[El-errata] ELSA-2019-4675 Important: Oracle Linux 5 Extended Lifecycle Support (ELS) Unbreakable Enterprise kernel security update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Mon Jun 10 07:08:22 PDT 2019


Oracle Linux Security Advisory ELSA-2019-4675

http://linux.oracle.com/errata/ELSA-2019-4675.html

The following updated rpms for Oracle Linux 5 Extended Lifecycle Support 
(ELS) have been uploaded to the Unbreakable Linux Network:

i386:
kernel-uek-2.6.39-400.312.1.el5uek.i686.rpm
kernel-uek-debug-2.6.39-400.312.1.el5uek.i686.rpm
kernel-uek-debug-devel-2.6.39-400.312.1.el5uek.i686.rpm
kernel-uek-devel-2.6.39-400.312.1.el5uek.i686.rpm
kernel-uek-doc-2.6.39-400.312.1.el5uek.noarch.rpm
kernel-uek-firmware-2.6.39-400.312.1.el5uek.noarch.rpm

x86_64:
kernel-uek-firmware-2.6.39-400.312.1.el5uek.noarch.rpm
kernel-uek-doc-2.6.39-400.312.1.el5uek.noarch.rpm
kernel-uek-2.6.39-400.312.1.el5uek.x86_64.rpm
kernel-uek-devel-2.6.39-400.312.1.el5uek.x86_64.rpm
kernel-uek-debug-devel-2.6.39-400.312.1.el5uek.x86_64.rpm
kernel-uek-debug-2.6.39-400.312.1.el5uek.x86_64.rpm




Description of changes:

[2.6.39-400.312.1.el5uek]
- Bluetooth: hidp: fix buffer overflow (Young Xiao)  [Orabug: 29786788]  {CVE-2011-1079} {CVE-2019-11884}
- x86/speculation/mds: Fix verw usage to use memory operand (Patrick Colp)  [Orabug: 29791037]  {CVE-2018-12126} {CVE-2018-12130} {CVE-2018-12127} {CVE-2019-11091}
- x86/speculation/mds: Make cpu_vuln_whitelist __cpuinitconst (Patrick Colp)  [Orabug: 29792027]
- x86/speculation/mds: Conditionally clear CPU buffers on idle entry (Thomas Gleixner)  [Orabug: 29792064]  {CVE-2018-12126} {CVE-2018-12130} {CVE-2018-12127} {CVE-2019-11091}
- x86/speculation/mds: Call VERW on NMI path when returning to user (Patrick Colp)  [Orabug: 29792097]  {CVE-2018-12126} {CVE-2018-12130} {CVE-2018-12127} {CVE-2019-11091}
- x86/speculation/mds: Fix incorrect check against MSR_IA32_ARCH_CAPABILITIES (Patrick Colp)  [Orabug: 29820653]







More information about the El-errata mailing list