ELSA-2023-12915

ELSA-2023-12915 - Unbreakable Enterprise kernel-container security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2023-10-17

Description


[5.4.17-2136.323.8.2.el8]
- netfilter: nfnetlink_osf: avoid OOB read (Wander Lairson Costa) [Orabug: 35824307]
- netfilter: xt_sctp: validate the flag_info count (Wander Lairson Costa) [Orabug: 35824307]
- netfilter: xt_u32: validate user space input (Wander Lairson Costa) [Orabug: 35824307]
- netfilter: ipset: add the missing IP_SET_HASH_WITH_NET0 macro for ip_set_hash_netportnet.c (Kyle Zeng) [Orabug: 35824307] {CVE-2023-42753}


Related CVEs


CVE-2023-42753

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 8 (x86_64) kernel-uek-container-5.4.17-2136.323.8.2.el8.src.rpm2a0f50ca64289bc6c05b3b0e1c29c5f5b4c61c63a6df816f11a720c6e186d98b-ol8_x86_64_UEKR6
kernel-uek-container-5.4.17-2136.323.8.2.el8.x86_64.rpm51b55a2d4ce458e208e72fdca60f4b5e5192660d136d905f90ef39df938d35fb-ol8_x86_64_UEKR6
kernel-uek-container-debug-5.4.17-2136.323.8.2.el8.x86_64.rpm0fc0944a21bf746170cb873c4704a50bc95a15ea954858434c7d6aca9a2387be-ol8_x86_64_UEKR6



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete