ELSA-2020-5912

ELSA-2020-5912 - Unbreakable Enterprise kernel security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2020-11-06

Description


[4.1.12-124.44.4]
- scsi: qla2xxx: Fix NULL pointer crash due to active timer for ABTS (himanshu.madhani@cavium.com) [Orabug: 32020790]

[4.1.12-124.44.3]
- qed: Reduce verbosity of unimplemented MFW messages (Mintz, Yuval) [Orabug: 31959299]
- kexec: validate pe files against the system_blacklist_keyring (Eric Snowberg) [Orabug: 31961119] {CVE-2020-26541}

[4.1.12-124.44.2]
- usb: cdc-acm: make sure a refcount is taken early enough (Oliver Neukum) [Orabug: 31351088] {CVE-2019-19530}
- net/rds: migration of a delayed initialized port present in down state (Praveen Kumar Kannoju) [Orabug: 31729995]
- net: add high_order_alloc_disable sysctl (Eric Dumazet) [Orabug: 31835223]
- mm, page_alloc: double zone's batchsize (Aaron Lu) [Orabug: 31835223]
- mm/free_pcppages_bulk: prefetch buddy while not holding lock (Aruna Ramakrishna) [Orabug: 31835223]
- mm/free_pcppages_bulk: do not hold lock when picking pages to free (Aruna Ramakrishna) [Orabug: 31835223]
- mm, page_alloc: remove unnecessary variable from free_pcppages_bulk (Mel Gorman) [Orabug: 31835223]
- netfilter: ctnetlink: add a range check for l3/l4 protonum (Will McVicker) [Orabug: 31872865] {CVE-2020-25211}
- net/rds: Extract dest qp num for displaying in rds-info (Praveen Kumar Kannoju) [Orabug: 31880144]
- uek-rpm: Update secure boot UEK signing certificates (Brian Maly) [Orabug: 31974559]

[4.1.12-124.44.1]
- oracleasm: Retrieve d_bdev before dropping inode (Stephen Brennan) [Orabug: 31832592]
- KVM: VMX: fixes for vmentry_l1d_flush module parameter (Paolo Bonzini) [Orabug: 31962487]


Related CVEs


CVE-2016-7917
CVE-2019-19530
CVE-2020-25643
CVE-2016-7913
CVE-2020-26541
CVE-2020-25211

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 6 (x86_64) kernel-uek-4.1.12-124.44.4.el6uek.src.rpmfd9e6d136add2af0b2ee091341ac725e-
kernel-uek-4.1.12-124.44.4.el6uek.x86_64.rpm9a494d3c2c9396e318e24393d5897986-
kernel-uek-debug-4.1.12-124.44.4.el6uek.x86_64.rpm1a6f2dd6e9a09ede0cdb2f111b9a9da2-
kernel-uek-debug-devel-4.1.12-124.44.4.el6uek.x86_64.rpm245b6eceaea218a6a0c295fd16772165-
kernel-uek-devel-4.1.12-124.44.4.el6uek.x86_64.rpm858081ee242eef341b46fbf2dfd730d5-
kernel-uek-doc-4.1.12-124.44.4.el6uek.noarch.rpm161903efe86e33259cc92ecc156c7743-
kernel-uek-firmware-4.1.12-124.44.4.el6uek.noarch.rpm4b77cf900214be793ecb8a18dde4d0c6-
Oracle Linux 7 (x86_64) kernel-uek-4.1.12-124.44.4.el7uek.src.rpmc1f5f273a7f439cca59a2c06e577edcb-
kernel-uek-4.1.12-124.44.4.el7uek.x86_64.rpmd77c92ec591895191f103ddfd84910dd-
kernel-uek-debug-4.1.12-124.44.4.el7uek.x86_64.rpme0f7332494548ff2039339b5cbcdb0b7-
kernel-uek-debug-devel-4.1.12-124.44.4.el7uek.x86_64.rpm876d3a6f76eac8ccf95319660ae61f15-
kernel-uek-devel-4.1.12-124.44.4.el7uek.x86_64.rpm73c5d1e72d9705a8151d296bb733325b-
kernel-uek-doc-4.1.12-124.44.4.el7uek.noarch.rpm6308a51b480bca2d5a5fa2fc2aafebe7-
kernel-uek-firmware-4.1.12-124.44.4.el7uek.noarch.rpm1fcb966337280fac486f513cccc9ec42-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete