[Oraclevm-errata] OVMSA-2020-0012 Important: Oracle VM 3.3 ipmitool security update

Errata Announcements for Oracle VM oraclevm-errata at oss.oracle.com
Tue Apr 14 16:45:57 PDT 2020


Oracle VM Security Advisory OVMSA-2020-0012

The following updated rpms for Oracle VM 3.3 have been uploaded to the 
Unbreakable Linux Network:

x86_64:
ipmitool-1.8.15-3.el6_10.x86_64.rpm


SRPMS:
http://oss.oracle.com/oraclevm/server/3.3/SRPMS-updates/ipmitool-1.8.15-3.el6_10.src.rpm



Description of changes:

[1.8.15-3]
- Backport fix for CVE-2020-5208

[1.8.15-2]
- Fix missing return in ipmi_kontronoem_main() - CID#1261317

[1.8.15-1]
- rebase to latest stable upstream version
- resolves: rhbz#1253416

[1.8.11-29]
- remove the redundant OpenIMPI dependency
- resolves: rhbz#1262111

[1.8.11-28]
- (#1085072) Correct init paths.

[1.8.11-25]
- (#878614) SDR long sensor names.

[1.8.11-23]
- (#1194420) Fix DDR4 SDR crash.
- (#1170266) Wrong version reported.
- (#1162175) Extra dependency.
- (#1126333) Very slow response from SDR owner type SW ID
- (#903019) SDR lists x4600m2 fan units as unspecified

[1.8.11-21]
- (#1028163) Fix environment variable parsing.

[1.8.11-20]
- (#1056581) IPv6 connectivity support.
- (#1029529) Fix dependency for kernel module loading.

[1.8.11-16]
- (#923192) ipmi command retry no longer shifts replies

[1.8.11-15]
- (#903251) - link=on and ipmi=on no longer work for setaccess

[1.8.11-13.1]
- fixed retransmissions of lanplus requests, broken in previous release
(#826027)

[1.8.11-13]
- added new options to configure retransmissions on lan/lanplus interfaces
(#748073)
- updated dellem command (#739358)
- fixed exit code of ipmitool -o list (#715615)
- improved checking of command line arguments (#725993)

[1.8.11-12]
- fixed wrong permissions on ipmievd.pid (#756685)

[1.8.11-11]
- fixed delloem powermonitor on bigendian systems (#731718)
- fixed memory leak in Serial-over-Lan module (#731977)

[1.8.11-10]
- added -Y option for ipmitool to hide Kg key from cmdline (#698647)
- added 'channel setkg' command to set Kg encryption key on remote machine
(#726390)

[1.8.11-10]
- updated 'delloem setled' command to indicate SES status and drive
activities for a PCI-e SSD (#727314)

[1.8.11-9]
- rebuilt for RHEL 6.2 Fastrack

[1.8.11-8]
- fixed 'ipmi sol' sending wrong packets due to miscalculation of SOL
payload size (#675975)

[1.8.11-7]
- added 'delloem' command for Dell-specific IPMI extensions (#631649, 
#63793)

[1.8.11-6]
- Changed ipmievd to use /var/run/ipmievd.pid file by default (#596809)

[1.8.11-5]
- Fixed exit code of ipmievd initscript with wrong arguments (#562186)

[1.8.11-4.1]
- Rebuilt for RHEL 6

[1.8.11-4]
- fix ipmievd initscript 'condrestart' action (#532188)

[1.8.11-3]
- rebuilt with new openssl

[1.8.11-2]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild

[1.8.11-1]
- updated to new version

[1.8.10-4]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild

[1.8.10-3]
- rebuild with new openssl

[1.8.10-2]
- fix issues found during package review:
- clear Default-Start: line in the init script, the service should be
disabled by default
- added Obsoletes: OpenIPMI-tools
- compile with --disable-dependency-tracking to speed things up
- compile with --enable-file-security
- compile with --disable-intf-free, don't depend on FreeIPMI libraries
(FreeIPMI has its own ipmitool-like utility)

[1.8.10-1]
- package created, based on upstream .spec file





More information about the Oraclevm-errata mailing list