[El-errata] ELSA-2018-4246 Important: Oracle Linux 5 Extended Lifecycle Support (ELS) Unbreakable Enterprise kernel security update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Fri Oct 12 19:55:38 PDT 2018


Oracle Linux Security Advisory ELSA-2018-4246

http://linux.oracle.com/errata/ELSA-2018-4246.html

The following updated rpms for Oracle Linux 5 Extended Lifecycle Support 
(ELS) have been uploaded to the Unbreakable Linux Network:

i386:
kernel-uek-2.6.39-400.302.1.el5uek.i686.rpm
kernel-uek-debug-2.6.39-400.302.1.el5uek.i686.rpm
kernel-uek-debug-devel-2.6.39-400.302.1.el5uek.i686.rpm
kernel-uek-devel-2.6.39-400.302.1.el5uek.i686.rpm
kernel-uek-doc-2.6.39-400.302.1.el5uek.noarch.rpm
kernel-uek-firmware-2.6.39-400.302.1.el5uek.noarch.rpm

x86_64:
kernel-uek-firmware-2.6.39-400.302.1.el5uek.noarch.rpm
kernel-uek-doc-2.6.39-400.302.1.el5uek.noarch.rpm
kernel-uek-2.6.39-400.302.1.el5uek.x86_64.rpm
kernel-uek-devel-2.6.39-400.302.1.el5uek.x86_64.rpm
kernel-uek-debug-devel-2.6.39-400.302.1.el5uek.x86_64.rpm
kernel-uek-debug-2.6.39-400.302.1.el5uek.x86_64.rpm



Description of changes:

[2.6.39-400.302.1.el5uek]
- Fix up non-directory creation in SGID directories (Linus Torvalds) 
[Orabug: 28459479]  {CVE-2018-13405}
- ALSA: seq: Make ioctls race-free (Takashi Iwai)  [Orabug: 28459730] 
{CVE-2018-7566}
- rds: CVE-2018-7492: Fix NULL pointer dereference in __rds_rdma_map 
(Håkon Bugge)  [Orabug: 28539910]  {CVE-2018-7492}
- cdrom: Fix info leak/OOB read in cdrom_ioctl_drive_status (Scott 
Bauer)  [Orabug: 28664549]  {CVE-2018-16658}
- ACPICA: acpi: acpica: fix acpi operand cache leak in nseval.c 
(Seunghun Han)  [Orabug: 28664580]  {CVE-2017-13695}
- exec: Limit arg stack to at most 75% of _STK_LIM (Kees Cook)  [Orabug: 
28710024]  {CVE-2018-14634}




More information about the El-errata mailing list