[El-errata] ELSA-2025-20190 Important: Oracle Linux 7 Unbreakable Enterprise kernel security update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Tue Apr 1 12:47:59 UTC 2025


Oracle Linux Security Advisory ELSA-2025-20190

http://linux.oracle.com/errata/ELSA-2025-20190.html

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

x86_64:
kernel-uek-5.4.17-2136.341.3.3.el7uek.x86_64.rpm
kernel-uek-container-5.4.17-2136.341.3.3.el7uek.x86_64.rpm
kernel-uek-container-debug-5.4.17-2136.341.3.3.el7uek.x86_64.rpm
kernel-uek-debug-5.4.17-2136.341.3.3.el7uek.x86_64.rpm
kernel-uek-debug-devel-5.4.17-2136.341.3.3.el7uek.x86_64.rpm
kernel-uek-devel-5.4.17-2136.341.3.3.el7uek.x86_64.rpm
kernel-uek-doc-5.4.17-2136.341.3.3.el7uek.noarch.rpm
kernel-uek-tools-5.4.17-2136.341.3.3.el7uek.x86_64.rpm


SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates//kernel-uek-5.4.17-2136.341.3.3.el7uek.src.rpm

Related CVEs:

CVE-2024-39494
CVE-2024-57892




Description of changes:

[5.4.17-2136.341.3.3.el7uek]
- ima: Fix use-after-free on a dentry's dname.name (Stefan Berger)  [Orabug: 37727037]  {CVE-2024-39494}

[5.4.17-2136.341.3.2.el7uek]
- ocfs2: fix slab-use-after-free due to dangling pointer dqi_priv (Dennis Lam)  [Orabug: 37707634]  {CVE-2024-57892}
- ocfs2: correct return value of ocfs2_local_free_info() (Joseph Qi)  [Orabug: 37707634]




More information about the El-errata mailing list