ELSA-2022-0620

ELSA-2022-0620 - kernel security and bug fix update

Type:SECURITY
Impact:IMPORTANT
Release Date:2022-02-23

Description


[3.10.0-1160.59.1.OL7]
- Update Oracle Linux certificates (Ilya Okomin)
- Oracle Linux RHCK Module Signing Key was compiled into kernel (olkmod_signing_key.x509)(alexey.petrenko@oracle.com)
- Update x509.genkey [Orabug: 24817676]
- Conflict with shim-ia32 and shim-x64 <= 15-2.0.9
- Update oracle(kernel-sig-key) value to match new certificate (Ilya Okomin)

[3.10.0-1160.59.1]
- Revert 'Merge: Fix tasks stuck in IO waiting for buffer_head lock' (Rado Vrbovsky) [2030609]

[3.10.0-1160.58.1]
- Bluetooth: fix use-after-free error in lock_sock_nested() (Gopal Tiwari) [2005687]
- drm/vmwgfx: Fix stale file descriptors on failed usercopy (Dave Airlie) [2047597] {CVE-2022-22942}

[3.10.0-1160.57.1]
- fix regression in 'epoll: Keep a reference on files added to the check list' (Carlos Maiolino) [2042760] {CVE-2020-0466}
- epoll: Keep a reference on files added to the check list (Carlos Maiolino) [2042760] {CVE-2020-0466}
- drm/i915: Flush TLBs before releasing backing store (Dave Airlie) [2044319] {CVE-2022-0330}

[3.10.0-1160.56.1]
- RDMA/mlx5: Fix access to wrong pointer while performing flush due to error (Kamal Heib) [1984070]
- af_unix: fix garbage collect vs MSG_PEEK (William Zhao) [2031970] {CVE-2021-0920}
- selinux: fix race condition when computing ocontext SIDs (Ondrej Mosnacek) [2040196]
- Bluetooth: fix the erroneous flush_work() order (Chris von Recklinghausen) [1964556] {CVE-2021-3564}

[3.10.0-1160.55.1]
- SUNRPC: Fix null rpc_clnt dereference in rpc_task_queued tracepoint (Benjamin Coddington) [2039508]
- buffer: eliminate the need to call free_more_memory() in __getblk_slow() (Carlos Maiolino) [2030609]
- buffer: grow_dev_page() should use __GFP_NOFAIL for all cases (Carlos Maiolino) [2030609]
- buffer: have alloc_page_buffers() use __GFP_NOFAIL (Carlos Maiolino) [2030609]
- net: add READ_ONCE() annotation in __skb_wait_for_more_packets() (Sabrina Dubroca) [2033561]
- efi: Decode IA32/X64 Context Info structure (Aristeu Rozanski) [1950302]
- efi: Decode IA32/X64 MS Check structure (Aristeu Rozanski) [1950302]
- efi: Decode additional IA32/X64 Bus Check fields (Aristeu Rozanski) [1950302]
- efi: Decode IA32/X64 Cache, TLB, and Bus Check structures (Aristeu Rozanski) [1950302]
- efi: Decode UEFI-defined IA32/X64 Error Structure GUIDs (Aristeu Rozanski) [1950302]
- efi: Decode IA32/X64 Processor Error Info Structure (Aristeu Rozanski) [1950302]
- efi: Decode IA32/X64 Processor Error Section (Aristeu Rozanski) [1950302]
- efi: Fix IA32/X64 Processor Error Record definition (Aristeu Rozanski) [1950302]
- HID: core: Sanitize event code and type when mapping input (Aristeu Rozanski) [1920848] {CVE-2020-0465}

[3.10.0-1160.54.1]
- block: queue lock must be acquired when iterating over rls (Ming Lei) [2029574]
- Bluetooth: use correct lock to prevent UAF of hdev object (Chris von Recklinghausen) [1968211] {CVE-2021-3573}
- xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate (Carlos Maiolino) [2034857] {CVE-2021-4155}


Related CVEs


CVE-2021-0920
CVE-2022-0330
CVE-2021-3752
CVE-2022-22942
CVE-2021-3573
CVE-2021-4155
CVE-2020-0465
CVE-2020-0466
CVE-2021-3564

