ELSA-2017-3637

ELSA-2017-3637 - Unbreakable Enterprise kernel security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2017-11-02

Description


[2.6.39-400.297.12]
- xsigo: [backport] Fix race in freeing aged Forwarding tables (Pradeep Gopanapalli) [Orabug: 24823234]
- ocfs2: fix deadlock issue when taking inode lock at vfs entry points (Eric Ren) [Orabug: 25671723]
- ocfs2/dlmglue: prepare tracking logic to avoid recursive cluster lock (Eric Ren) [Orabug: 25671723]
- net/packet: fix overflow in check for tp_reserve (Andrey Konovalov) [Orabug: 26143563] {CVE-2017-7308}
- net/packet: fix overflow in check for tp_frame_nr (Andrey Konovalov) [Orabug: 26143563] {CVE-2017-7308}
- char: lp: fix possible integer overflow in lp_setup() (Willy Tarreau) [Orabug: 26403941] {CVE-2017-1000363}
- ALSA: timer: Fix missing queue indices reset at SNDRV_TIMER_IOCTL_SELECT (Takashi Iwai) [Orabug: 26403958] {CVE-2017-1000380}
- ALSA: timer: Fix race between read and ioctl (Takashi Iwai) [Orabug: 26403958] {CVE-2017-1000380}
- ALSA: timer: fix NULL pointer dereference in read()/ioctl() race (Vegard Nossum) [Orabug: 26403958] {CVE-2017-1000380}
- ALSA: timer: Fix negative queue usage by racy accesses (Takashi Iwai) [Orabug: 26403958] {CVE-2017-1000380}
- ALSA: timer: Fix race at concurrent reads (Takashi Iwai) [Orabug: 26403958] {CVE-2017-1000380}
- ALSA: timer: Fix race among timer ioctls (Takashi Iwai) [Orabug: 26403958] {CVE-2017-1000380}
- ipv6: xfrm: Handle errors reported by xfrm6_find_1stfragopt() (Ben Hutchings) [Orabug: 26403974] {CVE-2017-9074}
- ipv6: Check ip6_find_1stfragopt() return value properly. (David S. Miller) [Orabug: 26403974] {CVE-2017-9074}
- ipv6: Prevent overrun when parsing v6 header options (Craig Gallek) [Orabug: 26403974] {CVE-2017-9074}
- ipv6/dccp: do not inherit ipv6_mc_list from parent (WANG Cong) [Orabug: 26404007] {CVE-2017-9077}
- aio: mark AIO pseudo-fs noexec (Jann Horn) [Orabug: 26643601] {CVE-2016-10044}
- vfs: Commit to never having exectuables on proc and sysfs. (Eric W. Biederman) [Orabug: 26643601] {CVE-2016-10044}
- vfs, writeback: replace FS_CGROUP_WRITEBACK with SB_I_CGROUPWB (Tejun Heo) [Orabug: 26643601] {CVE-2016-10044}
- x86/acpi: Prevent out of bound access caused by broken ACPI tables (Seunghun Han) [Orabug: 26643652] {CVE-2017-11473}
- sctp: do not inherit ipv6_{mc|ac|fl}_list from parent (Eric Dumazet) [Orabug: 26650889] {CVE-2017-9075}
- saa7164: fix double fetch PCIe access condition (Steven Toth) [Orabug: 26675148] {CVE-2017-8831}
- saa7164: fix sparse warnings (Hans Verkuil) [Orabug: 26675148] {CVE-2017-8831}
- saa7164: get rid of warning: no previous prototype (Mauro Carvalho Chehab) [Orabug: 26675148] {CVE-2017-8831}
- [scsi] lpfc 8.3.44: Fix kernel panics from corrupted ndlp (James Smart) [Orabug: 26765341]
- timerfd: Protect the might cancel mechanism proper (Thomas Gleixner) [Orabug: 26899791] {CVE-2017-10661}
- scsi: scsi_transport_iscsi: fix the issue that iscsi_if_rx doesn't parse nlmsg properly (Xin Long) [Orabug: 26988628] {CVE-2017-14489}


Related CVEs


CVE-2017-7308
CVE-2016-10044
CVE-2017-9075
CVE-2017-8831
CVE-2017-9074
CVE-2017-1000363
CVE-2017-1000380
CVE-2017-9077
CVE-2017-14489
CVE-2017-11473
CVE-2017-10661

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 5 (i386) kernel-uek-2.6.39-400.297.12.el5uek.src.rpm63aff99a9d31b3897d7e55bf0fc3efe490e2f3134d866631d57094a3e83f256fELSA-2020-5936ol5_i386_UEK_ELS
kernel-uek-2.6.39-400.297.12.el5uek.i686.rpm4a213486cb1c31e36aeab2186e072706c32a6b1237218bd2bcfff25d5c269bb4ELSA-2020-5936ol5_i386_UEK_ELS
kernel-uek-debug-2.6.39-400.297.12.el5uek.i686.rpm3a61254d2a3dd1a3cb3f721eef3bdb30f827234ce583f2e8af277302b40d8badELSA-2020-5936ol5_i386_UEK_ELS
kernel-uek-debug-devel-2.6.39-400.297.12.el5uek.i686.rpm2e4e20ee3170acdd64e94ca92c39edaea0bfa8cac424404a548629725906d50eELSA-2020-5936ol5_i386_UEK_ELS
kernel-uek-devel-2.6.39-400.297.12.el5uek.i686.rpm4607b6d1b2d78cd54e50b36aaf9eca7fa79285b830c4b97a8812c622325da1d5ELSA-2020-5936ol5_i386_UEK_ELS
kernel-uek-doc-2.6.39-400.297.12.el5uek.noarch.rpm000eaae898cc295257766125b7e307dd33dc72399823d64b9b00a5f9417ec87aELSA-2020-5936ol5_i386_UEK_ELS
kernel-uek-firmware-2.6.39-400.297.12.el5uek.noarch.rpmc9b52c2fe46820253b9e0701c3d0852d96a98d7d226259d637955a71f5525bacELSA-2020-5936ol5_i386_UEK_ELS
Oracle Linux 5 (x86_64) kernel-uek-2.6.39-400.297.12.el5uek.src.rpm63aff99a9d31b3897d7e55bf0fc3efe490e2f3134d866631d57094a3e83f256fELSA-2020-5936ol5_x86_64_UEK_ELS
kernel-uek-2.6.39-400.297.12.el5uek.x86_64.rpm4a45f2b0d873261ff5ef492228efc9ab43431b39dd6acaddc7ff3b15357f9910ELSA-2020-5936ol5_x86_64_UEK_ELS
kernel-uek-debug-2.6.39-400.297.12.el5uek.x86_64.rpm11871b0877bded5248f3a9ad408f935e9b88f7767aa0fa77cd1527cc007b496fELSA-2020-5936ol5_x86_64_UEK_ELS
kernel-uek-debug-devel-2.6.39-400.297.12.el5uek.x86_64.rpm31c45ccba6408ef925f514c5cc64be6b13aec8820e3d9a6b73f16443d0049a5bELSA-2020-5936ol5_x86_64_UEK_ELS
kernel-uek-devel-2.6.39-400.297.12.el5uek.x86_64.rpm704ca38a53ffd5458faa8e1482c397b342827b0574d2cb47efc68761c24c03c1ELSA-2020-5936ol5_x86_64_UEK_ELS
kernel-uek-doc-2.6.39-400.297.12.el5uek.noarch.rpm000eaae898cc295257766125b7e307dd33dc72399823d64b9b00a5f9417ec87aELSA-2020-5936ol5_x86_64_UEK_ELS
kernel-uek-firmware-2.6.39-400.297.12.el5uek.noarch.rpmc9b52c2fe46820253b9e0701c3d0852d96a98d7d226259d637955a71f5525bacELSA-2020-5936ol5_x86_64_UEK_ELS
Oracle Linux 6 (i386) kernel-uek-2.6.39-400.297.12.el6uek.src.rpmd538269bc5553b747ef307422636ae562679acff698bd82529064b8a51a7640cELSA-2025-20007ol6_i386_UEK_latest
kernel-uek-2.6.39-400.297.12.el6uek.i686.rpm1815c60aa7b41c4e8eefa8ef6a294fca20bad3ecb82919df63cba96a643300fbELSA-2025-20007ol6_i386_UEK_latest
kernel-uek-debug-2.6.39-400.297.12.el6uek.i686.rpm667befe04a6c560b25c88696eb459ae7c0dcdc88fd83a084a0cc4166e17a9838ELSA-2025-20007ol6_i386_UEK_latest
kernel-uek-debug-devel-2.6.39-400.297.12.el6uek.i686.rpm5a666a9e6265f848a31627d365a8ccdd9d2b37350d6690b0bf5ca74295f5cb91ELSA-2025-20007ol6_i386_UEK_latest
kernel-uek-devel-2.6.39-400.297.12.el6uek.i686.rpm6df42d6444389fa4d4a102088ba5c1ffeacd0717112b9fc811c265553e3e5bccELSA-2025-20007ol6_i386_UEK_latest
kernel-uek-doc-2.6.39-400.297.12.el6uek.noarch.rpm108a1554a3cc15a0c050d9173bdb1067c7475bb633f9ebb3879d148c45ca9691ELSA-2025-20007ol6_i386_UEK_latest
kernel-uek-firmware-2.6.39-400.297.12.el6uek.noarch.rpmadbc106b49268d7e746b65ca74b1c1c643880512b2f860bbcc0b08af1b77ed68ELSA-2025-20007ol6_i386_UEK_latest
Oracle Linux 6 (x86_64) kernel-uek-2.6.39-400.297.12.el6uek.src.rpmd538269bc5553b747ef307422636ae562679acff698bd82529064b8a51a7640cELSA-2025-20007ol6_x86_64_UEK_latest
kernel-uek-2.6.39-400.297.12.el6uek.x86_64.rpm139158634fe3ec5f0d4759eb6ca2b6792e1faf0d80891146d2f1ad2a475a3e05ELSA-2025-20007ol6_x86_64_UEK_latest
kernel-uek-debug-2.6.39-400.297.12.el6uek.x86_64.rpm1573b28ca4c6d18cb8d9fd2b80eea7af0dc6cd12ed96f5b1a460b468b6746d6cELSA-2025-20007ol6_x86_64_UEK_latest
kernel-uek-debug-devel-2.6.39-400.297.12.el6uek.x86_64.rpm806d67dcaa9d4d35fc6c3b4c3ec4efd8c5e4f1862a74defa890953dc977684ecELSA-2025-20007ol6_x86_64_UEK_latest
kernel-uek-devel-2.6.39-400.297.12.el6uek.x86_64.rpm27759685048d4aaafdbff2d075eb45e74ea7125f500d33065aa6966807f3b767ELSA-2025-20007ol6_x86_64_UEK_latest
kernel-uek-doc-2.6.39-400.297.12.el6uek.noarch.rpm108a1554a3cc15a0c050d9173bdb1067c7475bb633f9ebb3879d148c45ca9691ELSA-2025-20007ol6_x86_64_UEK_latest
kernel-uek-firmware-2.6.39-400.297.12.el6uek.noarch.rpmadbc106b49268d7e746b65ca74b1c1c643880512b2f860bbcc0b08af1b77ed68ELSA-2025-20007ol6_x86_64_UEK_latest



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete