[ELSA-2021-0003] kernel security and bug fix update

Severity Important
Affected Packages 20
CVEs 1

[4.18.0-240.10.1_3.OL8]
- Oracle Linux certificates (Kevin Lyons)
- Disable signing for aarch64 (Ilya Okomin)
- Oracle Linux RHCK Module Signing Key was added to the kernel trusted keys list (olkmod_signing_key.pem) [Orabug: 29539237]
- Update x509.genkey [Orabug: 24817676]
- Conflict with shim-ia32 and shim-x64 <= 15-2.0.3.el7

[4.18.0-240.10.1_3]
- [net] SUNRPC: Signalled ASYNC tasks need to exit (Scott Mayhew) [1907667 1872310]

[4.18.0-240.9.1_3]
- [net] tunnels: Fix off-by-one in lower MTU bounds for ICMP/ICMPv6 replies (Antoine Tenart) [1902082 1895765]
- [net] net-sysfs: add backlog len and CPU id to softnet data (Paolo Abeni) [1883314 1866909]
- [net] try to avoid unneeded backlog flush (Paolo Abeni) [1883314 1866909]
- [net] skbuff: fix a data race in skb_queue_len() (Paolo Abeni) [1883314 1866909]
- [powerpc] mm/mmu_gather: invalidate TLB correctly on batch allocation failure and flush (Diego Domingos) [1899208 1805031]
- [powerpc] powerpc/mmu_gather: enable RCU_TABLE_FREE even for !SMP case (Diego Domingos) [1899208 1805031]
- [net] netfilter: ctnetlink: add a range check for l3/l4 protonum (Florian Westphal) [1892665 1892666] {CVE-2020-25211}
- [char] random: decouple random and urandom extrng fops (Vladis Dronov) [1899584 1890711]
- [char] random: Add a poll handler to extrng_fops (Vladis Dronov) [1886192 1884857]

Package Affected Version
pkg:rpm/oraclelinux/python3-perf?distro=oraclelinux-8.3 < 4.18.0-240.10.1.el8_3
pkg:rpm/oraclelinux/perf?distro=oraclelinux-8.3 < 4.18.0-240.10.1.el8_3
pkg:rpm/oraclelinux/kernel?distro=oraclelinux-8.3 < 4.18.0-240.10.1.el8_3
pkg:rpm/oraclelinux/kernel-tools?distro=oraclelinux-8.3 < 4.18.0-240.10.1.el8_3
pkg:rpm/oraclelinux/kernel-tools-libs?distro=oraclelinux-8.3 < 4.18.0-240.10.1.el8_3
pkg:rpm/oraclelinux/kernel-tools-libs-devel?distro=oraclelinux-8.3 < 4.18.0-240.10.1.el8_3
pkg:rpm/oraclelinux/kernel-modules?distro=oraclelinux-8.3 < 4.18.0-240.10.1.el8_3
pkg:rpm/oraclelinux/kernel-modules-extra?distro=oraclelinux-8.3 < 4.18.0-240.10.1.el8_3
pkg:rpm/oraclelinux/kernel-headers?distro=oraclelinux-8.3 < 4.18.0-240.10.1.el8_3
pkg:rpm/oraclelinux/kernel-doc?distro=oraclelinux-8.3 < 4.18.0-240.10.1.el8_3
pkg:rpm/oraclelinux/kernel-devel?distro=oraclelinux-8.3 < 4.18.0-240.10.1.el8_3
pkg:rpm/oraclelinux/kernel-debug?distro=oraclelinux-8.3 < 4.18.0-240.10.1.el8_3
pkg:rpm/oraclelinux/kernel-debug-modules?distro=oraclelinux-8.3 < 4.18.0-240.10.1.el8_3
pkg:rpm/oraclelinux/kernel-debug-modules-extra?distro=oraclelinux-8.3 < 4.18.0-240.10.1.el8_3
pkg:rpm/oraclelinux/kernel-debug-devel?distro=oraclelinux-8.3 < 4.18.0-240.10.1.el8_3
pkg:rpm/oraclelinux/kernel-debug-core?distro=oraclelinux-8.3 < 4.18.0-240.10.1.el8_3
pkg:rpm/oraclelinux/kernel-cross-headers?distro=oraclelinux-8.3 < 4.18.0-240.10.1.el8_3
pkg:rpm/oraclelinux/kernel-core?distro=oraclelinux-8.3 < 4.18.0-240.10.1.el8_3
pkg:rpm/oraclelinux/kernel-abi-whitelists?distro=oraclelinux-8.3 < 4.18.0-240.10.1.el8_3
pkg:rpm/oraclelinux/bpftool?distro=oraclelinux-8.3 < 4.18.0-240.10.1.el8_3
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/oraclelinux/python3-perf?distro=oraclelinux-8.3 oraclelinux python3-perf < 4.18.0-240.10.1.el8_3 oraclelinux-8.3
Affected pkg:rpm/oraclelinux/perf?distro=oraclelinux-8.3 oraclelinux perf < 4.18.0-240.10.1.el8_3 oraclelinux-8.3
Affected pkg:rpm/oraclelinux/kernel?distro=oraclelinux-8.3 oraclelinux kernel < 4.18.0-240.10.1.el8_3 oraclelinux-8.3
Affected pkg:rpm/oraclelinux/kernel-tools?distro=oraclelinux-8.3 oraclelinux kernel-tools < 4.18.0-240.10.1.el8_3 oraclelinux-8.3
Affected pkg:rpm/oraclelinux/kernel-tools-libs?distro=oraclelinux-8.3 oraclelinux kernel-tools-libs < 4.18.0-240.10.1.el8_3 oraclelinux-8.3
Affected pkg:rpm/oraclelinux/kernel-tools-libs-devel?distro=oraclelinux-8.3 oraclelinux kernel-tools-libs-devel < 4.18.0-240.10.1.el8_3 oraclelinux-8.3
Affected pkg:rpm/oraclelinux/kernel-modules?distro=oraclelinux-8.3 oraclelinux kernel-modules < 4.18.0-240.10.1.el8_3 oraclelinux-8.3
Affected pkg:rpm/oraclelinux/kernel-modules-extra?distro=oraclelinux-8.3 oraclelinux kernel-modules-extra < 4.18.0-240.10.1.el8_3 oraclelinux-8.3
Affected pkg:rpm/oraclelinux/kernel-headers?distro=oraclelinux-8.3 oraclelinux kernel-headers < 4.18.0-240.10.1.el8_3 oraclelinux-8.3
Affected pkg:rpm/oraclelinux/kernel-doc?distro=oraclelinux-8.3 oraclelinux kernel-doc < 4.18.0-240.10.1.el8_3 oraclelinux-8.3
Affected pkg:rpm/oraclelinux/kernel-devel?distro=oraclelinux-8.3 oraclelinux kernel-devel < 4.18.0-240.10.1.el8_3 oraclelinux-8.3
Affected pkg:rpm/oraclelinux/kernel-debug?distro=oraclelinux-8.3 oraclelinux kernel-debug < 4.18.0-240.10.1.el8_3 oraclelinux-8.3
Affected pkg:rpm/oraclelinux/kernel-debug-modules?distro=oraclelinux-8.3 oraclelinux kernel-debug-modules < 4.18.0-240.10.1.el8_3 oraclelinux-8.3
Affected pkg:rpm/oraclelinux/kernel-debug-modules-extra?distro=oraclelinux-8.3 oraclelinux kernel-debug-modules-extra < 4.18.0-240.10.1.el8_3 oraclelinux-8.3
Affected pkg:rpm/oraclelinux/kernel-debug-devel?distro=oraclelinux-8.3 oraclelinux kernel-debug-devel < 4.18.0-240.10.1.el8_3 oraclelinux-8.3
Affected pkg:rpm/oraclelinux/kernel-debug-core?distro=oraclelinux-8.3 oraclelinux kernel-debug-core < 4.18.0-240.10.1.el8_3 oraclelinux-8.3
Affected pkg:rpm/oraclelinux/kernel-cross-headers?distro=oraclelinux-8.3 oraclelinux kernel-cross-headers < 4.18.0-240.10.1.el8_3 oraclelinux-8.3
Affected pkg:rpm/oraclelinux/kernel-core?distro=oraclelinux-8.3 oraclelinux kernel-core < 4.18.0-240.10.1.el8_3 oraclelinux-8.3
Affected pkg:rpm/oraclelinux/kernel-abi-whitelists?distro=oraclelinux-8.3 oraclelinux kernel-abi-whitelists < 4.18.0-240.10.1.el8_3 oraclelinux-8.3
Affected pkg:rpm/oraclelinux/bpftool?distro=oraclelinux-8.3 oraclelinux bpftool < 4.18.0-240.10.1.el8_3 oraclelinux-8.3
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...