[El-errata] ELSA-2015-3042 Important: Oracle Linux 5 Unbreakable Enterprise kernel security update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Wed Jun 10 13:33:35 PDT 2015


Oracle Linux Security Advisory ELSA-2015-3042

http://linux.oracle.com/errata/ELSA-2015-3042.html

The following updated rpms for Oracle Linux 5 have been uploaded to the 
Unbreakable Linux Network:

i386:
kernel-uek-2.6.39-400.250.5.el5uek.i686.rpm
kernel-uek-debug-2.6.39-400.250.5.el5uek.i686.rpm
kernel-uek-debug-devel-2.6.39-400.250.5.el5uek.i686.rpm
kernel-uek-devel-2.6.39-400.250.5.el5uek.i686.rpm
kernel-uek-doc-2.6.39-400.250.5.el5uek.noarch.rpm
kernel-uek-firmware-2.6.39-400.250.5.el5uek.noarch.rpm

x86_64:
kernel-uek-firmware-2.6.39-400.250.5.el5uek.noarch.rpm
kernel-uek-doc-2.6.39-400.250.5.el5uek.noarch.rpm
kernel-uek-2.6.39-400.250.5.el5uek.x86_64.rpm
kernel-uek-devel-2.6.39-400.250.5.el5uek.x86_64.rpm
kernel-uek-debug-devel-2.6.39-400.250.5.el5uek.x86_64.rpm
kernel-uek-debug-2.6.39-400.250.5.el5uek.x86_64.rpm


SRPMS:
http://oss.oracle.com/ol5/SRPMS-updates/kernel-uek-2.6.39-400.250.5.el5uek.src.rpm



Description of changes:

[2.6.39-400.250.5.el5uek]
- x86_64, vdso: Fix the vdso address randomization algorithm (Andy 
Lutomirski)  [Orabug: 21226730]  {CVE-2014-9585}
- isofs: Fix infinite looping over CE entries (Jan Kara)  [Orabug: 
21225976]  {CVE-2014-9420}
- x86_64, switch_to(): Load TLS descriptors before switching DS and ES 
(Andy Lutomirski)  [Orabug: 21225938]  {CVE-2014-9419}

[2.6.39-400.250.4.el5uek]
- IB/ipoib: Disable TSO in connected mode (Yuval Shaia)  [Orabug: 20637991]

[2.6.39-400.250.3.el5uek]
- af_unix: dont send SCM_CREDENTIALS by default (Eric Dumazet)  [Orabug: 
20604916] - scm: Capture the full credentials of the scm sender (Tim 
Chen)  [Orabug: 20604916] - af_unix: limit recursion level (Eric 
Dumazet)  [Orabug: 20604916] - af_unix: Allow credentials to work across 
user and pid namespaces. (Eric W. Biederman)  [Orabug: 20604916] - scm: 
Capture the full credentials of the scm sender. (Eric W. Biederman) 
[Orabug: 20604916] - BUG_ON(lockres->l_level != DLM_LOCK_EX && 
!checkpointed) tripped in ocfs2_ci_checkpointed (Tariq Saeed)  [Orabug: 
20189959] - sched: Prevent divide by zero when cpu power calculation is 
0 (Todd Vierling)  [Orabug: 17936435]





More information about the El-errata mailing list