[El-errata] ELSA-2013-0911 Important: Oracle Linux 6 kernel security, bug fix, and enhancement update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Tue Jun 11 17:08:57 PDT 2013


Oracle Linux Security Advisory ELSA-2013-0911

https://rhn.redhat.com/errata/RHSA-2013-0911.html

The following updated rpms for Oracle Linux 6 have been uploaded to the 
Unbreakable Linux Network:

i386:
kernel-2.6.32-358.11.1.el6.i686.rpm
kernel-debug-2.6.32-358.11.1.el6.i686.rpm
kernel-debug-devel-2.6.32-358.11.1.el6.i686.rpm
kernel-devel-2.6.32-358.11.1.el6.i686.rpm
kernel-doc-2.6.32-358.11.1.el6.noarch.rpm
kernel-firmware-2.6.32-358.11.1.el6.noarch.rpm
kernel-headers-2.6.32-358.11.1.el6.i686.rpm
perf-2.6.32-358.11.1.el6.i686.rpm
python-perf-2.6.32-358.11.1.el6.i686.rpm

x86_64:
kernel-2.6.32-358.11.1.el6.x86_64.rpm
kernel-debug-2.6.32-358.11.1.el6.x86_64.rpm
kernel-debug-devel-2.6.32-358.11.1.el6.x86_64.rpm
kernel-devel-2.6.32-358.11.1.el6.x86_64.rpm
kernel-doc-2.6.32-358.11.1.el6.noarch.rpm
kernel-firmware-2.6.32-358.11.1.el6.noarch.rpm
kernel-headers-2.6.32-358.11.1.el6.x86_64.rpm
perf-2.6.32-358.11.1.el6.x86_64.rpm
python-perf-2.6.32-358.11.1.el6.x86_64.rpm


SRPMS:
http://oss.oracle.com/ol6/SRPMS-updates/kernel-2.6.32-358.11.1.el6.src.rpm


Description of changes:

[2.6.32-358.11.1.el6]
- [kernel] perf: fix perf_swevent_enabled array out-of-bound access 
(Petr Matousek) [962793 962794] {CVE-2013-2094}

[2.6.32-358.10.1.el6]
- [scsi] be2iscsi : Fix the NOP-In handling code path (Nikola Pajkovsky) 
[955504 947550]
- [scsi] be2iscsi: Fix memory leak in control path of driver (Rob Evers) 
[955504 947550]
- [virt] kvm: validate userspace_addr of memslot (Petr Matousek) [950496 
950498] {CVE-2013-1943}
- [virt] kvm: fix copy to user with irq disabled (Michael S. Tsirkin) 
[949985 906602] {CVE-2013-1935}
- [net] veth: Dont kfree_skb() after dev_forward_skb() (Jiri Benc) 
[957712 957713] {CVE-2013-2017}
- [net] tcp: Reallocate headroom if it would overflow csum_start (Thomas 
Graf) [954298 896233]
- [net] tcp: take care of misalignments (Thomas Graf) [954298 896233]
- [net] skbuff.c cleanup (Thomas Graf) [954298 896233]
- [idle] intel_idle: Initialize driver_data correctly in ivb_cstates on 
IVB processor (Prarit Bhargava) [960864 953630]
- [x86] Prevent panic in init_memory_mapping() when booting more than 
1TB on AMD systems (Larry Woodman) [962482 869736]
- [mm] enforce mmap_min_addr on x86_64 (Rik van Riel) [961431 790921]
- [mm] optional next-fit policy for arch_get_unmapped_area (Rik van 
Riel) [961431 790921]
- [mm] fix quadratic behaviour in get_unmapped_area_topdown (Rik van 
Riel) [961431 790921]
- [scsi] Revert: qla2xxx: Optimize existing port name server query 
matching (Chad Dupuis) [950529 924804]
- [scsi] Revert: qla2xxx: Avoid losing any fc ports when loop id's are 
exhausted (Chad Dupuis) [950529 924804]
- [fs] defer do_filp_open() access checks to may_open() (Eric Sandeen) 
[928683 920752]
- [md] dm thin: bump the target version numbers (Mike Snitzer) [924823 
922931]
- [md] dm-thin: fix discard corruption (Mike Snitzer) [924823 922931]
- [md] persistent-data: rename node to btree_node (Mike Snitzer) [924823 
922931]
- [md] dm: fix limits initialization when there are no data devices 
(Mike Snitzer) [923096 908851]