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 7 (x86_64) kernel-3.10.0-1160.59.1.el7.src.rpm4b2b13b1e5095a23bfe00a3cc2f08703fc2b3495c7193e08807d038a512865c9ELSA-2025-1281ol7_x86_64_latest
kernel-3.10.0-1160.59.1.el7.src.rpm4b2b13b1e5095a23bfe00a3cc2f08703fc2b3495c7193e08807d038a512865c9ELSA-2025-1281ol7_x86_64_optional_latest
kernel-3.10.0-1160.59.1.el7.src.rpm4b2b13b1e5095a23bfe00a3cc2f08703fc2b3495c7193e08807d038a512865c9ELSA-2025-1281ol7_x86_64_u9_patch
bpftool-3.10.0-1160.59.1.el7.x86_64.rpmee84f1ff7e8e494285825df2972a3cacce86ad0faf6c788809c80f2217e230f9ELSA-2025-1281ol7_x86_64_latest
bpftool-3.10.0-1160.59.1.el7.x86_64.rpmee84f1ff7e8e494285825df2972a3cacce86ad0faf6c788809c80f2217e230f9ELSA-2025-1281ol7_x86_64_u9_patch
kernel-3.10.0-1160.59.1.el7.x86_64.rpm9c9596e37b8c26c8e98d538baf6be63d515766e9bdf59e5a18e25b61974e95a0ELSA-2025-1281ol7_x86_64_latest
kernel-3.10.0-1160.59.1.el7.x86_64.rpm9c9596e37b8c26c8e98d538baf6be63d515766e9bdf59e5a18e25b61974e95a0ELSA-2025-1281ol7_x86_64_u9_patch
kernel-abi-whitelists-3.10.0-1160.59.1.el7.noarch.rpm311ca6f2421c140d8e7335d7cf18d171125406664589aaf330e00b3db9779726ELSA-2025-1281ol7_x86_64_latest
kernel-abi-whitelists-3.10.0-1160.59.1.el7.noarch.rpm311ca6f2421c140d8e7335d7cf18d171125406664589aaf330e00b3db9779726ELSA-2025-1281ol7_x86_64_u9_patch
kernel-debug-3.10.0-1160.59.1.el7.x86_64.rpmffb4066a9d458e669fd291857c4eeb45ca7221f3533595746cf2e3dce59960b9ELSA-2025-1281ol7_x86_64_latest
kernel-debug-3.10.0-1160.59.1.el7.x86_64.rpmffb4066a9d458e669fd291857c4eeb45ca7221f3533595746cf2e3dce59960b9ELSA-2025-1281ol7_x86_64_u9_patch
kernel-debug-devel-3.10.0-1160.59.1.el7.x86_64.rpmd2c3e378dc0048dcbefd6c89aa015e8f3a5bc8b1233a5cfa7f42c269084f8d16ELSA-2025-1281ol7_x86_64_latest
kernel-debug-devel-3.10.0-1160.59.1.el7.x86_64.rpmd2c3e378dc0048dcbefd6c89aa015e8f3a5bc8b1233a5cfa7f42c269084f8d16ELSA-2025-1281ol7_x86_64_u9_patch
kernel-devel-3.10.0-1160.59.1.el7.x86_64.rpm711fd31744f814d6073334ce2b8889604a44851ddbfad68c60a32504ef027b83ELSA-2025-1281ol7_x86_64_latest
kernel-devel-3.10.0-1160.59.1.el7.x86_64.rpm711fd31744f814d6073334ce2b8889604a44851ddbfad68c60a32504ef027b83ELSA-2025-1281ol7_x86_64_u9_patch
kernel-doc-3.10.0-1160.59.1.el7.noarch.rpm54fdd9c3ff5fac46f32dd56d0dd61d49cb89acd3502584a88bbac07b65ad5104ELSA-2025-1281ol7_x86_64_latest
kernel-doc-3.10.0-1160.59.1.el7.noarch.rpm54fdd9c3ff5fac46f32dd56d0dd61d49cb89acd3502584a88bbac07b65ad5104ELSA-2025-1281ol7_x86_64_u9_patch
kernel-headers-3.10.0-1160.59.1.el7.x86_64.rpm75cc5967c8ec88a96e040466873e3246e7032a313978830296ab048e9968f846ELSA-2025-1281exadata_dbserver_20.1.20.0.0_x86_64_base
kernel-headers-3.10.0-1160.59.1.el7.x86_64.rpm75cc5967c8ec88a96e040466873e3246e7032a313978830296ab048e9968f846ELSA-2025-1281exadata_dbserver_21.2.10.0.0_x86_64_base
kernel-headers-3.10.0-1160.59.1.el7.x86_64.rpm75cc5967c8ec88a96e040466873e3246e7032a313978830296ab048e9968f846ELSA-2025-1281ol7_x86_64_latest
kernel-headers-3.10.0-1160.59.1.el7.x86_64.rpm75cc5967c8ec88a96e040466873e3246e7032a313978830296ab048e9968f846ELSA-2025-1281ol7_x86_64_u9_patch
kernel-tools-3.10.0-1160.59.1.el7.x86_64.rpme41a5e4dc1197ae9f02ddaa01dcab75caefe6bb1c896df8eb6d8c35eb569cf12ELSA-2025-1281exadata_dbserver_21.2.10.0.0_x86_64_base
kernel-tools-3.10.0-1160.59.1.el7.x86_64.rpme41a5e4dc1197ae9f02ddaa01dcab75caefe6bb1c896df8eb6d8c35eb569cf12ELSA-2025-1281exadata_dbserver_21.2.11.0.0_x86_64_base
kernel-tools-3.10.0-1160.59.1.el7.x86_64.rpme41a5e4dc1197ae9f02ddaa01dcab75caefe6bb1c896df8eb6d8c35eb569cf12ELSA-2025-1281ol7_x86_64_latest
kernel-tools-3.10.0-1160.59.1.el7.x86_64.rpme41a5e4dc1197ae9f02ddaa01dcab75caefe6bb1c896df8eb6d8c35eb569cf12ELSA-2025-1281ol7_x86_64_u9_patch
kernel-tools-libs-3.10.0-1160.59.1.el7.x86_64.rpmd51757310571f27b97c8e9673d47e7c7e66b30ba461834f64da2a53c672bd381ELSA-2025-1281exadata_dbserver_21.2.10.0.0_x86_64_base
kernel-tools-libs-3.10.0-1160.59.1.el7.x86_64.rpmd51757310571f27b97c8e9673d47e7c7e66b30ba461834f64da2a53c672bd381ELSA-2025-1281exadata_dbserver_21.2.11.0.0_x86_64_base
kernel-tools-libs-3.10.0-1160.59.1.el7.x86_64.rpmd51757310571f27b97c8e9673d47e7c7e66b30ba461834f64da2a53c672bd381ELSA-2025-1281ol7_x86_64_latest
kernel-tools-libs-3.10.0-1160.59.1.el7.x86_64.rpmd51757310571f27b97c8e9673d47e7c7e66b30ba461834f64da2a53c672bd381ELSA-2025-1281ol7_x86_64_u9_patch
kernel-tools-libs-devel-3.10.0-1160.59.1.el7.x86_64.rpm0921ff3279f32ae11a1928be60ba9251b3a4ba31d1648d2e04397df8ebfe8e0aELSA-2025-1281ol7_x86_64_optional_latest
perf-3.10.0-1160.59.1.el7.x86_64.rpm55d421d3bc6ed879077ec6eaf91a256224cd9f7849b0bb0139fa80884c86a808ELSA-2025-20019ol7_x86_64_latest
perf-3.10.0-1160.59.1.el7.x86_64.rpm55d421d3bc6ed879077ec6eaf91a256224cd9f7849b0bb0139fa80884c86a808ELSA-2025-20019ol7_x86_64_u9_patch
python-perf-3.10.0-1160.59.1.el7.x86_64.rpmd82a40bedfdb94903a7c874586abffbeff4b65c305c3c655682f8804d4670452ELSA-2025-20019ol7_x86_64_latest
python-perf-3.10.0-1160.59.1.el7.x86_64.rpmd82a40bedfdb94903a7c874586abffbeff4b65c305c3c655682f8804d4670452ELSA-2025-20019ol7_x86_64_u9_patch



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete