|
|
Subscribe / Log in / New account

Oracle alert ELSA-2016-3645 (kernel 3.8.13)

From:  Errata Announcements for Oracle Linux <el-errata@oss.oracle.com>
To:  el-errata@oss.oracle.com
Subject:  [El-errata] ELSA-2016-3645 Important: Oracle Linux 6 Unbreakable Enterprise kernel security update
Date:  Mon, 21 Nov 2016 08:52:03 -0800
Message-ID:  <58332633.2040908@oracle.com>

Oracle Linux Security Advisory ELSA-2016-3645 http://linux.oracle.com/errata/ELSA-2016-3645.html The following updated rpms for Oracle Linux 6 have been uploaded to the Unbreakable Linux Network: x86_64: kernel-uek-firmware-3.8.13-118.14.2.el6uek.noarch.rpm kernel-uek-doc-3.8.13-118.14.2.el6uek.noarch.rpm kernel-uek-3.8.13-118.14.2.el6uek.x86_64.rpm kernel-uek-devel-3.8.13-118.14.2.el6uek.x86_64.rpm kernel-uek-debug-devel-3.8.13-118.14.2.el6uek.x86_64.rpm kernel-uek-debug-3.8.13-118.14.2.el6uek.x86_64.rpm dtrace-modules-3.8.13-118.14.2.el6uek-0.4.5-3.el6.x86_64.rpm SRPMS: http://oss.oracle.com/ol6/SRPMS-updates/kernel-uek-3.8.13... http://oss.oracle.com/ol6/SRPMS-updates/dtrace-modules-3.... Description of changes: kernel-uek [3.8.13-118.14.2.el6uek] - aacraid: Check size values after double-fetch from user (Dave Carroll) [Orabug: 25060050] {CVE-2016-6480} {CVE-2016-6480} - IB/srpt: Simplify srpt_handle_tsk_mgmt() (Bart Van Assche) [Orabug: 25060011] {CVE-2016-6327} - audit: fix a double fetch in audit_log_single_execve_arg() (Paul Moore) [Orabug: 25059945] {CVE-2016-6136} - ALSA: timer: Fix leak in events via snd_timer_user_tinterrupt (Kangjie Lu) [Orabug: 25059899] {CVE-2016-4578} - ALSA: timer: Fix leak in events via snd_timer_user_ccallback (Kangjie Lu) [Orabug: 25059899] {CVE-2016-4578} - ALSA: timer: Fix leak in SNDRV_TIMER_IOCTL_PARAMS (Kangjie Lu) [Orabug: 25059753] {CVE-2016-4569} - acpi: Disable ACPI table override if securelevel is set (Linn Crosetto) [Orabug: 25058991] {CVE-2016-3699} - Bluetooth: Fix potential NULL dereference in RFCOMM bind callback (Jaganath Kanakkassery) [Orabug: 25058903] {CVE-2015-8956} - ASN.1: Fix non-match detection failure on data overrun (David Howells) [Orabug: 25059046] {CVE-2016-2053} - mm: migrate dirty page without clear_page_dirty_for_io etc (Hugh Dickins) [Orabug: 25059194] {CVE-2016-3070} _______________________________________________ El-errata mailing list El-errata@oss.oracle.com https://oss.oracle.com/mailman/listinfo/el-errata


to post comments


Copyright © 2025, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds