[El-errata] ELSA-2020-5912 Important: Oracle Linux 6 Unbreakable Enterprise kernel security update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Thu Nov 5 19:17:42 PST 2020


Oracle Linux Security Advisory ELSA-2020-5912

http://linux.oracle.com/errata/ELSA-2020-5912.html

The following updated rpms for Oracle Linux 6 have been uploaded to the 
Unbreakable Linux Network:

x86_64:
kernel-uek-doc-4.1.12-124.44.4.el6uek.noarch.rpm
kernel-uek-firmware-4.1.12-124.44.4.el6uek.noarch.rpm
kernel-uek-4.1.12-124.44.4.el6uek.x86_64.rpm
kernel-uek-devel-4.1.12-124.44.4.el6uek.x86_64.rpm
kernel-uek-debug-4.1.12-124.44.4.el6uek.x86_64.rpm
kernel-uek-debug-devel-4.1.12-124.44.4.el6uek.x86_64.rpm


SRPMS:
http://oss.oracle.com/ol6/SRPMS-updates/kernel-uek-4.1.12-124.44.4.el6uek.src.rpm



Description of changes:

[4.1.12-124.44.4.el6uek]
- scsi: qla2xxx: Fix NULL pointer crash due to active timer for ABTS (himanshu.madhani at cavium.com)  [Orabug: 32020790]

[4.1.12-124.44.3.el6uek]
- qed: Reduce verbosity of unimplemented MFW messages (Mintz, Yuval)  [Orabug: 31959299]
- kexec: validate pe files against the system_blacklist_keyring (Eric Snowberg)  [Orabug: 31961119]  {CVE-2020-26541}

[4.1.12-124.44.2.el6uek]
- usb: cdc-acm: make sure a refcount is taken early enough (Oliver Neukum)  [Orabug: 31351088]  {CVE-2019-19530}
- net/rds: migration of a delayed initialized port present in down state (Praveen Kumar Kannoju)  [Orabug: 31729995]
- net: add high_order_alloc_disable sysctl (Eric Dumazet)  [Orabug: 31835223]
- mm, page_alloc: double zone's batchsize (Aaron Lu)  [Orabug: 31835223]
- mm/free_pcppages_bulk: prefetch buddy while not holding lock (Aruna Ramakrishna)  [Orabug: 31835223]
- mm/free_pcppages_bulk: do not hold lock when picking pages to free (Aruna Ramakrishna)  [Orabug: 31835223]
- mm, page_alloc: remove unnecessary variable from free_pcppages_bulk (Mel Gorman)  [Orabug: 31835223]
- netfilter: ctnetlink: add a range check for l3/l4 protonum (Will McVicker)  [Orabug: 31872865]  {CVE-2020-25211}
- net/rds: Extract dest qp num for displaying in rds-info (Praveen Kumar Kannoju)  [Orabug: 31880144]
- uek-rpm: Update secure boot UEK signing certificates (Brian Maly)  [Orabug: 31974559]

[4.1.12-124.44.1.el6uek]
- oracleasm: Retrieve d_bdev before dropping inode (Stephen Brennan)  [Orabug: 31832592]
- KVM: VMX: fixes for vmentry_l1d_flush module parameter (Paolo Bonzini)  [Orabug: 31962487]




More information about the El-errata mailing list