[Oraclevm-errata] OVMSA-2017-0152 Important: Oracle VM 3.3 Unbreakable Enterprise kernel security update

Errata Announcements for Oracle VM oraclevm-errata at oss.oracle.com
Thu Sep 21 15:37:29 PDT 2017


Oracle VM Security Advisory OVMSA-2017-0152

The following updated rpms for Oracle VM 3.3 have been uploaded to the 
Unbreakable Linux Network:

x86_64:
kernel-uek-3.8.13-118.19.7.el6uek.x86_64.rpm
kernel-uek-firmware-3.8.13-118.19.7.el6uek.noarch.rpm


SRPMS:
http://oss.oracle.com/oraclevm/server/3.3/SRPMS-updates/kernel-uek-3.8.13-118.19.7.el6uek.src.rpm



Description of changes:

[3.8.13-118.19.7.el6uek]
- Bluetooth: Properly check L2CAP config option output buffer length 
(Ben Seri)  [Orabug: 26796364]  {CVE-2017-1000251}

[3.8.13-118.19.6.el6uek]
- xen: fix bio vec merging (Roger Pau Monne)  [Orabug: 26645550] 
{CVE-2017-12134}

[3.8.13-118.19.5.el6uek]
- fs/exec.c: account for argv/envp pointers (Kees Cook)  [Orabug: 
26638921]  {CVE-2017-1000365} {CVE-2017-1000365}




More information about the Oraclevm-errata mailing list