[Oraclevm-errata] OVMSA-2024-0006 Important: Oracle VM 3 Extended Lifecycle Support (ELS) Unbreakable Enterprise kernel security update

Errata Announcements for Oracle VM oraclevm-errata at oss.oracle.com
Fri Jul 5 15:21:25 UTC 2024


Oracle VM Security Advisory OVMSA-2024-0006

The following updated rpms for Oracle VM 3 Extended Lifecycle Support (ELS) have been uploaded to the Unbreakable Linux Network:

x86_64:
kernel-uek-4.1.12-124.87.2.el6uek.x86_64.rpm
kernel-uek-firmware-4.1.12-124.87.2.el6uek.noarch.rpm



Related CVEs:

CVE-2023-0590
CVE-2023-1206
CVE-2023-4623
CVE-2023-6932




Description of changes:

[4.1.12-124.87.2.el6uek]
- net: sched: fix race condition in qdisc_graft() (Eric Dumazet)  [Orabug: 35250827]  {CVE-2023-0590}

[4.1.12-124.87.1.el6uek]
- ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet (Zhengchao Shao)  [Orabug: 36654101]  {CVE-2023-6932}
- net: convert ip_mc_list.refcnt from atomic_t to refcount_t (Reshetova, Elena)  [Orabug: 36654101]
- net/sched: sch_hfsc: Ensure inner classes have fsc curve (Budimir Markovic)  [Orabug: 35810544]  {CVE-2023-4623}
- tcp: Reduce chance of collisions in inet6_hashfn(). (Stewart Smith)  [Orabug: 35754477]  {CVE-2023-1206}




More information about the Oraclevm-errata mailing list