ELSA-2017-3590

ELSA-2017-3590 - Unbreakable Enterprise kernel security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2017-06-30

Description


kernel-uek
[3.8.13-118.19.2]
- nfsd: check for oversized NFSv2/v3 arguments (J. Bruce Fields) [Orabug: 26366022] {CVE-2017-7645}

[3.8.13-118.19.1]
- selinux: quiet the filesystem labeling behavior message (Paul Moore) [Orabug: 25290650]
- HID: hid-cypress: validate length of report (Greg Kroah-Hartman) [Orabug: 25891907] {CVE-2017-7273}
- udf: Remove repeated loads blocksize (Jan Kara) [Orabug: 25905721] {CVE-2015-4167}
- udf: Check length of extended attributes and allocation descriptors (Jan Kara) [Orabug: 25905721] {CVE-2015-4167}
- udf: Verify i_size when loading inode (Jan Kara) [Orabug: 25905721] {CVE-2015-4167}
- btrfs: drop unused parameter from btrfs_item_nr (Ross Kirk) [Orabug: 25948098] {CVE-2014-9710}
- Btrfs: cleanup of function where fixup_low_keys() is called (Tsutomu Itoh) [Orabug: 25948098] {CVE-2014-9710}
- Btrfs: remove unused argument of fixup_low_keys() (Tsutomu Itoh) [Orabug: 25948098] {CVE-2014-9710}
- Btrfs: remove unused argument of btrfs_extend_item() (Tsutomu Itoh) [Orabug: 25948098] {CVE-2014-9710}
- Btrfs: add support for asserts (Josef Bacik) [Orabug: 25948098] {CVE-2014-9710}
- Btrfs: make xattr replace operations atomic (Filipe Manana) [Orabug: 25948098] {CVE-2014-9710}
- net: validate the range we feed to iov_iter_init() in sys_sendto/sys_recvfrom (Al Viro) [Orabug: 25948145] {CVE-2015-2686}
- PCI: Prevent VPD access for QLogic ISP2722 (Ethan Zhao) [Orabug: 25975506]
- PCI: Prevent VPD access for buggy devices (Babu Moger) [Orabug: 25975506]
- xsigo: [backport](UEK3)-Compute node crash on FC failover (Pradeep Gopanapalli) [Orabug: 26007560]
- ipv4: try to cache dst_entries which would cause a redirect (Hannes Frederic Sowa) [Orabug: 26032372] {CVE-2015-1465}
- RDS/IB: active bonding port state fix for intfs added late (Mukesh Kacker) [Orabug: 26139385]
- net/packet: fix overflow in check for tp_reserve (Andrey Konovalov) [Orabug: 26143552] {CVE-2017-7308}
- net/packet: fix overflow in check for tp_frame_nr (Andrey Konovalov) [Orabug: 26143552] {CVE-2017-7308}
- net/packet: fix overflow in check for priv area size (Andrey Konovalov) [Orabug: 26143552] {CVE-2017-7308}
- dccp/tcp: do not inherit mc_list from parent (Eric Dumazet) [Orabug: 26108571] {CVE-2017-8890}
- nfsd: stricter decoding of write-like NFSv2/v3 ops (J. Bruce Fields) [Orabug: 25986990] {CVE-2017-7895}


