OVMSA-2017-0121

OVMSA-2017-0121 - Unbreakable Enterprise kernel security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2017-06-30

Description


[2.6.39-400.297.3]
- nfsd: check for oversized NFSv2/v3 arguments (J. Bruce Fields) [Orabug: 26366024] {CVE-2017-7645}

[2.6.39-400.297.2]
- dm mpath: allow ioctls to trigger pg init (Mikulas Patocka) [Orabug: 25645229]
- xen/manage: Always freeze/thaw processes when suspend/resuming (Ross Lagerwall) [Orabug: 25795530]
- lpfc cannot establish connection with targets that send PRLI under P2P mode (Joe Jin) [Orabug: 25955028]

[2.6.39-400.297.1]
- nvme: Handle PM1725 HIL reset (Martin K. Petersen) [Orabug: 26277602]
- dccp/tcp: do not inherit mc_list from parent (Eric Dumazet) [Orabug: 26108573] {CVE-2017-8890}

[2.6.39-400.296.1]
- cifs: adjust sequence number downward after signing NT_CANCEL request (Albert Barbe)
- nfsd: stricter decoding of write-like NFSv2/v3 ops (J. Bruce Fields) [Orabug: 25986995] {CVE-2017-7895}


Related CVEs


CVE-2017-7645

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle VM 3.2 (x86_64) kernel-uek-2.6.39-400.297.3.el5uek.src.rpm7e70b1c9dc28a0032df926087deb83f6OVMSA-2021-0016
kernel-uek-2.6.39-400.297.3.el5uek.x86_64.rpm7dac015dab840dab10c467e2591c4c2fOVMSA-2021-0016
kernel-uek-firmware-2.6.39-400.297.3.el5uek.noarch.rpm7fdde20e0a31cedbabe13d3fdbc5478dOVMSA-2021-0016



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete