[Ksplice][Ubuntu-21.04-Updates] New Ksplice updates for Ubuntu 21.04 Hirsute (5.11.0-41.45)

Oracle Ksplice quentin.casasnovas at oracle.com
Tue Dec 7 11:03:17 UTC 2021


Synopsis: 5.11.0-41.45 can now be patched using Ksplice
CVEs: CVE-2021-3744 CVE-2021-3764 CVE-2021-42252

Systems running Ubuntu 21.04 Hirsute can now use Ksplice to patch
against the latest Ubuntu kernel update, 5.11.0-41.45.

INSTALLING THE UPDATES

We recommend that all users of Ksplice Uptrack running Ubuntu 21.04
Hirsute install these updates.

On systems that have "autoinstall = yes" in /etc/uptrack/uptrack.conf,
these updates will be installed automatically and you do not need to
take any action.

Alternatively, you can install these updates by running:

# /usr/sbin/uptrack-upgrade -y


DESCRIPTION

* Cache invalidation error in OCFS2 subsytem when reading ACLs.

A logic error whilst invalidating cached directory acls in the OCFS2
subsytem may end up reading stale acl data.  This may lead to incorrect
permissions being used.


* CVE-2021-3744, CVE-2021-3764: Denial-of-service in AMD Cryptographic Coprocessor driver.

Error handling flaws in AMD Cryptographic Coprocessor driver could cause
memory leaks due to a failure to free memory allocated to process some
software operations. A local user could use this flaws to cause a denial
of service.


* Note: Oracle has determined that CVE-2021-42252 is not applicable.

Oracle has determined that CVE-2021-42252 is not applicable to
the running kernel. Applying the patch has no resulting changes
in the generated object files.

SUPPORT

Ksplice support is available at ksplice-support_ww at oracle.com.





More information about the Ksplice-Ubuntu-21.04-updates mailing list