[Oraclevm-errata] OVMSA-2022-0021 Important: Oracle VM 3 Extended Lifecycle Support (ELS) Unbreakable Enterprise kernel security update

Errata Announcements for Oracle VM oraclevm-errata at oss.oracle.com
Wed Aug 10 20:43:20 UTC 2022


Oracle VM Security Advisory OVMSA-2022-0021

The following updated rpms for Oracle VM 3 Extended Lifecycle Support (ELS) have been uploaded to the Unbreakable Linux Network:

x86_64:
kernel-uek-4.1.12-124.65.1.el6uek.x86_64.rpm
kernel-uek-firmware-4.1.12-124.65.1.el6uek.noarch.rpm



Related CVEs:

CVE-2022-0492
CVE-2022-32250
CVE-2022-33981




Description of changes:

[4.1.12-124.65.1.el6uek]
- cgroup-v1: Require capabilities to set release_agent (Eric W. Biederman)  [Orabug: 33825689]  {CVE-2022-0492}
- ocfs2: kill EBUSY from dlmfs_evict_inode (Junxiao Bi)  [Orabug: 34091904]
- ocfs2: dlmfs: fix error handling of user_dlm_destroy_lock (Junxiao Bi via Ocfs2-devel)  [Orabug: 34091904]
- ocfs2: dlmfs: don't clear USER_LOCK_ATTACHED when destroying lock (Junxiao Bi)  [Orabug: 34091904]
- uek: kabi: new kABI symbols by USM and fix kABI files (Saeed Mirzamohammadi)  [Orabug: 34233929]
- netfilter: nf_tables: disallow non-stateful expression in sets earlier (Pablo Neira Ayuso)  [Orabug: 34247343]  {CVE-2022-32250}
- netfilter: nf_tables: fix memory leak if expr init fails (Liping Zhang)  [Orabug: 34247343]
- floppy: disable FDRAWCMD by default (Willy Tarreau)  [Orabug: 34308428]  {CVE-2022-33981}




More information about the Oraclevm-errata mailing list