[ELSA-2013-2542] unbreakable enterprise kernel security update

Severity Important
Affected Packages 22
CVEs 5

kernel-uek
[2.6.32-400.29.3uek]
- block: do not pass disk names as format strings (Jerry Snitselaar) [Orabug: 17230124] {CVE-2013-2851}
- af_key: initialize satype in key_notify_policy_flush() (Nicolas Dichtel) [Orabug: 17370765] {CVE-2013-2237}
- Bluetooth: L2CAP - Fix info leak via getsockname() (Mathias Krause) [Orabug: 17371054] {CVE-2012-6544}
- Bluetooth: HCI - Fix info leak in getsockopt(HCI_FILTER) (Mathias Krause) [Orabug: 17371072] {CVE-2012-6544}
- ipv6: ip6_sk_dst_check() must not assume ipv6 dst (Eric Dumazet) [Orabug: 17371079] {CVE-2013-2232}
- sctp: Use correct sideffect command in duplicate cookie handling (Vlad Yasevich) [Orabug: 17371121] {CVE-2013-2206}
- sctp: deal with multiple COOKIE_ECHO chunks (Max Matveev) [Orabug: 17372129] {CVE-2013-2206}

Package Affected Version
pkg:rpm/oraclelinux/ofa-2.6.32-400.29.3.el6uekdebug < 1.5.1-4.0.58
pkg:rpm/oraclelinux/ofa-2.6.32-400.29.3.el6uek < 1.5.1-4.0.58
pkg:rpm/oraclelinux/ofa-2.6.32-400.29.3.el5uekdebug < 1.5.1-4.0.58
pkg:rpm/oraclelinux/ofa-2.6.32-400.29.3.el5uek < 1.5.1-4.0.58
pkg:rpm/oraclelinux/mlnx_en-2.6.32-400.29.3.el6uekdebug < 1.5.7-0.1
pkg:rpm/oraclelinux/mlnx_en-2.6.32-400.29.3.el6uek < 1.5.7-0.1
pkg:rpm/oraclelinux/mlnx_en-2.6.32-400.29.3.el5uekdebug < 1.5.7-2
pkg:rpm/oraclelinux/mlnx_en-2.6.32-400.29.3.el5uek < 1.5.7-2
pkg:rpm/oraclelinux/kernel-uek?distro=oraclelinux-6 < 2.6.32-400.29.3.el6uek
pkg:rpm/oraclelinux/kernel-uek?distro=oraclelinux-5 < 2.6.32-400.29.3.el5uek
pkg:rpm/oraclelinux/kernel-uek-headers?distro=oraclelinux-6 < 2.6.32-400.29.3.el6uek
pkg:rpm/oraclelinux/kernel-uek-headers?distro=oraclelinux-5 < 2.6.32-400.29.3.el5uek
pkg:rpm/oraclelinux/kernel-uek-firmware?distro=oraclelinux-6 < 2.6.32-400.29.3.el6uek
pkg:rpm/oraclelinux/kernel-uek-firmware?distro=oraclelinux-5 < 2.6.32-400.29.3.el5uek
pkg:rpm/oraclelinux/kernel-uek-doc?distro=oraclelinux-6 < 2.6.32-400.29.3.el6uek
pkg:rpm/oraclelinux/kernel-uek-doc?distro=oraclelinux-5 < 2.6.32-400.29.3.el5uek
pkg:rpm/oraclelinux/kernel-uek-devel?distro=oraclelinux-6 < 2.6.32-400.29.3.el6uek
pkg:rpm/oraclelinux/kernel-uek-devel?distro=oraclelinux-5 < 2.6.32-400.29.3.el5uek
pkg:rpm/oraclelinux/kernel-uek-debug?distro=oraclelinux-6 < 2.6.32-400.29.3.el6uek
pkg:rpm/oraclelinux/kernel-uek-debug?distro=oraclelinux-5 < 2.6.32-400.29.3.el5uek
pkg:rpm/oraclelinux/kernel-uek-debug-devel?distro=oraclelinux-6 < 2.6.32-400.29.3.el6uek
pkg:rpm/oraclelinux/kernel-uek-debug-devel?distro=oraclelinux-5 < 2.6.32-400.29.3.el5uek
ID
ELSA-2013-2542
Severity
important
URL
https://linux.oracle.com/errata/ELSA-2013-2542.html
Published
2013-08-28T00:00:00
(11 years ago)
Modified
2013-08-28T00:00:00
(11 years ago)
Rights
Copyright 2013 Oracle, Inc.
