[Oraclevm-errata] OVMSA-2015-0150 Important: Oracle VM 3.3 kernel-uek security update

Errata Announcements for Oracle VM oraclevm-errata at oss.oracle.com
Tue Dec 1 08:51:48 PST 2015


Oracle VM Security Advisory OVMSA-2015-0150

The following updated rpms for Oracle VM 3.3 have been uploaded to the 
Unbreakable Linux Network:

x86_64:
kernel-uek-3.8.13-118.2.1.el6uek.x86_64.rpm
kernel-uek-firmware-3.8.13-118.2.1.el6uek.noarch.rpm


SRPMS:
http://oss.oracle.com/oraclevm/server/3.3/SRPMS-updates/kernel-uek-3.8.13-118.2.1.el6uek.src.rpm



Description of changes:

[3.8.13-118.2.1.el6uek]
- ipc/sem.c: fully initialize sem_array before making it visible 
(Manfred Spraul)  [Orabug: 22277382]  {CVE-2015-7613}
- ipc: fix msg newqueue add (Guru Anbalagane)  [Orabug: 22277382] 
{CVE-2015-7613}

[3.8.13-118.1.1.el6uek]
- sctp: fix race on protocol/netns initialization (Marcelo Ricardo 
Leitner)  [Orabug: 22249981]  {CVE-2015-5283}
- Initialize msg/shm IPC objects before doing ipc_addid() (Linus 
Torvalds)  [Orabug: 22250045]  {CVE-2015-7613}
- ixgbe: reset copper phy power mode (Ethan Zhao)  [Orabug: 22271769]




More information about the Oraclevm-errata mailing list