[El-errata] ELSA-2015-2552 Important: Oracle Linux 7 kernel security and bug fix update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Tue Dec 8 13:17:07 PST 2015


Oracle Linux Security Advisory ELSA-2015-2552

http://linux.oracle.com/errata/ELSA-2015-2552.html

The following updated rpms for Oracle Linux 7 have been uploaded to the 
Unbreakable Linux Network:

x86_64:
kernel-3.10.0-327.3.1.el7.x86_64.rpm
kernel-abi-whitelists-3.10.0-327.3.1.el7.noarch.rpm
kernel-debug-3.10.0-327.3.1.el7.x86_64.rpm
kernel-debug-devel-3.10.0-327.3.1.el7.x86_64.rpm
kernel-devel-3.10.0-327.3.1.el7.x86_64.rpm
kernel-doc-3.10.0-327.3.1.el7.noarch.rpm
kernel-headers-3.10.0-327.3.1.el7.x86_64.rpm
kernel-tools-3.10.0-327.3.1.el7.x86_64.rpm
kernel-tools-libs-3.10.0-327.3.1.el7.x86_64.rpm
kernel-tools-libs-devel-3.10.0-327.3.1.el7.x86_64.rpm
perf-3.10.0-327.3.1.el7.x86_64.rpm
python-perf-3.10.0-327.3.1.el7.x86_64.rpm


SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates/kernel-3.10.0-327.3.1.el7.src.rpm



Description of changes:

[3.10.0-327.3.1.el7.OL7]
- Oracle Linux certificates (Alexey Petrenko)

[3.10.0-327.3.1.el7]
- rebuild

[3.10.0-327.2.1.el7]
- [netdrv] macvtap: unbreak receiving of gro skb with frag list (Jason 
Wang) [1279794 1273737]
- [net] ipv6: drop frames with attached skb->sk in forwarding (Hannes 
Frederic Sowa) [1281701 1243966]
- [net] ipv6: ip6_forward: perform skb->pkt_type check at the beginning 
(Hannes Frederic Sowa) [1281701 1243966]
- [net] sctp: Fix race between OOTB responce and route removal (Jamie 
Bainbridge) [1281426 1277309]
- [x86] mm: fix VM_FAULT_RETRY handling (Andrea Arcangeli) [1281427 1277226]
- [x86] mm: consolidate VM_FAULT_RETRY handling (Andrea Arcangeli) 
[1281427 1277226]
- [x86] mm: move mmap_sem unlock from mm_fault_error() to caller (Andrea 
Arcangeli) [1281427 1277226]
- [mm] let mm_find_pmd fix buggy race with THP fault (Larry Woodman) 
[1281424 1273993]
- [mm] ksm: unstable_tree_search_insert error checking cleanup (Andrea 
Arcangeli) [1281422 1274871]
- [mm] ksm: use find_mergeable_vma in try_to_merge_with_ksm_page (Andrea 
Arcangeli) [1281422 1274871]
- [mm] ksm: use the helper method to do the hlist_empty check (Andrea 
Arcangeli) [1281422 1274871]
- [mm] ksm: don't fail stable tree lookups if walking over stale 
stable_nodes (Andrea Arcangeli) [1281422 1274871]
- [mm] ksm: add cond_resched() to the rmap_walks (Andrea Arcangeli) 
[1281422 1274871]
- [powerpc] kvm: book3s_hv: Synthesize segment fault if SLB lookup fails 
(Thomas Huth) [1281423 1269467]
- [powerpc] kvm: book3s_hv: Create debugfs file for each guest's HPT 
(David Gibson) [1281420 1273692]
- [powerpc] kvm: book3s_hv: Add helpers for lock/unlock hpte (David 
Gibson) [1281420 1273692]
- [powerpc] pci: initialize hybrid_dma_data before use (Laurent Vivier) 
[1279793 1270717]
- [md] raid10: don't clear bitmap bit when bad-block-list write fails 
(Jes Sorensen) [1279796 1267652]
- [md] raid1: don't clear bitmap bit when bad-block-list write fails 
(Jes Sorensen) [1279796 1267652]
- [md] raid10: submit_bio_wait() returns 0 on success (Jes Sorensen) 
[1279796 1267652]
- [md] raid1: submit_bio_wait() returns 0 on success (Jes Sorensen) 
[1279796 1267652]
- [md] crash in md-raid1 and md-raid10 due to incorrect list 
manipulation (Jes Sorensen) [1279796 1267652]
- [md] raid10: ensure device failure recorded before write request 
returns (Jes Sorensen) [1279796 1267652]
- [md] raid1: ensure device failure recorded before write request 
returns (Jes Sorensen) [1279796 1267652]
- [block] nvme: Fix memory leak on retried commands (David Milburn) 
[1279792 1271860]
- [cpufreq] intel_pstate: fix rounding error in max_freq_pct (Prarit 
Bhargava) [1281491 1263866]
- [cpufreq] intel_pstate: fix PCT_TO_HWP macro (Prarit Bhargava) 
[1273926 1264990]
- [cpufreq] revert "intel_pstate: add quirk to disable HWP on Skylake-S 
processors" (Prarit Bhargava) [1273926 1264990]
- [cpufreq] revert "intel_pstate: disable Skylake processors" (Prarit 
Bhargava) [1273926 1264990]
- [x86] kvm: svm: unconditionally intercept #DB (Paolo Bonzini) [1279469 
1279470] {CVE-2015-8104}
- [x86] virt: guest to host DoS by triggering an infinite loop in 
microcode (Paolo Bonzini) [1277560 1277561] {CVE-2015-5307}

[3.10.0-327.1.1.el7]
- [x86] kvm: mmu: fix validation of mmio page fault (Bandan Das) 
[1275150 1267128]





More information about the El-errata mailing list