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/oraclelinux/ofa-2.6.32-400.29.3.el6uekdebug oraclelinux ofa-2.6.32-400.29.3.el6uekdebug < 1.5.1-4.0.58
Affected pkg:rpm/oraclelinux/ofa-2.6.32-400.29.3.el6uek oraclelinux ofa-2.6.32-400.29.3.el6uek < 1.5.1-4.0.58
Affected pkg:rpm/oraclelinux/ofa-2.6.32-400.29.3.el5uekdebug oraclelinux ofa-2.6.32-400.29.3.el5uekdebug < 1.5.1-4.0.58
Affected pkg:rpm/oraclelinux/ofa-2.6.32-400.29.3.el5uek oraclelinux ofa-2.6.32-400.29.3.el5uek < 1.5.1-4.0.58
Affected pkg:rpm/oraclelinux/mlnx_en-2.6.32-400.29.3.el6uekdebug oraclelinux mlnx_en-2.6.32-400.29.3.el6uekdebug < 1.5.7-0.1
Affected pkg:rpm/oraclelinux/mlnx_en-2.6.32-400.29.3.el6uek oraclelinux mlnx_en-2.6.32-400.29.3.el6uek < 1.5.7-0.1
Affected pkg:rpm/oraclelinux/mlnx_en-2.6.32-400.29.3.el5uekdebug oraclelinux mlnx_en-2.6.32-400.29.3.el5uekdebug < 1.5.7-2
Affected pkg:rpm/oraclelinux/mlnx_en-2.6.32-400.29.3.el5uek oraclelinux mlnx_en-2.6.32-400.29.3.el5uek < 1.5.7-2
Affected pkg:rpm/oraclelinux/kernel-uek?distro=oraclelinux-6 oraclelinux kernel-uek < 2.6.32-400.29.3.el6uek oraclelinux-6
Affected pkg:rpm/oraclelinux/kernel-uek?distro=oraclelinux-5 oraclelinux kernel-uek < 2.6.32-400.29.3.el5uek oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-uek-headers?distro=oraclelinux-6 oraclelinux kernel-uek-headers < 2.6.32-400.29.3.el6uek oraclelinux-6
Affected pkg:rpm/oraclelinux/kernel-uek-headers?distro=oraclelinux-5 oraclelinux kernel-uek-headers < 2.6.32-400.29.3.el5uek oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-uek-firmware?distro=oraclelinux-6 oraclelinux kernel-uek-firmware < 2.6.32-400.29.3.el6uek oraclelinux-6
Affected pkg:rpm/oraclelinux/kernel-uek-firmware?distro=oraclelinux-5 oraclelinux kernel-uek-firmware < 2.6.32-400.29.3.el5uek oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-uek-doc?distro=oraclelinux-6 oraclelinux kernel-uek-doc < 2.6.32-400.29.3.el6uek oraclelinux-6
Affected pkg:rpm/oraclelinux/kernel-uek-doc?distro=oraclelinux-5 oraclelinux kernel-uek-doc < 2.6.32-400.29.3.el5uek oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-uek-devel?distro=oraclelinux-6 oraclelinux kernel-uek-devel < 2.6.32-400.29.3.el6uek oraclelinux-6
Affected pkg:rpm/oraclelinux/kernel-uek-devel?distro=oraclelinux-5 oraclelinux kernel-uek-devel < 2.6.32-400.29.3.el5uek oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-uek-debug?distro=oraclelinux-6 oraclelinux kernel-uek-debug < 2.6.32-400.29.3.el6uek oraclelinux-6
Affected pkg:rpm/oraclelinux/kernel-uek-debug?distro=oraclelinux-5 oraclelinux kernel-uek-debug < 2.6.32-400.29.3.el5uek oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-uek-debug-devel?distro=oraclelinux-6 oraclelinux kernel-uek-debug-devel < 2.6.32-400.29.3.el6uek oraclelinux-6
Affected pkg:rpm/oraclelinux/kernel-uek-debug-devel?distro=oraclelinux-5 oraclelinux kernel-uek-debug-devel < 2.6.32-400.29.3.el5uek oraclelinux-5
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...