[El-errata] ELSA-2015-2623 Moderate: Oracle Linux 7 grub2 security and bug fix update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Tue Dec 15 10:14:04 PST 2015


Oracle Linux Security Advisory ELSA-2015-2623

http://linux.oracle.com/errata/ELSA-2015-2623.html

The following updated rpms for Oracle Linux 7 have been uploaded to the 
Unbreakable Linux Network:

x86_64:
grub2-2.02-0.33.0.1.el7_2.x86_64.rpm
grub2-efi-2.02-0.33.0.1.el7_2.x86_64.rpm
grub2-efi-modules-2.02-0.33.0.1.el7_2.x86_64.rpm
grub2-tools-2.02-0.33.0.1.el7_2.x86_64.rpm


SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates/grub2-2.02-0.33.0.1.el7_2.src.rpm



Description of changes:

[2.02-0.33.0.1]
- Fix comparison in patch for 18504756
- Remove symlink to grub environment file during uninstall on EFI platforms
   [bug 19231481]
- update Oracle Linux certificates (Alexey Petrenko)
- Put "with" in menuentry instead of "using" [bug 18504756]
- Use different titles for UEK and RHCK kernels [bug 18504756]

[2.02-0.33]
- Don't remove 01_users, it's the wrong thing to do.
   Related:rhbz1290089

[2.02-0.32]
- Rebuild for .z so the release number is different.
   Related: rhbz#1290089

[2.02-0.31]
- More work on handling of GRUB2_PASSWORD
   Resolves: rhbz#1290089

[2.02-0.30]
- Fix security issue when reading username and password
   Resolves: CVE-2015-8370
- Do a better job of handling GRUB_PASSWORD
   Resolves: rhbz#1290089





More information about the El-errata mailing list