ELSA-2023-4377

ELSA-2023-4377 - kernel security, bug fix, and enhancement update

Type:SECURITY
Severity:IMPORTANT
Release Date:2023-08-04

Description


[5.14.0-284.25.1.0.1_2]
- Fix KVM: x86/mmu: Fix race condition in direct_page_fault [Orabug: 35673032] {CVE-2022-45869}

[5.14.0-284.25.1_2]
- KVM: x86/mmu: Fix race condition in direct_page_fault
- prlimit: do_prlimit needs to have a speculation check {CVE-2023-0458}
- x86/speculation: Allow enabling STIBP with legacy IBRS {CVE-2023-1998}
- ipvlan: Fix out of bounds caused by unclear skb->cb {CVE-2023-3090}
- net/sched: flower: fix possible OOB write in fl_set_geneve_opt {CVE-2023-35788}


Related CVEs


CVE-2023-0458
CVE-2023-35788
CVE-2022-45869
CVE-2023-1998
CVE-2023-3090

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 9 (aarch64) kernel-5.14.0-284.25.1.0.1.el9_2.src.rpmbfbadc5832716ffa11b60f6c7400a888-
bpftool-7.0.0-284.25.1.0.1.el9_2.aarch64.rpmef068176c8159218b490f37401b99998-
kernel-cross-headers-5.14.0-284.25.1.0.1.el9_2.aarch64.rpm49302f2131ef6a5ee89718d7a415b422-
kernel-headers-5.14.0-284.25.1.0.1.el9_2.aarch64.rpmb0309e71cc3c48c497bd22911d16b879-
kernel-tools-5.14.0-284.25.1.0.1.el9_2.aarch64.rpm74e2f3aca7a5e268c581b5d365b2c683-
kernel-tools-libs-5.14.0-284.25.1.0.1.el9_2.aarch64.rpm8242aabedf073eb27931dd57e505d511-
kernel-tools-libs-devel-5.14.0-284.25.1.0.1.el9_2.aarch64.rpmba04837e11e11393b3c06b313ead6483-
perf-5.14.0-284.25.1.0.1.el9_2.aarch64.rpm7a13fd2f7f16e3ced4a13573e991b634-
python3-perf-5.14.0-284.25.1.0.1.el9_2.aarch64.rpmad943d2c217191fc6d7288014ddd2c97-
Oracle Linux 9 (x86_64) kernel-5.14.0-284.25.1.0.1.el9_2.src.rpmbfbadc5832716ffa11b60f6c7400a888-
bpftool-7.0.0-284.25.1.0.1.el9_2.x86_64.rpmf94c800e7046df96737b3ac1adbc11d3-
kernel-5.14.0-284.25.1.0.1.el9_2.x86_64.rpm02c62cb8753b55487303a0addbe69220-
kernel-abi-stablelists-5.14.0-284.25.1.0.1.el9_2.noarch.rpmede40c10426e1f7254b379fded27a19c-
kernel-core-5.14.0-284.25.1.0.1.el9_2.x86_64.rpm2d4a39be486bfab3801b7cbcfb898a08-
kernel-cross-headers-5.14.0-284.25.1.0.1.el9_2.x86_64.rpm62e9dc29c1e7c565d940618de5d613d3-
kernel-debug-5.14.0-284.25.1.0.1.el9_2.x86_64.rpmfdcab73f965fdc550a52e807e72734e9-
kernel-debug-core-5.14.0-284.25.1.0.1.el9_2.x86_64.rpm08f1e3e17986b634c52db44da14224c7-
kernel-debug-devel-5.14.0-284.25.1.0.1.el9_2.x86_64.rpme591284de694c7db044e44d17216dae3-
kernel-debug-devel-matched-5.14.0-284.25.1.0.1.el9_2.x86_64.rpm4762b9e8a4c15c862d5690fdd7dccb4c-
kernel-debug-modules-5.14.0-284.25.1.0.1.el9_2.x86_64.rpmbcccf93c2796060334cb5ca66c194a31-
kernel-debug-modules-core-5.14.0-284.25.1.0.1.el9_2.x86_64.rpm88c1564243f45bc62289fdeeaef96a21-
kernel-debug-modules-extra-5.14.0-284.25.1.0.1.el9_2.x86_64.rpm78234027ac7db7ca4d7d44b8d92a3be1-
kernel-debug-uki-virt-5.14.0-284.25.1.0.1.el9_2.x86_64.rpmf6b7138af9f76551bda2a455101a0659-
kernel-devel-5.14.0-284.25.1.0.1.el9_2.x86_64.rpmb6a285b219a187949c399daf1b8377a5-
kernel-devel-matched-5.14.0-284.25.1.0.1.el9_2.x86_64.rpm71cd6bf78f730111a709d5feecc58b36-
kernel-doc-5.14.0-284.25.1.0.1.el9_2.noarch.rpm2fe5e9c30c7a2d1f2c1ad085f9592ac0-
kernel-headers-5.14.0-284.25.1.0.1.el9_2.x86_64.rpm3d5b89d62ff0efa166dcd70d869a1827-
kernel-modules-5.14.0-284.25.1.0.1.el9_2.x86_64.rpm60d048c11beef4dfb28ec4a3cc221a64-
kernel-modules-core-5.14.0-284.25.1.0.1.el9_2.x86_64.rpm0bcac2797fb5c56b43b9b2b1ebbee6b8-
kernel-modules-extra-5.14.0-284.25.1.0.1.el9_2.x86_64.rpm78a174559fd6a2f727f948c0d6dc566e-
kernel-tools-5.14.0-284.25.1.0.1.el9_2.x86_64.rpm2355f4c6ef61429d48121267ca433c64-
kernel-tools-libs-5.14.0-284.25.1.0.1.el9_2.x86_64.rpm6f4668f054efca1dc750ad03a6f9381f-
kernel-tools-libs-devel-5.14.0-284.25.1.0.1.el9_2.x86_64.rpm90ecb4019d3249f5e489d687e9f087e3-
kernel-uki-virt-5.14.0-284.25.1.0.1.el9_2.x86_64.rpme1e9a4d011b42bd57d13b235d0f00abc-
perf-5.14.0-284.25.1.0.1.el9_2.x86_64.rpm83b0885cde2e391ce2cd776d3e9a8251-
python3-perf-5.14.0-284.25.1.0.1.el9_2.x86_64.rpmf6ae367098b5b1e891f5a5e26d8a5e2a-
rtla-5.14.0-284.25.1.0.1.el9_2.x86_64.rpm88faaa1b31abd64ee7911fa3010e8d61-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete