[ELSA-2021-9035] Unbreakable Enterprise kernel security update

Severity Important
Affected Packages 11
CVEs 3

[4.14.35-2025.405.3]
- Revert 'rds: Deregister all FRWR mr with free_mr' (aru kolappan) [Orabug: 32426280]

[4.14.35-2025.405.2]
- nfs: Fix security label length not being reset (Jeffrey Mitchell) [Orabug: 32350995]

[4.14.35-2025.405.1]
- net/rds: Fix gfp_t parameter (Hans Westgaard Ry) [Orabug: 32372162]
- uek-rpm: update kABI lists for new symbol (Dan Duval) [Orabug: 32378208]
- sysctl: handle overflow in proc_get_long (Christian Brauner) [Orabug: 32382641]
- net/mlx5: Use a single MSIX vector for all control EQs in VFs (Ariel Levkovich) [Orabug: 31785275]
- net/mlx5: Fix available EQs FW used to reserve (Denis Drozdov) [Orabug: 31785275]
- net/mlx5: Use max_num_eqs for calculation of required MSIX vectors (Denis Drozdov) [Orabug: 31785275]
- net/mlx5: Expose DEVX specification (Yishai Hadas) [Orabug: 31785275]
- x86/process: Mark cpu inactive before offlining (Mridula Shastry) [Orabug: 32245085]
- target: fix XCOPY NAA identifier lookup (David Disseldorp) [Orabug: 32248040] {CVE-2020-28374}

[4.14.35-2025.405.0]
- KVM: x86: clflushopt should be treated as a no-op by emulation (David Edmondson) [Orabug: 32251913]
- tty: Fix ->session locking (Jann Horn) [Orabug: 32266681] {CVE-2020-29660}
- tty: Fix ->pgrp locking in tiocspgrp() (Jann Horn) [Orabug: 32266681] {CVE-2020-29660}
- lockd: don't use interval-based rebinding over TCP (Calum Mackay) [Orabug: 32337718]
- mwifiex: Fix possible buffer overflows in mwifiex_cmd_802_11_ad_hoc_start (Zhang Xiaohui) [Orabug: 32349207] {CVE-2020-36158}
- add license checking to kABI checker (Dan Duval) [Orabug: 32355210]

ID
ELSA-2021-9035
Severity
important
URL
https://linux.oracle.com/errata/ELSA-2021-9035.html
Published
2021-02-08T00:00:00
(3 years ago)
Modified
2021-02-08T00:00:00
(3 years ago)
Rights
Copyright 2021 Oracle, Inc.
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/oraclelinux/python-perf?distro=oraclelinux-7 oraclelinux python-perf < 4.14.35-2025.405.3.el7uek oraclelinux-7
Affected pkg:rpm/oraclelinux/perf?distro=oraclelinux-7 oraclelinux perf < 4.14.35-2025.405.3.el7uek oraclelinux-7
Affected pkg:rpm/oraclelinux/kernel-uek?distro=oraclelinux-7 oraclelinux kernel-uek < 4.14.35-2025.405.3.el7uek oraclelinux-7
Affected pkg:rpm/oraclelinux/kernel-uek-tools?distro=oraclelinux-7 oraclelinux kernel-uek-tools < 4.14.35-2025.405.3.el7uek oraclelinux-7
Affected pkg:rpm/oraclelinux/kernel-uek-tools-libs?distro=oraclelinux-7 oraclelinux kernel-uek-tools-libs < 4.14.35-2025.405.3.el7uek oraclelinux-7
Affected pkg:rpm/oraclelinux/kernel-uek-tools-libs-devel?distro=oraclelinux-7 oraclelinux kernel-uek-tools-libs-devel < 4.14.35-2025.405.3.el7uek oraclelinux-7
Affected pkg:rpm/oraclelinux/kernel-uek-headers?distro=oraclelinux-7 oraclelinux kernel-uek-headers < 4.14.35-2025.405.3.el7uek oraclelinux-7
Affected pkg:rpm/oraclelinux/kernel-uek-doc?distro=oraclelinux-7 oraclelinux kernel-uek-doc < 4.14.35-2025.405.3.el7uek oraclelinux-7
Affected pkg:rpm/oraclelinux/kernel-uek-devel?distro=oraclelinux-7 oraclelinux kernel-uek-devel < 4.14.35-2025.405.3.el7uek oraclelinux-7
Affected pkg:rpm/oraclelinux/kernel-uek-debug?distro=oraclelinux-7 oraclelinux kernel-uek-debug < 4.14.35-2025.405.3.el7uek oraclelinux-7
Affected pkg:rpm/oraclelinux/kernel-uek-debug-devel?distro=oraclelinux-7 oraclelinux kernel-uek-debug-devel < 4.14.35-2025.405.3.el7uek oraclelinux-7
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...