[El-errata] ELSA-2018-4246 Important: Oracle Linux 5 Extended Lifecycle Support (ELS) Unbreakable Enterprise kernel security update
Errata Announcements for Oracle Linux
el-errata at oss.oracle.com
Fri Oct 12 19:55:38 PDT 2018
Oracle Linux Security Advisory ELSA-2018-4246
http://linux.oracle.com/errata/ELSA-2018-4246.html
The following updated rpms for Oracle Linux 5 Extended Lifecycle Support
(ELS) have been uploaded to the Unbreakable Linux Network:
i386:
kernel-uek-2.6.39-400.302.1.el5uek.i686.rpm
kernel-uek-debug-2.6.39-400.302.1.el5uek.i686.rpm
kernel-uek-debug-devel-2.6.39-400.302.1.el5uek.i686.rpm
kernel-uek-devel-2.6.39-400.302.1.el5uek.i686.rpm
kernel-uek-doc-2.6.39-400.302.1.el5uek.noarch.rpm
kernel-uek-firmware-2.6.39-400.302.1.el5uek.noarch.rpm
x86_64:
kernel-uek-firmware-2.6.39-400.302.1.el5uek.noarch.rpm
kernel-uek-doc-2.6.39-400.302.1.el5uek.noarch.rpm
kernel-uek-2.6.39-400.302.1.el5uek.x86_64.rpm
kernel-uek-devel-2.6.39-400.302.1.el5uek.x86_64.rpm
kernel-uek-debug-devel-2.6.39-400.302.1.el5uek.x86_64.rpm
kernel-uek-debug-2.6.39-400.302.1.el5uek.x86_64.rpm
Description of changes:
[2.6.39-400.302.1.el5uek]
- Fix up non-directory creation in SGID directories (Linus Torvalds)
[Orabug: 28459479] {CVE-2018-13405}
- ALSA: seq: Make ioctls race-free (Takashi Iwai) [Orabug: 28459730]
{CVE-2018-7566}
- rds: CVE-2018-7492: Fix NULL pointer dereference in __rds_rdma_map
(Håkon Bugge) [Orabug: 28539910] {CVE-2018-7492}
- cdrom: Fix info leak/OOB read in cdrom_ioctl_drive_status (Scott
Bauer) [Orabug: 28664549] {CVE-2018-16658}
- ACPICA: acpi: acpica: fix acpi operand cache leak in nseval.c
(Seunghun Han) [Orabug: 28664580] {CVE-2017-13695}
- exec: Limit arg stack to at most 75% of _STK_LIM (Kees Cook) [Orabug:
28710024] {CVE-2018-14634}
More information about the El-errata
mailing list