OVMSA-2024-0006

OVMSA-2024-0006 - Unbreakable Enterprise kernel security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2024-07-03

Description


[4.1.12-124.87.2]
- net: sched: fix race condition in qdisc_graft() (Eric Dumazet) [Orabug: 35250827] {CVE-2023-0590}

[4.1.12-124.87.1]
- ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet (Zhengchao Shao) [Orabug: 36654101] {CVE-2023-6932}
- net: convert ip_mc_list.refcnt from atomic_t to refcount_t (Reshetova, Elena) [Orabug: 36654101]
- net/sched: sch_hfsc: Ensure inner classes have fsc curve (Budimir Markovic) [Orabug: 35810544] {CVE-2023-4623}
- tcp: Reduce chance of collisions in inet6_hashfn(). (Stewart Smith) [Orabug: 35754477] {CVE-2023-1206}


Related CVEs


CVE-2023-4623
CVE-2023-6932
CVE-2023-0590
CVE-2023-1206

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle VM 3 (x86_64) kernel-uek-4.1.12-124.87.2.el6uek.src.rpm3c4d04c7130f25b8f372d50d87bb6bd0-ovm3_x86_64_ELS
kernel-uek-4.1.12-124.87.2.el6uek.x86_64.rpm663cbc0d37d5b0c2ce74a26ae9631594-ovm3_x86_64_ELS
kernel-uek-firmware-4.1.12-124.87.2.el6uek.noarch.rpmeb276cd014c63b36c47394eccb3f33a4-ovm3_x86_64_ELS



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete