OVMSA-2017-0144

OVMSA-2017-0144 - Unbreakable Enterprise kernel security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2017-08-18

Description


[3.8.13-118.19.4]
- l2tp: fix racy SOCK_ZAPPED flag check in l2tp_ip{,6}_bind() (Guillaume Nault) [Orabug: 26586047] {CVE-2016-10200}
- xfs: fix two memory leaks in xfs_attr_list.c error paths (Mateusz Guzik) [Orabug: 26586022] {CVE-2016-9685}
- KEYS: Disallow keyrings beginning with '.' to be joined as session keyrings (David Howells) [Orabug: 26585994] {CVE-2016-9604}
- ipv6: fix out of bound writes in __ip6_append_data() (Eric Dumazet) [Orabug: 26578198] {CVE-2017-9242}


Related CVEs


CVE-2017-9242
CVE-2016-9604
CVE-2016-10200
CVE-2016-9685

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle VM 3.3 (x86_64) kernel-uek-3.8.13-118.19.4.el6uek.src.rpm3e240adb88c62d21c7ca1728c51cbc5ec5d6357319778bb75dc45d74686f437aOVMSA-2025-0001ovm3_x86_64_3.3_patch
kernel-uek-3.8.13-118.19.4.el6uek.x86_64.rpm5802a69639c4390d9b72bf45cd076c40e867916a009745aa9b985a16e665375cOVMSA-2025-0001ovm3_x86_64_3.3_patch
kernel-uek-firmware-3.8.13-118.19.4.el6uek.noarch.rpmd376beb4153fee81b0cf2bbb9258a64fe24af49899992fb679ddb8e26703a68bOVMSA-2025-0001ovm3_x86_64_3.3_patch



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete