Synopsis: FEDORA-2017-deb70b495e can now be patched using Ksplice

* Use-after-free in message queue notify syscall.

A race condition when closing a message queue file descriptor could
cause the memory for the associated socket to be freed twice, corrupting
memory or causing a denial-of-service.

* Timing attack vulnerability in RSA PKCS1 Padding algorithm.

Incorrectly utilizing a variable-time algorithm when generating padding
for PKCS1 encryption could allow an attacker to develop a time-based
attack against its generated keys.