[2.6.32-358.9.1.el6]
- [fs] nfs: Fix handling of revoked delegations by setattr (Steve 
Dickson) [960415 952329]
- [fs] nfs: Return the delegation if the server returns NFS4ERR_OPENMODE 
(Steve Dickson) [960415 952329]
- [fs] nfs: Fix another potential state manager deadlock (Steve Dickson) 
[960436 950598]
- [fs] nfs: Fix another open/open_recovery deadlock (Steve Dickson) 
[960433 916806]
- [fs] nfs: Hold reference to layout hdr in layoutget (Steve Dickson) 
[960429 916726]
- [fs] nfs: add "pnfs_" prefix to get_layout_hdr() and put_layout_hdr() 
(Steve Dickson) [960429 916726]
- [fs] nfs: nfs4_open_done first must check that GETATTR decoded a file 
type (Steve Dickson) [960412 916722]
- [net] sunrpc: Dont start the retransmission timer when out of socket 
space (Steve Dickson) [960426 916735]
- [fs] nfs: Dont use SetPageError in the NFS writeback code (Steve 
Dickson) [960420 912867]
- [fs] nfs: Dont decode skipped layoutgets (Steve Dickson) [927294 904025]
- [fs] nfs: nfs4_proc_layoutget returns void (Steve Dickson) [927294 904025]
- [fs] nfs: defer release of pages in layoutget (Steve Dickson) [927294 
904025]
- [fs] nfs: Use kcalloc() when allocating arrays (Steve Dickson) [927294 
904025]
- [fs] nfs: Fix an ABBA locking issue with session and state 
serialisation (Steve Dickson) [960417 912842]
- [fs] nfs: Fix a race in the pNFS return-on-close code (Steve Dickson) 
[960417 912842]
- [fs] nfs: Do not accept delegated opens when a delegation recall is in 
effect (Steve Dickson) [960417 912842]
- [fs] nfs: Fix a reboot recovery race when opening a file (Steve 
Dickson) [952613 908524]
- [fs] nfs: Ensure delegation recall and byte range lock removal don't 
conflict (Steve Dickson) [952613 908524]
- [fs] nfs: Fix up the return values of nfs4_open_delegation_recall 
(Steve Dickson) [952613 908524]
- [fs] nfs: Dont lose locks when a server reboots during delegation 
return (Steve Dickson) [952613 908524]
- [fs] nfs: Move nfs4_wait_clnt_recover and 
nfs4_client_recover_expired_lease (Steve Dickson) [952613 908524]
- [fs] nfs: Add NFSDBG_STATE (Steve Dickson) [952613 908524]
- [fs] nfs: nfs_inode_return_delegation() should always flush dirty data 
(Steve Dickson) [952613 908524]
- [fs] nfs: nfs_client_return_marked_delegations cant flush data (Steve 
Dickson) [952613 908524]
- [fs] nfs: Prevent deadlocks between state recovery and file locking 
(Steve Dickson) [952613 908524]
- [fs] nfs: Allow the state manager to mark an open_owner as being 
recovered (Steve Dickson) [952613 908524]
- [kernel] seqlock: Dont smp_rmb in seqlock reader spin loop (Steve 
Dickson) [952613 908524]
- [kernel] seqlock: add 'raw_seqcount_begin()' function (Steve Dickson) 
[952613 908524]
- [kernel] seqlock: optimise seqlock (Steve Dickson) [952613 908524]
- [fs] nfs: don't allow nfs_find_actor to match inodes of the wrong type 
(Jeff Layton) [921964 913660]
- [net] sunrpc: Add barriers to ensure read ordering in 
rpc_wake_up_task_queue_locked (Dave Wysochanski) [956979 840860]

[2.6.32-358.8.1.el6]
- [fs] raw: don't call set_blocksize when not changing the blocksize 
(Jeff Moyer) [951406 909482]
- [x86] Allow greater than 1TB of RAM on AMD x86_64 sytems (Larry 
Woodman) [952570 876275]
- [netdrv] ixgbe: Only set gso_type to SKB_GSO_TCPV4 as RSC does not 
support IPv6 (Michael S. Tsirkin) [927292 908196]
- [netdrv] bnx2x: set gso_type (Michael S. Tsirkin) [927292 908196]
- [netdrv] qlcnic: set gso_type (Michael S. Tsirkin) [927292 908196]
- [netdrv] ixgbe: fix gso type (Michael S. Tsirkin) [927292 908196]
- [fs] gfs2: Allocate reservation structure before rename and link 
(Robert S Peterson) [924847 922999]

[2.6.32-358.7.1.el6]
- [infiniband] ipoib: Add missing locking when CM object is deleted 
(Doug Ledford) [928817 913645]





More information about the El-errata mailing list