Oracle Errata System
Oracle Linux
5.3
2021-09-09T12:48:25
ELSA-2017-3607: Unbreakable Enterprise kernel security update (IMPORTANT)
Oracle Linux 5
Oracle Linux 6
[2.6.39-400.297.6]
- l2tp: fix racy SOCK_ZAPPED flag check in l2tp_ip{,6}_bind() (Guillaume Nault) [Orabug: 26586050] {CVE-2016-10200}
- xfs: fix two memory leaks in xfs_attr_list.c error paths (Mateusz Guzik) [Orabug: 26586024] {CVE-2016-9685}
- KEYS: Disallow keyrings beginning with '.' to be joined as session keyrings (David Howells) [Orabug: 26586002] {CVE-2016-9604}
- ipv6: fix out of bound writes in __ip6_append_data() (Eric Dumazet) [Orabug: 26578202] {CVE-2017-9242}
IMPORTANT
Copyright 2017 Oracle, Inc.
CVE-2016-10200
CVE-2016-9604
CVE-2017-9242
CVE-2016-9685
kernel-uek-firmware
oraclelinux-release
kernel-uek-debug-devel
kernel-uek-devel
kernel-uek-debug
kernel-uek
kernel-uek-doc
66ced3de1e5e0159
72f97b74ec551f03
^5
x86_64
2.6.39
0:2.6.39-400.297.6.el5uek
i386
^6
2.6.39
0:2.6.39-400.297.6.el6uek
i686