[ELSA-2016-3503] Unbreakable Enterprise kernel security update

Severity Important
Affected Packages 20
CVEs 5

kernel-uek
[2.6.32-400.37.15uek]
- ipc/sem.c: fully initialize sem_array before making it visible (Manfred Spraul) [Orabug: 22250043] {CVE-2015-7613}
- Initialize msg/shm IPC objects before doing ipc_addid() (Linus Torvalds) [Orabug: 22250043] {CVE-2015-7613}
- crypto: add missing crypto module aliases (Mathias Krause) [Orabug: 22249655] {CVE-2013-7421} {CVE-2014-9644}
- crypto: include crypto- module prefix in template (Kees Cook) [Orabug: 22249655] {CVE-2013-7421} {CVE-2014-9644}
- crypto: prefix module autoloading with 'crypto-' (Kees Cook) [Orabug: 22249655] {CVE-2013-7421} {CVE-2014-9644}

[2.6.32-400.37.14uek]
- KVM: add arg to ac_interception() missing from 'KVM: x86: work around infinite loop in microcode when #AC is delivered' (Chuck Anderson) [Orabug: 22336493] {CVE-2015-5307}

[2.6.32-400.37.13uek]
- KVM: svm: unconditionally intercept #DB (Paolo Bonzini) [Orabug: 22336518] {CVE-2015-8104} {CVE-2015-8104}
- KVM: x86: work around infinite loop in microcode when #AC is delivered (Eric Northup) [Orabug: 22336493] {CVE-2015-5307} {CVE-2015-5307}

Package Affected Version
pkg:rpm/oraclelinux/ofa-2.6.32-400.37.15.el6uekdebug < 1.5.1-4.0.58
pkg:rpm/oraclelinux/ofa-2.6.32-400.37.15.el6uek < 1.5.1-4.0.58
pkg:rpm/oraclelinux/ofa-2.6.32-400.37.15.el5uekdebug < 1.5.1-4.0.58
pkg:rpm/oraclelinux/ofa-2.6.32-400.37.15.el5uek < 1.5.1-4.0.58
pkg:rpm/oraclelinux/mlnx_en-2.6.32-400.37.15.el6uekdebug < 1.5.7-0.1
pkg:rpm/oraclelinux/mlnx_en-2.6.32-400.37.15.el6uek < 1.5.7-0.1
pkg:rpm/oraclelinux/mlnx_en-2.6.32-400.37.15.el5uekdebug < 1.5.7-2
pkg:rpm/oraclelinux/mlnx_en-2.6.32-400.37.15.el5uek < 1.5.7-2
pkg:rpm/oraclelinux/kernel-uek?distro=oraclelinux-6 < 2.6.32-400.37.15.el6uek
pkg:rpm/oraclelinux/kernel-uek?distro=oraclelinux-5 < 2.6.32-400.37.15.el5uek
pkg:rpm/oraclelinux/kernel-uek-firmware?distro=oraclelinux-6 < 2.6.32-400.37.15.el6uek
pkg:rpm/oraclelinux/kernel-uek-firmware?distro=oraclelinux-5 < 2.6.32-400.37.15.el5uek
pkg:rpm/oraclelinux/kernel-uek-doc?distro=oraclelinux-6 < 2.6.32-400.37.15.el6uek
pkg:rpm/oraclelinux/kernel-uek-doc?distro=oraclelinux-5 < 2.6.32-400.37.15.el5uek
pkg:rpm/oraclelinux/kernel-uek-devel?distro=oraclelinux-6 < 2.6.32-400.37.15.el6uek
pkg:rpm/oraclelinux/kernel-uek-devel?distro=oraclelinux-5 < 2.6.32-400.37.15.el5uek
pkg:rpm/oraclelinux/kernel-uek-debug?distro=oraclelinux-6 < 2.6.32-400.37.15.el6uek
pkg:rpm/oraclelinux/kernel-uek-debug?distro=oraclelinux-5 < 2.6.32-400.37.15.el5uek
pkg:rpm/oraclelinux/kernel-uek-debug-devel?distro=oraclelinux-6 < 2.6.32-400.37.15.el6uek
pkg:rpm/oraclelinux/kernel-uek-debug-devel?distro=oraclelinux-5 < 2.6.32-400.37.15.el5uek
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/oraclelinux/ofa-2.6.32-400.37.15.el6uekdebug oraclelinux ofa-2.6.32-400.37.15.el6uekdebug < 1.5.1-4.0.58
Affected pkg:rpm/oraclelinux/ofa-2.6.32-400.37.15.el6uek oraclelinux ofa-2.6.32-400.37.15.el6uek < 1.5.1-4.0.58
Affected pkg:rpm/oraclelinux/ofa-2.6.32-400.37.15.el5uekdebug oraclelinux ofa-2.6.32-400.37.15.el5uekdebug < 1.5.1-4.0.58
Affected pkg:rpm/oraclelinux/ofa-2.6.32-400.37.15.el5uek oraclelinux ofa-2.6.32-400.37.15.el5uek < 1.5.1-4.0.58
Affected pkg:rpm/oraclelinux/mlnx_en-2.6.32-400.37.15.el6uekdebug oraclelinux mlnx_en-2.6.32-400.37.15.el6uekdebug < 1.5.7-0.1
Affected pkg:rpm/oraclelinux/mlnx_en-2.6.32-400.37.15.el6uek oraclelinux mlnx_en-2.6.32-400.37.15.el6uek < 1.5.7-0.1
Affected pkg:rpm/oraclelinux/mlnx_en-2.6.32-400.37.15.el5uekdebug oraclelinux mlnx_en-2.6.32-400.37.15.el5uekdebug < 1.5.7-2
Affected pkg:rpm/oraclelinux/mlnx_en-2.6.32-400.37.15.el5uek oraclelinux mlnx_en-2.6.32-400.37.15.el5uek < 1.5.7-2
Affected pkg:rpm/oraclelinux/kernel-uek?distro=oraclelinux-6 oraclelinux kernel-uek < 2.6.32-400.37.15.el6uek oraclelinux-6
Affected pkg:rpm/oraclelinux/kernel-uek?distro=oraclelinux-5 oraclelinux kernel-uek < 2.6.32-400.37.15.el5uek oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-uek-firmware?distro=oraclelinux-6 oraclelinux kernel-uek-firmware < 2.6.32-400.37.15.el6uek oraclelinux-6
Affected pkg:rpm/oraclelinux/kernel-uek-firmware?distro=oraclelinux-5 oraclelinux kernel-uek-firmware < 2.6.32-400.37.15.el5uek oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-uek-doc?distro=oraclelinux-6 oraclelinux kernel-uek-doc < 2.6.32-400.37.15.el6uek oraclelinux-6
Affected pkg:rpm/oraclelinux/kernel-uek-doc?distro=oraclelinux-5 oraclelinux kernel-uek-doc < 2.6.32-400.37.15.el5uek oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-uek-devel?distro=oraclelinux-6 oraclelinux kernel-uek-devel < 2.6.32-400.37.15.el6uek oraclelinux-6
Affected pkg:rpm/oraclelinux/kernel-uek-devel?distro=oraclelinux-5 oraclelinux kernel-uek-devel < 2.6.32-400.37.15.el5uek oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-uek-debug?distro=oraclelinux-6 oraclelinux kernel-uek-debug < 2.6.32-400.37.15.el6uek oraclelinux-6
Affected pkg:rpm/oraclelinux/kernel-uek-debug?distro=oraclelinux-5 oraclelinux kernel-uek-debug < 2.6.32-400.37.15.el5uek oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-uek-debug-devel?distro=oraclelinux-6 oraclelinux kernel-uek-debug-devel < 2.6.32-400.37.15.el6uek oraclelinux-6
Affected pkg:rpm/oraclelinux/kernel-uek-debug-devel?distro=oraclelinux-5 oraclelinux kernel-uek-debug-devel < 2.6.32-400.37.15.el5uek oraclelinux-5
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...