[Oraclevm-errata] OVMSA-2021-0008 Important: Oracle VM 3.4 Unbreakable Enterprise kernel security update

Errata Announcements for Oracle VM oraclevm-errata at oss.oracle.com
Thu Mar 18 12:51:07 PDT 2021


Oracle VM Security Advisory OVMSA-2021-0008

The following updated rpms for Oracle VM 3.4 have been uploaded to the Unbreakable Linux Network:

x86_64:
kernel-uek-4.1.12-124.48.6.el6uek.x86_64.rpm
kernel-uek-firmware-4.1.12-124.48.6.el6uek.noarch.rpm


SRPMS:
http://oss.oracle.com/oraclevm/server/3.4/SRPMS-updates/kernel-uek-4.1.12-124.48.6.el6uek.src.rpm


Description of changes:

[4.1.12-124.48.6.el6uek]
- scsi: iscsi: Verify lengths on passthrough PDUs (Chris Leech)  [Orabug: 32603382] 
- scsi: iscsi: Ensure sysfs attributes are limited to PAGE_SIZE (Chris Leech)  [Orabug: 32603382]  {CVE-2021-27363} {CVE-2021-27364} {CVE-2021-27365}
- scsi: iscsi: Report connection state in sysfs (Gabriel Krisman Bertazi)  [Orabug: 32603382]  {CVE-2021-27363} {CVE-2021-27364} {CVE-2021-27365}
- sysfs: Add sysfs_emit and sysfs_emit_at to format sysfs output (Joe Perches)  [Orabug: 32603382] 
- scsi: iscsi: Restrict sessions and handles to admin capabilities (Lee Duncan)  [Orabug: 32603382]  {CVE-2021-27363} {CVE-2021-27364} {CVE-2021-27365}




More information about the Oraclevm-errata mailing list