OVMSA-2023-0024

OVMSA-2023-0024 - Unbreakable Enterprise kernel security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2023-11-03

Description


[4.1.12-124.80.1]
- Bluetooth: L2CAP: Fix use-after-free in l2cap_sock_ready_cb (Sungwoo Kim) [Orabug: 35814478] {CVE-2023-40283}
- net/sched: cls_u32: No longer copy tcf_result on update to avoid use-after-free (valis) [Orabug: 35814297] {CVE-2023-4208}
- RDMA/core: net: fix kernel NULL error (Zhu Yanjun) [Orabug: 35723252]


Related CVEs


CVE-2023-40283
CVE-2023-4208

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle VM 3 (x86_64) kernel-uek-4.1.12-124.80.1.el6uek.src.rpmba0dfe161d9767c5d3efe7685b1af84d6a05c89ab66a99d4fd9436d82df7926aOVMSA-2025-0001ovm3_x86_64_ELS
kernel-uek-4.1.12-124.80.1.el6uek.x86_64.rpm826cb54a2637055fcd46bc5584ac63b27870eacc5977d88bf61e51404e386717OVMSA-2025-0001ovm3_x86_64_ELS
kernel-uek-firmware-4.1.12-124.80.1.el6uek.noarch.rpma5729c0a2e78b61460508715e094c60a7bb7c7f9a13ca1fb14de5700e145e788OVMSA-2025-0001ovm3_x86_64_ELS



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete