OVMSA-2021-0006

OVMSA-2021-0006 - Unbreakable Enterprise kernel security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2021-02-17

Description


[4.1.12-124.48.3.1]
- xen-blkback: fix error handling in xen_blkbk_map() (Jan Beulich) [Orabug: 32492113] {CVE-2021-26930}
- xen-scsiback: don't 'handle' error by BUG() (Jan Beulich) [Orabug: 32492105] {CVE-2021-26931}
- xen-netback: don't 'handle' error by BUG() (Jan Beulich) [Orabug: 32492105] {CVE-2021-26931}
- xen-blkback: don't 'handle' error by BUG() (Jan Beulich) [Orabug: 32492105] {CVE-2021-26931}
- Xen/gntdev: correct error checking in gntdev_map_grant_pages() (Jan Beulich) [Orabug: 32492098] {CVE-2021-26932}
- Xen/gntdev: correct dev_bus_addr handling in gntdev_map_grant_pages() (Jan Beulich) [Orabug: 32492098] {CVE-2021-26932}
- Xen/x86: also check kernel mapping in set_foreign_p2m_mapping() (Jan Beulich) [Orabug: 32492098] {CVE-2021-26932}
- Xen/x86: don't bail early from clear_foreign_p2m_mapping() (Jan Beulich) [Orabug: 32492098] {CVE-2021-26932}

[4.1.12-124.48.3]
- bnxt_en: Fix ethtool -x crash when device is down. (Michael Chan) [Orabug: 32466092]

[4.1.12-124.48.2]
- vhost scsi: alloc vhost_scsi with kvzalloc() to avoid delay (Dongli Zhang) [Orabug: 32471166]

[4.1.12-124.48.1]
- nfs: Fix security label length not being reset (Jeffrey Mitchell) [Orabug: 32350996]
- rds: Add code to debug rds_tcp loopback hang (Rao Shoaib) [Orabug: 32382656]


Related CVEs


CVE-2021-26931
CVE-2021-26930
CVE-2021-26932

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle VM 3.4 (x86_64) kernel-uek-4.1.12-124.48.3.1.el6uek.src.rpm68050deb1399250dfa97680387a85c4c100186eaaf72a2bbb6ddb61f0fe69718OVMSA-2025-0001ovm34_x86_64_latest
kernel-uek-4.1.12-124.48.3.1.el6uek.x86_64.rpmabe1512690fb80d85ab2daadac41e919e88d0275cd08ab8d4cc4987ffd5a993cOVMSA-2025-0001ovm34_x86_64_latest
kernel-uek-firmware-4.1.12-124.48.3.1.el6uek.noarch.rpm93a756e6a2a09383b993fa63549a5011da99cc1f52d541ce7e1e6b239f0495edOVMSA-2025-0001ovm34_x86_64_latest



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete