[Oraclevm-errata] OVMSA-2016-0133 Important: Oracle VM 3.3 Unbreakable Enterprise kernel security update

Errata Announcements for Oracle VM oraclevm-errata at oss.oracle.com
Thu Sep 22 12:55:06 PDT 2016


Oracle VM Security Advisory OVMSA-2016-0133

The following updated rpms for Oracle VM 3.3 have been uploaded to the 
Unbreakable Linux Network:

x86_64:
kernel-uek-3.8.13-118.11.2.el6uek.x86_64.rpm
kernel-uek-firmware-3.8.13-118.11.2.el6uek.noarch.rpm


SRPMS:
http://oss.oracle.com/oraclevm/server/3.3/SRPMS-updates/kernel-uek-3.8.13-118.11.2.el6uek.src.rpm



Description of changes:

[3.8.13-118.11.2.el6uek]
- Btrfs: fix truncation of compressed and inlined extents (Ashish 
Samant)  [Orabug: 22307285]  {CVE-2015-8374}
- Btrfs: fix file corruption and data loss after cloning inline extents 
(Divya Indi)  [Orabug: 22307285]  {CVE-2015-8374}
- netfilter: x_tables: make sure e->next_offset covers remaining blob 
size (Florian Westphal)  [Orabug: 24682074]  {CVE-2016-4997} {CVE-2016-4998}
- netfilter: x_tables: validate e->target_offset early (Florian 
Westphal)  [Orabug: 24682074]  {CVE-2016-4997} {CVE-2016-4998}

[3.8.13-118.11.1.el6uek]
- rds: schedule local connection activity in proper workqueue (Ajaykumar 
Hotchandani)  [Orabug: 24624195]
- ib_core: make wait_event uninterruptible in ib_flush_fmr_pool() 
(Avinash Repaka)  [Orabug: 24655952]
- net/mlx4: Support shutdown() interface (Gavin Shan)  [Orabug: 24624181]



More information about the Oraclevm-errata mailing list