfc: Vport creation is failing with 'Link Down' error (Maurizio Lombardi) [1487220 1441169]
- [scsi] lpfc: Fix panic on BFS configuration (Maurizio Lombardi) [1487220 1441169]
- [scsi] lpfc: Fix eh_deadline setting for sli3 adapters (Maurizio Lombardi) [1487220 1441169]
- [scsi] lpfc: Correct panics with eh_timeout and eh_deadline (Maurizio Lombardi) [1487220 1441169]
- [net] udp: consistently apply ufo or fragmentation (Davide Caratti) [1481532 1481529] {CVE-2017-1000112}
- [net] ipv6: Should use consistent conditional judgement for ip6 fragment between __ip6_append_data and ip6_finish_output (Davide Caratti) [1481532 1481529] {CVE-2017-1000112}
- [net] ipv4: Should use consistent conditional judgement for ip fragment in __ip_append_data and ip_finish_output (Davide Caratti) [1481532 1481529] {CVE-2017-1000112}

[2.6.32-696.15.1]
- [fs] binfmt_elf.c:load_elf_binary(): return -EINVAL on zero-length mappings (Petr Matousek) [1492959 1492961] {CVE-2017-1000253}
- [fs] binfmt_elf.c: fix bug in loading of PIE binaries (Petr Matousek) [1492959 1492961] {CVE-2017-1000253}

[2.6.32-696.14.1]
- [fs] nfs: don't disconnect open-owner on NFS4ERR_BAD_SEQID (Dave Wysochanski) [1491123 1459636]
- [net] l2cap: prevent stack overflow on incoming bluetooth packet (Neil Horman) [1490060 1490062] {CVE-2017-1000251}


Related CVEs


CVE-2017-1000111
CVE-2017-14106
CVE-2017-1000112

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 6 (i386) kernel-2.6.32-696.16.1.el6.src.rpm9ba94c80c9e192da15ae433ef790a8a5ELSA-2021-9212
kernel-2.6.32-696.16.1.el6.i686.rpm0998299d5f0f98b1159686bd045bdebaELSA-2021-9212
kernel-abi-whitelists-2.6.32-696.16.1.el6.noarch.rpme1b18c66749dcf977cce6d03b42ae282ELSA-2021-9212
kernel-debug-2.6.32-696.16.1.el6.i686.rpm5a2706fade6c34e46032a9b282e638daELSA-2021-9212
kernel-debug-devel-2.6.32-696.16.1.el6.i686.rpm4a936b4609106dd1cc8124a67294d357ELSA-2021-9212
kernel-devel-2.6.32-696.16.1.el6.i686.rpma35d801c48cd17e2d63760e4cb1fa1a7ELSA-2021-9212
kernel-doc-2.6.32-696.16.1.el6.noarch.rpm4008857ef539409bef9d4592801e58bfELSA-2021-9212
kernel-firmware-2.6.32-696.16.1.el6.noarch.rpma093f275dbb2dbcc400d583b520d456fELSA-2021-9212
kernel-headers-2.6.32-696.16.1.el6.i686.rpmbbbc7b3ced00376a6f02ae0eca2ed081ELSA-2021-9212
perf-2.6.32-696.16.1.el6.i686.rpm2dfb1707feec4b54d61cf87b0b114294ELSA-2021-9212
python-perf-2.6.32-696.16.1.el6.i686.rpm8fc01bbff38e79388bbf553e1be2156dELSA-2021-9212
Oracle Linux 6 (x86_64) kernel-2.6.32-696.16.1.el6.src.rpm9ba94c80c9e192da15ae433ef790a8a5ELSA-2021-9212
kernel-2.6.32-696.16.1.el6.x86_64.rpm75e4d9b84b197d1fe739372f5a1cb523ELSA-2021-9212
kernel-abi-whitelists-2.6.32-696.16.1.el6.noarch.rpme1b18c66749dcf977cce6d03b42ae282ELSA-2021-9212
kernel-debug-2.6.32-696.16.1.el6.x86_64.rpmb582895ce75a7aba3e71dac58559ed90ELSA-2021-9212
kernel-debug-devel-2.6.32-696.16.1.el6.i686.rpm4a936b4609106dd1cc8124a67294d357ELSA-2021-9212
kernel-debug-devel-2.6.32-696.16.1.el6.x86_64.rpmc074838cd4824d3895e3a277ec7ce1d2ELSA-2021-9212
kernel-devel-2.6.32-696.16.1.el6.x86_64.rpm5ae36c712eb8cd03f364269f177d962aELSA-2021-9212
kernel-doc-2.6.32-696.16.1.el6.noarch.rpm4008857ef539409bef9d4592801e58bfELSA-2021-9212
kernel-firmware-2.6.32-696.16.1.el6.noarch.rpma093f275dbb2dbcc400d583b520d456fELSA-2021-9212
kernel-headers-2.6.32-696.16.1.el6.x86_64.rpm1c6062ec4a8836a64b4bf878ff29d786ELSA-2021-9212
perf-2.6.32-696.16.1.el6.x86_64.rpmf0f9256578c5358209689bdbf032a64bELSA-2021-9212
python-perf-2.6.32-696.16.1.el6.x86_64.rpm6ae8a08500781b6c70653e33e3239257ELSA-2021-9212



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete