OVMSA-2021-0025

OVMSA-2021-0025 - Unbreakable Enterprise kernel security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2021-08-04

Description


[4.1.12-124.53.5]
- seq_file: disallow extremely large seq buffer allocations (Eric Sandeen) [Orabug: 33143006] {CVE-2021-33909}

[4.1.12-124.53.3]
- net/mlx4: Fix EEPROM dump support (Vladyslav Tarasiuk) [Orabug: 31895301] {CVE-2020-14304}
- net/mlx4_en: ethtool, Remove unsupported SFP EEPROM high pages query (Erez Alfasi) [Orabug: 31895301] {CVE-2020-14304}
- netfilter: x_tables: fix compat match/target pad out-of-bound write (Florian Westphal) [Orabug: 33093028] {CVE-2021-22555}
- xen/blkback: Make sure all vbd fields are initialized (Boris Ostrovsky) [Orabug: 33131620]

[4.1.12-124.53.2]
- scsi: lpfc: Fix driver crash in target reset handler (James Smart) [Orabug: 33048899]

[4.1.12-124.53.1]
- xfs: fix lockup issue (Junxiao Bi) [Orabug: 32836026]
- bluetooth: eliminate the potential race condition when removing the HCI controller (Lin Ma) [Orabug: 32912036] {CVE-2021-32399} {CVE-2021-32399}


Related CVEs


CVE-2021-32399
CVE-2021-33909
CVE-2020-14304
CVE-2021-22555

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle VM 3 (x86_64) kernel-uek-4.1.12-124.53.5.el6uek.src.rpm202428a4a7d77faa2343b7d0d7d07f58-
kernel-uek-4.1.12-124.53.5.el6uek.x86_64.rpmf606840970a802d9c2f1482e1ff47c37-
kernel-uek-firmware-4.1.12-124.53.5.el6uek.noarch.rpm4b522a90fb656c9531552db035cf3e87-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete