[ELSA-2016-3567] Unbreakable Enterprise kernel security update

Severity Important
Affected Packages 20
CVEs 5

kernel-uek
[2.6.32-400.37.17]
- net: add validation for the socket syscall protocol argument (Hannes Frederic Sowa) [Orabug: 23267965] {CVE-2015-8543} {CVE-2015-8543}
- ext4: Fix null dereference in ext4_fill_super() (Ben Hutchings) [Orabug: 23263398] {CVE-2015-8324} {CVE-2015-8324}
- ipv6: addrconf: validate new MTU before applying it (Marcelo Leitner) [Orabug: 23263242] {CVE-2015-8215}
- ext4: avoid hang when mounting non-journal filesystems with orphan list (Theodore Ts'o) [Orabug: 23262201] {CVE-2015-7509}
- ext4: make orphan functions be no-op in no-journal mode (Anatol Pomozov) [Orabug: 23262201] {CVE-2015-7509}
- unix: properly account for FDs passed over unix sockets (willy tarreau) [Orabug: 23262258] {CVE-2013-4312} {CVE-2013-4312}

Package Affected Version
pkg:rpm/oraclelinux/ofa-2.6.32-400.37.17.el6uekdebug < 1.5.1-4.0.58
pkg:rpm/oraclelinux/ofa-2.6.32-400.37.17.el6uek < 1.5.1-4.0.58
pkg:rpm/oraclelinux/ofa-2.6.32-400.37.17.el5uekdebug < 1.5.1-4.0.58
pkg:rpm/oraclelinux/ofa-2.6.32-400.37.17.el5uek < 1.5.1-4.0.58
pkg:rpm/oraclelinux/mlnx_en-2.6.32-400.37.17.el6uekdebug < 1.5.7-0.1
pkg:rpm/oraclelinux/mlnx_en-2.6.32-400.37.17.el6uek < 1.5.7-0.1
pkg:rpm/oraclelinux/mlnx_en-2.6.32-400.37.17.el5uekdebug < 1.5.7-2
pkg:rpm/oraclelinux/mlnx_en-2.6.32-400.37.17.el5uek < 1.5.7-2
pkg:rpm/oraclelinux/kernel-uek?distro=oraclelinux-6 < 2.6.32-400.37.17.el6uek
pkg:rpm/oraclelinux/kernel-uek?distro=oraclelinux-5 < 2.6.32-400.37.17.el5uek
pkg:rpm/oraclelinux/kernel-uek-firmware?distro=oraclelinux-6 < 2.6.32-400.37.17.el6uek
pkg:rpm/oraclelinux/kernel-uek-firmware?distro=oraclelinux-5 < 2.6.32-400.37.17.el5uek
pkg:rpm/oraclelinux/kernel-uek-doc?distro=oraclelinux-6 < 2.6.32-400.37.17.el6uek
pkg:rpm/oraclelinux/kernel-uek-doc?distro=oraclelinux-5 < 2.6.32-400.37.17.el5uek
pkg:rpm/oraclelinux/kernel-uek-devel?distro=oraclelinux-6 < 2.6.32-400.37.17.el6uek
pkg:rpm/oraclelinux/kernel-uek-devel?distro=oraclelinux-5 < 2.6.32-400.37.17.el5uek
pkg:rpm/oraclelinux/kernel-uek-debug?distro=oraclelinux-6 < 2.6.32-400.37.17.el6uek
pkg:rpm/oraclelinux/kernel-uek-debug?distro=oraclelinux-5 < 2.6.32-400.37.17.el5uek
pkg:rpm/oraclelinux/kernel-uek-debug-devel?distro=oraclelinux-6 < 2.6.32-400.37.17.el6uek
pkg:rpm/oraclelinux/kernel-uek-debug-devel?distro=oraclelinux-5 < 2.6.32-400.37.17.el5uek
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/oraclelinux/ofa-2.6.32-400.37.17.el6uekdebug oraclelinux ofa-2.6.32-400.37.17.el6uekdebug < 1.5.1-4.0.58
Affected pkg:rpm/oraclelinux/ofa-2.6.32-400.37.17.el6uek oraclelinux ofa-2.6.32-400.37.17.el6uek < 1.5.1-4.0.58
Affected pkg:rpm/oraclelinux/ofa-2.6.32-400.37.17.el5uekdebug oraclelinux ofa-2.6.32-400.37.17.el5uekdebug < 1.5.1-4.0.58
Affected pkg:rpm/oraclelinux/ofa-2.6.32-400.37.17.el5uek oraclelinux ofa-2.6.32-400.37.17.el5uek < 1.5.1-4.0.58
Affected pkg:rpm/oraclelinux/mlnx_en-2.6.32-400.37.17.el6uekdebug oraclelinux mlnx_en-2.6.32-400.37.17.el6uekdebug < 1.5.7-0.1
Affected pkg:rpm/oraclelinux/mlnx_en-2.6.32-400.37.17.el6uek oraclelinux mlnx_en-2.6.32-400.37.17.el6uek < 1.5.7-0.1
Affected pkg:rpm/oraclelinux/mlnx_en-2.6.32-400.37.17.el5uekdebug oraclelinux mlnx_en-2.6.32-400.37.17.el5uekdebug < 1.5.7-2
Affected pkg:rpm/oraclelinux/mlnx_en-2.6.32-400.37.17.el5uek oraclelinux mlnx_en-2.6.32-400.37.17.el5uek < 1.5.7-2
Affected pkg:rpm/oraclelinux/kernel-uek?distro=oraclelinux-6 oraclelinux kernel-uek < 2.6.32-400.37.17.el6uek oraclelinux-6
Affected pkg:rpm/oraclelinux/kernel-uek?distro=oraclelinux-5 oraclelinux kernel-uek < 2.6.32-400.37.17.el5uek oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-uek-firmware?distro=oraclelinux-6 oraclelinux kernel-uek-firmware < 2.6.32-400.37.17.el6uek oraclelinux-6
Affected pkg:rpm/oraclelinux/kernel-uek-firmware?distro=oraclelinux-5 oraclelinux kernel-uek-firmware < 2.6.32-400.37.17.el5uek oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-uek-doc?distro=oraclelinux-6 oraclelinux kernel-uek-doc < 2.6.32-400.37.17.el6uek oraclelinux-6
Affected pkg:rpm/oraclelinux/kernel-uek-doc?distro=oraclelinux-5 oraclelinux kernel-uek-doc < 2.6.32-400.37.17.el5uek oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-uek-devel?distro=oraclelinux-6 oraclelinux kernel-uek-devel < 2.6.32-400.37.17.el6uek oraclelinux-6
Affected pkg:rpm/oraclelinux/kernel-uek-devel?distro=oraclelinux-5 oraclelinux kernel-uek-devel < 2.6.32-400.37.17.el5uek oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-uek-debug?distro=oraclelinux-6 oraclelinux kernel-uek-debug < 2.6.32-400.37.17.el6uek oraclelinux-6
Affected pkg:rpm/oraclelinux/kernel-uek-debug?distro=oraclelinux-5 oraclelinux kernel-uek-debug < 2.6.32-400.37.17.el5uek oraclelinux-5
Affected pkg:rpm/oraclelinux/kernel-uek-debug-devel?distro=oraclelinux-6 oraclelinux kernel-uek-debug-devel < 2.6.32-400.37.17.el6uek oraclelinux-6
Affected pkg:rpm/oraclelinux/kernel-uek-debug-devel?distro=oraclelinux-5 oraclelinux kernel-uek-debug-devel < 2.6.32-400.37.17.el5uek oraclelinux-5
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...