[ELSA-2014-0740] kernel security and bug fix update

Severity Important
Affected Packages 18
CVEs 3

kernel
[2.6.18-371.9.1]
- [nfs] sunrpc: don't use a credential with extra groups (Mateusz Guzik) [1095062 976201]
- [scsi] lpfc: Remove NDLP reference put in lpfc_cmpl_els_logo_acc (Rob Evers) [1096061 1075228]
- [infiniband] rds: dereference of a NULL device (Jacob Tanenbaum) [1079216 1079217] {CVE-2013-7339}
- [kernel] futex: check relative timeouts for overflow (Denys Vlasenko) [1091832 1084168]
- [virt] kvm: correctly detect KVM when hv emulation is enalbed (Jason Wang) [1094152 985767]
- [security] Fix spurious warnings in security_ops_task_setrlimit (Mateusz Guzik) [1092869 916235]
- [block] floppy: don't write kernel-only members to FDRAWCMD output (Denys Vlasenko) [1094302 1094303] {CVE-2014-1738 CVE-2014-1737}
- [block] floppy: ignore kernel-only members in FDRAWCMD input (Denys Vlasenko) [1094302 1094303] {CVE-2014-1738 CVE-2014-1737}

Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/oraclelinux/oracleasm-2.6.18-371.9.1.el5xen?distro=oraclelinux-5 oraclelinux oracleasm-2.6.18-371.9.1.el5xen < 2.0.5-1.el5 oraclelinux-5
Affected pkg:rpm/oraclelinux/oracleasm-2.6.18-371.9.1.el5PAE?distro=oraclelinux-5 oraclelinux oracleasm-2.6.18-371.9.1.el5PAE < 2.0.5-1.el5 oraclelinux-5
Affected pkg:rpm/oraclelinux/oracleasm-2.6.18-371.9.1.el5debug?distro=oraclelinux-5 oraclelinux oracleasm-2.6.18-371.9.1.el5debug < 2.0.5-1.el5 oraclelinux-5
Affected pkg:rpm/oraclelinux/oracleasm-2.6.18-371.9.1.el5?distro=oraclelinux-5 oraclelinux oracleasm-2.6.18-371.9.1.el5 < 2.0.5-1.el5 oraclelinux-5
Affected pkg:rpm/oraclelinux/ocfs2-2.6.18-371.9.1.el5xen?distro=oraclelinux-5 oraclelinux ocfs2-2.6.18-371.9.1.el5xen < 1.4.10-1.el5 oraclelinux-5
Affected pkg:rpm/oraclelinux/ocfs2-2.6.18-371.9.1.el5PAE?distro=oraclelinux-5 oraclelinux ocfs2-2.6.18-371.9.1.el5PAE < 1.4.10-1.el5 oraclelinux-5
Affected pkg:rpm/oraclelinux/ocfs2-2.6.18-371.9.1.el5debug?distro=oraclelinux-5 oraclelinux ocfs2-2.6.18-371.9.1.el5debug < 1.4.10-1.el5 oraclelinux-5
Affected pkg:rpm/oraclelinux/ocfs2-2.6.18-371.9.1.el5?distro=oraclelinux-5 oraclelinux ocfs2-2.6.18-371.9.1.el5 < 1.4.10-1.el5 oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel?distro=oraclelinux-5 oraclelinux kernel < 2.6.18-371.9.1.el5 oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-xen?distro=oraclelinux-5 oraclelinux kernel-xen < 2.6.18-371.9.1.el5 oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-xen-devel?distro=oraclelinux-5 oraclelinux kernel-xen-devel < 2.6.18-371.9.1.el5 oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-PAE?distro=oraclelinux-5 oraclelinux kernel-PAE < 2.6.18-371.9.1.el5 oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-PAE-devel?distro=oraclelinux-5 oraclelinux kernel-PAE-devel < 2.6.18-371.9.1.el5 oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-headers?distro=oraclelinux-5 oraclelinux kernel-headers < 2.6.18-371.9.1.el5 oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-doc?distro=oraclelinux-5 oraclelinux kernel-doc < 2.6.18-371.9.1.el5 oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-devel?distro=oraclelinux-5 oraclelinux kernel-devel < 2.6.18-371.9.1.el5 oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-debug?distro=oraclelinux-5 oraclelinux kernel-debug < 2.6.18-371.9.1.el5 oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-debug-devel?distro=oraclelinux-5 oraclelinux kernel-debug-devel < 2.6.18-371.9.1.el5 oraclelinux-5
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...