Release Info

Advisory: CLSA-2024:1725187614

OS: Oracle Linux 6 ELS

Public date: 2024-09-01 06:46:56

Project: kernel

Version: 2.6.32-754.35.8.el6.tuxcare.els16

Errata link: https://errata.tuxcare.com/els_os/oraclelinux6els/CLSA-2024-1725187614.html

Changelog

- drm/vmwgfx: Fix invalid reads in fence signaled events {CVE-2024-36960} - af_unix: Fix garbage collector racing against connect() {CVE-2024-26923} - ipv6: remove max_size check inline with ipv4 {CVE-2023-52340} - aoe: fix the potential use-after-free problem in aoecmd_cfg_pkts {CVE-2023-6270} - smb: client: fix use-after-free bug in cifs_debug_data_proc_show() {CVE-2023-52752} - hdlc_ppp: add range checks in ppp_cp_parse_cr() {CVE-2020-25643} - perf/core: Fix race in the perf_mmap_close() function {CVE-2020-14351} - media: xirlink_cit: add missing descriptor sanity checks {CVE-2020-11668} - vt: selection, close sel_buffer race {CVE-2020-8648} - net: sched: sch_qfq: Fix UAF in qfq_dequeue() {CVE-2023-4921} - media: pvrusb2: fix use after free on context disconnection {CVE-2023-52445}

Update

Update command: yum update kernel*

Packages list

kernel-2.6.32-754.35.8.el6.tuxcare.els16.x86_64.rpm kernel-abi-whitelists-2.6.32-754.35.8.el6.tuxcare.els16.noarch.rpm kernel-debug-2.6.32-754.35.8.el6.tuxcare.els16.x86_64.rpm kernel-debug-devel-2.6.32-754.35.8.el6.tuxcare.els16.i686.rpm kernel-debug-devel-2.6.32-754.35.8.el6.tuxcare.els16.x86_64.rpm kernel-devel-2.6.32-754.35.8.el6.tuxcare.els16.x86_64.rpm kernel-doc-2.6.32-754.35.8.el6.tuxcare.els16.noarch.rpm kernel-firmware-2.6.32-754.35.8.el6.tuxcare.els16.noarch.rpm kernel-headers-2.6.32-754.35.8.el6.tuxcare.els16.x86_64.rpm perf-2.6.32-754.35.8.el6.tuxcare.els16.x86_64.rpm python-perf-2.6.32-754.35.8.el6.tuxcare.els16.x86_64.rpm

CVEs

CVE-2023-52752
CVE-2023-52340
CVE-2023-4921
CVE-2020-14351
CVE-2023-6270
CVE-2020-11668
CVE-2020-8648
CVE-2020-25643
CVE-2024-26923
CVE-2023-52445
CVE-2024-36960