Related CVEs


CVE-2017-7645

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 6 (x86_64) dtrace-modules-3.8.13-118.19.2.el6uek-0.4.5-3.el6.src.rpme3b7e1c352fb8a8a59e896b32c2fb82c593a90a6aba170b87d3f7e942f52d5ab-ol6_x86_64_UEKR3_latest
kernel-uek-3.8.13-118.19.2.el6uek.src.rpm50cc05b46d982f7b2442959dd3e64fcab5bf4a55c2768df4fa468b2582d0cfb1ELSA-2025-20007ol6_x86_64_UEKR3_latest
dtrace-modules-3.8.13-118.19.2.el6uek-0.4.5-3.el6.x86_64.rpm39de6b43b1d91c64b67bad7dd7dfa6e1b785a0e0a6b6fcc507894f566cdc62d9-ol6_x86_64_UEKR3_latest
kernel-uek-3.8.13-118.19.2.el6uek.x86_64.rpm65d151f965dec082b590ca66b921889a4798bb539d80f4e8e5beaaecb94b8008ELSA-2025-20007ol6_x86_64_UEKR3_latest
kernel-uek-debug-3.8.13-118.19.2.el6uek.x86_64.rpm976837a9f93c3bcae62c86bc0c31c455ccdf103b9fefa8f5d478efde7523f268ELSA-2025-20007ol6_x86_64_UEKR3_latest
kernel-uek-debug-devel-3.8.13-118.19.2.el6uek.x86_64.rpmb49baded75a9a428cfa958c3f110d0da7b0daabc79ef5bcf9432420b2cae24baELSA-2025-20007ol6_x86_64_UEKR3_latest
kernel-uek-devel-3.8.13-118.19.2.el6uek.x86_64.rpm85885a71f7fb6b2ca99bcdb9616859448e532d7b88aecc9024b830b10481c850ELSA-2025-20007ol6_x86_64_UEKR3_latest
kernel-uek-doc-3.8.13-118.19.2.el6uek.noarch.rpmffc02d74633c25ce840e1e2d7207cf329689bc899b12277be1332742403eb558ELSA-2025-20007ol6_x86_64_UEKR3_latest
kernel-uek-firmware-3.8.13-118.19.2.el6uek.noarch.rpmaa8de7f4eee5c19668853f5606125659e6758bd3eb4f1158df9ed2058cab0f11ELSA-2025-20007ol6_x86_64_UEKR3_latest
Oracle Linux 7 (x86_64) dtrace-modules-3.8.13-118.19.2.el7uek-0.4.5-3.el7.src.rpm38259c5230ab28914786531046ea8a2e8a54d104a85ed723a5c5c80dbe8edf50-ol7_x86_64_UEKR3
kernel-uek-3.8.13-118.19.2.el7uek.src.rpm814c0fc2a925ce6fc0f37329202d8fe1c4cd814f95a43ecc6c3d0c1f86be6b43ELSA-2025-20190ol7_x86_64_UEKR3
dtrace-modules-3.8.13-118.19.2.el7uek-0.4.5-3.el7.x86_64.rpmc3c7f5af7fbc6502fa31cd6ac8226799b321e130291ec4a727c8de2e85fea0e0-ol7_x86_64_UEKR3
kernel-uek-3.8.13-118.19.2.el7uek.x86_64.rpmfaa9dcac40fa68583095161524765e505c9164e110f2c9609744f963d8b27b69ELSA-2025-20190ol7_x86_64_UEKR3
kernel-uek-debug-3.8.13-118.19.2.el7uek.x86_64.rpmccf9c3db0a3b96da6e4b2eb86c6bdb8f74eaf4930d9d3be4ccfda490c62543b3ELSA-2025-20190ol7_x86_64_UEKR3
kernel-uek-debug-devel-3.8.13-118.19.2.el7uek.x86_64.rpm2156566f8d2a35d497fe898f6b2f0e4ba45195352dd106eb615b40b112c5581fELSA-2025-20190ol7_x86_64_UEKR3
kernel-uek-devel-3.8.13-118.19.2.el7uek.x86_64.rpm32c67ac1d99c3a5e9a4cbfe4fa463c5ea56fc7c93110a7589957c64bbc9e04c5ELSA-2025-20190ol7_x86_64_UEKR3
kernel-uek-doc-3.8.13-118.19.2.el7uek.noarch.rpm40f8dbb69d4de9e25a6ec52b8edbfa98572bafbe1a3c0a9e5e07225c85790717ELSA-2025-20190ol7_x86_64_UEKR3
kernel-uek-firmware-3.8.13-118.19.2.el7uek.noarch.rpmb71e042d97222ae02dffb4c02b83797e7affc177ef28fd82177b85282724a10cELSA-2025-20007ol7_x86_64_UEKR3



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete