OVMSA-2023-0024

OVMSA-2023-0024 - Unbreakable Enterprise kernel security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2023-11-03

Description


[4.1.12-124.80.1]
- Bluetooth: L2CAP: Fix use-after-free in l2cap_sock_ready_cb (Sungwoo Kim) [Orabug: 35814478] {CVE-2023-40283}
- net/sched: cls_u32: No longer copy tcf_result on update to avoid use-after-free (valis) [Orabug: 35814297] {CVE-2023-4208}
- RDMA/core: net: fix kernel NULL error (Zhu Yanjun) [Orabug: 35723252]


Related CVEs


CVE-2023-40283
CVE-2023-4208

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle VM 3 (x86_64) kernel-uek-4.1.12-124.80.1.el6uek.src.rpm1acfc94833099f31ebc8cc09b19307d6-ovm3_x86_64_ELS
kernel-uek-4.1.12-124.80.1.el6uek.x86_64.rpm234901888240ceadb3531d1720a5b810-ovm3_x86_64_ELS
kernel-uek-firmware-4.1.12-124.80.1.el6uek.noarch.rpm179da80586e223ba85d3c02625b4ea36-ovm3_x86_64_ELS



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete