OVMSA-2017-0041

OVMSA-2017-0041 - Unbreakable Enterprise kernel security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2017-02-09

Description


[2.6.39-400.294.2]
- vfs: read file_handle only once in handle_to_path (Sasha Levin) [Orabug: 25388709] {CVE-2015-1420}
- crypto: algif_hash - Only export and import on sockets with data (Herbert Xu) [Orabug: 25417807]
- USB: usbfs: fix potential infoleak in devio (Kangjie Lu) [Orabug: 25462763] {CVE-2016-4482}
- net: fix infoleak in llc (Kangjie Lu) [Orabug: 25462811] {CVE-2016-4485}
- af_unix: Guard against other == sk in unix_dgram_sendmsg (Rainer Weikusat) [Orabug: 25464000] {CVE-2013-7446}
- unix: avoid use-after-free in ep_remove_wait_queue (Rainer Weikusat) [Orabug: 25464000] {CVE-2013-7446}


Related CVEs


CVE-2015-1420
CVE-2016-4482
CVE-2016-8646
CVE-2013-7446
CVE-2016-4485

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle VM 3.2 (x86_64) kernel-uek-2.6.39-400.294.2.el5uek.src.rpmc177bedf1e8538e136546b0d4af27af3ed0f03e6b761cd9b6159a6d0a9edd1adOVMSA-2025-0001ovm3_3.2.1_x86_64_patch
kernel-uek-2.6.39-400.294.2.el5uek.x86_64.rpm24ab423eefc172767324753b1d22c251f040460494df36fa54455e1cca5858deOVMSA-2025-0001ovm3_3.2.1_x86_64_patch
kernel-uek-firmware-2.6.39-400.294.2.el5uek.noarch.rpm702a941735f88d92f2137ff85ae0124bf9a3967df3215682f0c082cfbdc20e0eOVMSA-2025-0001ovm3_3.2.1_x86_64_patch



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete