[ELSA-2013-2504] Unbreakable Enterprise kernel security update

Severity Moderate
Affected Packages 22
CVEs 2

[2.6.32-300.39.4]
- exec: do not leave bprm->interp on stack (Kees Cook) [Orabug: 16286741]
{CVE-2012-4530}
- exec: use -ELOOP for max recursion depth (Kees Cook) [Orabug: 16286741]
{CVE-2012-4530}

[2.6.32-300.39.3]
- Xen: Fix stack corruption in xen_failsafe_callback for 32bit PVOPS guests.
(Frediano Ziglio) [Orabug: 16274192] {CVE-2013-0190}

Package Affected Version
pkg:rpm/oraclelinux/ofa-2.6.32-300.39.4.el6uekdebug < 1.5.1-4.0.58
pkg:rpm/oraclelinux/ofa-2.6.32-300.39.4.el6uek < 1.5.1-4.0.58
pkg:rpm/oraclelinux/ofa-2.6.32-300.39.4.el5uekdebug < 1.5.1-4.0.58
pkg:rpm/oraclelinux/ofa-2.6.32-300.39.4.el5uek < 1.5.1-4.0.58
pkg:rpm/oraclelinux/mlnx_en-2.6.32-300.39.4.el6uekdebug < 1.5.7-0.1
pkg:rpm/oraclelinux/mlnx_en-2.6.32-300.39.4.el6uek < 1.5.7-0.1
pkg:rpm/oraclelinux/mlnx_en-2.6.32-300.39.4.el5uekdebug < 1.5.7-2
pkg:rpm/oraclelinux/mlnx_en-2.6.32-300.39.4.el5uek < 1.5.7-2
pkg:rpm/oraclelinux/kernel-uek?distro=oraclelinux-6 < 2.6.32-300.39.4.el6uek
pkg:rpm/oraclelinux/kernel-uek?distro=oraclelinux-5 < 2.6.32-300.39.4.el5uek
pkg:rpm/oraclelinux/kernel-uek-headers?distro=oraclelinux-6 < 2.6.32-300.39.4.el6uek
pkg:rpm/oraclelinux/kernel-uek-headers?distro=oraclelinux-5 < 2.6.32-300.39.4.el5uek
pkg:rpm/oraclelinux/kernel-uek-firmware?distro=oraclelinux-6 < 2.6.32-300.39.4.el6uek
pkg:rpm/oraclelinux/kernel-uek-firmware?distro=oraclelinux-5 < 2.6.32-300.39.4.el5uek
pkg:rpm/oraclelinux/kernel-uek-doc?distro=oraclelinux-6 < 2.6.32-300.39.4.el6uek
pkg:rpm/oraclelinux/kernel-uek-doc?distro=oraclelinux-5 < 2.6.32-300.39.4.el5uek
pkg:rpm/oraclelinux/kernel-uek-devel?distro=oraclelinux-6 < 2.6.32-300.39.4.el6uek
pkg:rpm/oraclelinux/kernel-uek-devel?distro=oraclelinux-5 < 2.6.32-300.39.4.el5uek
pkg:rpm/oraclelinux/kernel-uek-debug?distro=oraclelinux-6 < 2.6.32-300.39.4.el6uek
pkg:rpm/oraclelinux/kernel-uek-debug?distro=oraclelinux-5 < 2.6.32-300.39.4.el5uek
pkg:rpm/oraclelinux/kernel-uek-debug-devel?distro=oraclelinux-6 < 2.6.32-300.39.4.el6uek
pkg:rpm/oraclelinux/kernel-uek-debug-devel?distro=oraclelinux-5 < 2.6.32-300.39.4.el5uek
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/oraclelinux/ofa-2.6.32-300.39.4.el6uekdebug oraclelinux ofa-2.6.32-300.39.4.el6uekdebug < 1.5.1-4.0.58
Affected pkg:rpm/oraclelinux/ofa-2.6.32-300.39.4.el6uek oraclelinux ofa-2.6.32-300.39.4.el6uek < 1.5.1-4.0.58
Affected pkg:rpm/oraclelinux/ofa-2.6.32-300.39.4.el5uekdebug oraclelinux ofa-2.6.32-300.39.4.el5uekdebug < 1.5.1-4.0.58
Affected pkg:rpm/oraclelinux/ofa-2.6.32-300.39.4.el5uek oraclelinux ofa-2.6.32-300.39.4.el5uek < 1.5.1-4.0.58
Affected pkg:rpm/oraclelinux/mlnx_en-2.6.32-300.39.4.el6uekdebug oraclelinux mlnx_en-2.6.32-300.39.4.el6uekdebug < 1.5.7-0.1
Affected pkg:rpm/oraclelinux/mlnx_en-2.6.32-300.39.4.el6uek oraclelinux mlnx_en-2.6.32-300.39.4.el6uek < 1.5.7-0.1
Affected pkg:rpm/oraclelinux/mlnx_en-2.6.32-300.39.4.el5uekdebug oraclelinux mlnx_en-2.6.32-300.39.4.el5uekdebug < 1.5.7-2
Affected pkg:rpm/oraclelinux/mlnx_en-2.6.32-300.39.4.el5uek oraclelinux mlnx_en-2.6.32-300.39.4.el5uek < 1.5.7-2
Affected pkg:rpm/oraclelinux/kernel-uek?distro=oraclelinux-6 oraclelinux kernel-uek < 2.6.32-300.39.4.el6uek oraclelinux-6
Affected pkg:rpm/oraclelinux/kernel-uek?distro=oraclelinux-5 oraclelinux kernel-uek < 2.6.32-300.39.4.el5uek oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-uek-headers?distro=oraclelinux-6 oraclelinux kernel-uek-headers < 2.6.32-300.39.4.el6uek oraclelinux-6
Affected pkg:rpm/oraclelinux/kernel-uek-headers?distro=oraclelinux-5 oraclelinux kernel-uek-headers < 2.6.32-300.39.4.el5uek oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-uek-firmware?distro=oraclelinux-6 oraclelinux kernel-uek-firmware < 2.6.32-300.39.4.el6uek oraclelinux-6
Affected pkg:rpm/oraclelinux/kernel-uek-firmware?distro=oraclelinux-5 oraclelinux kernel-uek-firmware < 2.6.32-300.39.4.el5uek oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-uek-doc?distro=oraclelinux-6 oraclelinux kernel-uek-doc < 2.6.32-300.39.4.el6uek oraclelinux-6
Affected pkg:rpm/oraclelinux/kernel-uek-doc?distro=oraclelinux-5 oraclelinux kernel-uek-doc < 2.6.32-300.39.4.el5uek oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-uek-devel?distro=oraclelinux-6 oraclelinux kernel-uek-devel < 2.6.32-300.39.4.el6uek oraclelinux-6
Affected pkg:rpm/oraclelinux/kernel-uek-devel?distro=oraclelinux-5 oraclelinux kernel-uek-devel < 2.6.32-300.39.4.el5uek oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-uek-debug?distro=oraclelinux-6 oraclelinux kernel-uek-debug < 2.6.32-300.39.4.el6uek oraclelinux-6
Affected pkg:rpm/oraclelinux/kernel-uek-debug?distro=oraclelinux-5 oraclelinux kernel-uek-debug < 2.6.32-300.39.4.el5uek oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-uek-debug-devel?distro=oraclelinux-6 oraclelinux kernel-uek-debug-devel < 2.6.32-300.39.4.el6uek oraclelinux-6
Affected pkg:rpm/oraclelinux/kernel-uek-debug-devel?distro=oraclelinux-5 oraclelinux kernel-uek-debug-devel < 2.6.32-300.39.4.el5uek oraclelinux-5
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...