OVMSA-2024-0004

OVMSA-2024-0004 - Unbreakable Enterprise kernel security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2024-04-03

Description


[4.1.12-124.84.2]
- netfilter: nf_tables: reject QUEUE/DROP verdict parameters (Florian Westphal) [Orabug: 36251327] {CVE-2024-1086}

[4.1.12-124.84.1]
- mm: avoid conflict between MADV_DOEXEC and upstream advice values (Anthony Yznaga) [Orabug: 36334311]
- kobject: Fix slab-out-of-bounds in fill_kobj_path() (Wang Hai) [Orabug: 35924076] {CVE-2023-45863}
- kobject: Replace strncpy with memcpy (Guenter Roeck) [Orabug: 35924076]
- net: xfrm: Fix xfrm_address_filter OOB read (Lin Ma) [Orabug: 35923517] {CVE-2023-39194}
- net/xfrm: use kmemdup rather than duplicating its implementation (Andrzej Hajda) [Orabug: 35923517]


Related CVEs


CVE-2023-45863
CVE-2023-39194
CVE-2024-1086

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle VM 3 (x86_64) kernel-uek-4.1.12-124.84.2.el6uek.src.rpmcbfd65959eb9d78f047b1885ada8b2c1-ovm3_x86_64_ELS
kernel-uek-4.1.12-124.84.2.el6uek.x86_64.rpm2dec5db728802d3ca3d2a8079a929fbc-ovm3_x86_64_ELS
kernel-uek-firmware-4.1.12-124.84.2.el6uek.noarch.rpm51ecfd5c391ab24f25375c231618ee9c-ovm3_x86_64_ELS



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete