ELSA-2021-0696

ELSA-2021-0696 - grub2 security update

Type:SECURITY
Severity:MODERATE
Release Date:2021-03-05

Description


[2.02-90.0.2.el8_3.1]
- Fix various coverity issues [Orabug: 32530657]
- Add SBAT metadata to grubx64.efi [Orabug: 32530657]
- Set proper blsdir if /boot is on btrfs rootfs [Orabug: 32063327]
- Add CVE-2020-15706, CVE-2020-15707 to the list [Orabug: 31225072]
- Update signing certificate for efi binaries
- honor /etc/sysconfig/kernel DEFAULTKERNEL setting for BLS [Orabug: 30643497]
- set EFIDIR as redhat for additional grub2 tools [Orabug: 29875597]
- Update upstream references [Orabug: 26388226]
- Copy symvers.gz to /boot during kernel install [Orabug: 29773086]
- Insert Unbreakable Enterprise Kernel text into BLS config file [Orabug: 29417955]
- fix symlink removal scriptlet, to be executed only on removal [Orabug: 19231481]
- Fix comparison in patch for 18504756
- Remove symlink to grub environment file during uninstall on EFI platforms [Orabug: 19231481]
- Put 'with' in menuentry instead of 'using' [Orabug: 18504756]
- Use different titles for UEK and RHCK kernels [Orabug: 18504756]

[2.02-90.el8_3.1]
- Fix another batch of CVEs
Resolves: CVE-2020-14372
Resolves: CVE-2020-25632
Resolves: CVE-2020-25647
Resolves: CVE-2020-27749
Resolves: CVE-2020-27779
Resolves: CVE-2021-20225
Resolves: CVE-2021-20233


Related CVEs


CVE-2020-14372
CVE-2020-25632
CVE-2020-25647
CVE-2020-27749
CVE-2020-27779
CVE-2021-20225
CVE-2021-20233

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 8 (aarch64) grub2-2.02-90.0.2.el8_3.1.src.rpm7368802e37db08df2aec92dcba126acd-
grub2-common-2.02-90.0.2.el8_3.1.noarch.rpm5de899ab4c05652e76690116d65ae999-
grub2-efi-aa64-2.02-90.0.2.el8_3.1.aarch64.rpm51079edf547a7a5cb626f10250cfe915-
grub2-efi-aa64-cdboot-2.02-90.0.2.el8_3.1.aarch64.rpma199f3c8fe1f42a3ed3ddce8c6f83cc6-
grub2-efi-aa64-modules-2.02-90.0.2.el8_3.1.noarch.rpm822ad499aa683c0ec142f76888e11b2b-
grub2-efi-ia32-modules-2.02-90.0.2.el8_3.1.noarch.rpm7859cf9ae2d022185c7ab6e7fa259bfc-
grub2-efi-x64-modules-2.02-90.0.2.el8_3.1.noarch.rpm3505e12ac232c64af1384b07c59ea90c-
grub2-pc-modules-2.02-90.0.2.el8_3.1.noarch.rpm881d1c9eeb4a83bffc8a056363cd39b1-
grub2-tools-2.02-90.0.2.el8_3.1.aarch64.rpm77e81b04668d5b3d9560390bb5d68ce7-
grub2-tools-extra-2.02-90.0.2.el8_3.1.aarch64.rpm05a2da404c24634919beaeb5f20e6650-
grub2-tools-minimal-2.02-90.0.2.el8_3.1.aarch64.rpmf746c438e7580ea4ca79d980a308fc3e-
Oracle Linux 8 (x86_64) grub2-2.02-90.0.2.el8_3.1.src.rpm7368802e37db08df2aec92dcba126acd-
grub2-common-2.02-90.0.2.el8_3.1.noarch.rpm5de899ab4c05652e76690116d65ae999-
grub2-efi-aa64-modules-2.02-90.0.2.el8_3.1.noarch.rpm822ad499aa683c0ec142f76888e11b2b-
grub2-efi-ia32-2.02-90.0.2.el8_3.1.x86_64.rpmcd81cec8249ebbbdc20a98e816332949-
grub2-efi-ia32-cdboot-2.02-90.0.2.el8_3.1.x86_64.rpm98cf1df5d8e31b69716a066ab7fcacf7-
grub2-efi-ia32-modules-2.02-90.0.2.el8_3.1.noarch.rpm7859cf9ae2d022185c7ab6e7fa259bfc-
grub2-efi-x64-2.02-90.0.2.el8_3.1.x86_64.rpm63708857419104466444a0652b5dcbc6-
grub2-efi-x64-cdboot-2.02-90.0.2.el8_3.1.x86_64.rpmc7b996ed733a73054b60a20f72bf9486-
grub2-efi-x64-modules-2.02-90.0.2.el8_3.1.noarch.rpm3505e12ac232c64af1384b07c59ea90c-
grub2-pc-2.02-90.0.2.el8_3.1.x86_64.rpm239451979fffe0a8c289aecf4629fc82-
grub2-pc-modules-2.02-90.0.2.el8_3.1.noarch.rpm881d1c9eeb4a83bffc8a056363cd39b1-
grub2-tools-2.02-90.0.2.el8_3.1.x86_64.rpm0ebab0e3765dc4dfdb1a41be769e9e82-
grub2-tools-efi-2.02-90.0.2.el8_3.1.x86_64.rpme53289c548e326ed6b9cfb40a4e168f3-
grub2-tools-extra-2.02-90.0.2.el8_3.1.x86_64.rpmf1c48a0f67200a7d4d7eafcc72475cfb-
grub2-tools-minimal-2.02-90.0.2.el8_3.1.x86_64.rpmb0480a52ac4e069dce7c87c034d7316e-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete