[Oraclevm-errata] OVMSA-2008-2006 Important: Oracle VM Server 2.1 kernel security update

Errata Announcements for Oracle VM oraclevm-errata at oss.oracle.com
Mon Sep 29 12:24:38 PDT 2008


Oracle VM Server Security Advisory OVMSA-2008-2006

The following updated rpms for Oracle VM Server 2.1 have been uploaded 
to the Unbreakable Linux Network:

i386:
kernel-BOOT-2.6.18-8.1.15.1.20.el5.i686.rpm
kernel-BOOT-devel-2.6.18-8.1.15.1.20.el5.i686.rpm
kernel-kdump-2.6.18-8.1.15.1.20.el5.i686.rpm
kernel-kdump-devel-2.6.18-8.1.15.1.20.el5.i686.rpm
kernel-ovs-2.6.18-8.1.15.1.20.el5.i686.rpm
kernel-ovs-devel-2.6.18-8.1.15.1.20.el5.i686.rpm


SRPMS:
http://oss.oracle.com/oraclevm/server/SRPMS-updates/kernel-2.6.18-8.1.15.1.20.el5.src.rpm


Description of changes:

[2.6.18-8.1.15.1.20.el5]
- CVE-2008-2931: missing check before setting mount propagation
- CVE-2007-6716: dio: use kzalloc to zero out struct dio
- CVE-2008-3272: snd_seq_oss_synth_make_info leak
- CVE-2008-3275: vfs: fix lookup on deleted directory
- CVE-2007-6417: tmpfs: restore missing clear_highpage




More information about the Oraclevm-errata mailing list