--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2024-71f0f16533
2024-02-28 01:40:29.293829
--------------------------------------------------------------------------------

Name        : kernel
Product     : Fedora 38
Version     : 6.7.6
Release     : 100.fc38
URL         : https://www.kernel.org/
Summary     : The Linux kernel
Description :
The kernel meta package

--------------------------------------------------------------------------------
Update Information:

The 6.7.6 stable kernel update contains a number of important fixes across the
tree.
--------------------------------------------------------------------------------
ChangeLog:

* Fri Feb 23 2024 Justin M. Forbes  [6.7.6-0]
- Add CVE fix for 6.7.6 (Justin M. Forbes)
- Linux v6.7.6
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #2265269 - CVE-2023-52437 kernel: Revert "md/raid5: Wait for MD_SB_CHANGE_PENDING in raid5d"
        https://bugzilla.redhat.com/show_bug.cgi?id=2265269
  [ 2 ] Bug #2265517 - CVE-2024-26585 kernel: tls: race between tx work scheduling and socket close
        https://bugzilla.redhat.com/show_bug.cgi?id=2265517
  [ 3 ] Bug #2265518 - CVE-2024-26582 kernel: tls: use-after-free with partial reads and async decrypt
        https://bugzilla.redhat.com/show_bug.cgi?id=2265518
  [ 4 ] Bug #2265519 - CVE-2024-26584 kernel: tls: handle backlogging of crypto requests
        https://bugzilla.redhat.com/show_bug.cgi?id=2265519
  [ 5 ] Bug #2265520 - CVE-2024-26583 kernel: tls: race between async notify and socket close
        https://bugzilla.redhat.com/show_bug.cgi?id=2265520
  [ 6 ] Bug #2265646 - CVE-2024-26593 kernel: i2c: i801: Fix block process call transactions
        https://bugzilla.redhat.com/show_bug.cgi?id=2265646
  [ 7 ] Bug #2265833 - CVE-2024-26603 kernel: x86/fpu: Stop relying on userspace for info to fault in xsave buffer
        https://bugzilla.redhat.com/show_bug.cgi?id=2265833
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2024-71f0f16533' at the command
line. For more information, refer to the dnf documentation available at
https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/security/
--------------------------------------------------------------------------------
--
_______________________________________________
package-announce mailing list -- package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/
Do not reply to spam, report it: https://pagure.io/login/

Fedora 38: kernel 2024-71f0f16533

February 28, 2024
The 6.7.6 stable kernel update contains a number of important fixes across the tree.

Summary

The kernel meta package

Update Information:

The 6.7.6 stable kernel update contains a number of important fixes across the tree.

Change Log

* Fri Feb 23 2024 Justin M. Forbes [6.7.6-0] - Add CVE fix for 6.7.6 (Justin M. Forbes) - Linux v6.7.6

References

[ 1 ] Bug #2265269 - CVE-2023-52437 kernel: Revert "md/raid5: Wait for MD_SB_CHANGE_PENDING in raid5d" https://bugzilla.redhat.com/show_bug.cgi?id=2265269 [ 2 ] Bug #2265517 - CVE-2024-26585 kernel: tls: race between tx work scheduling and socket close https://bugzilla.redhat.com/show_bug.cgi?id=2265517 [ 3 ] Bug #2265518 - CVE-2024-26582 kernel: tls: use-after-free with partial reads and async decrypt https://bugzilla.redhat.com/show_bug.cgi?id=2265518 [ 4 ] Bug #2265519 - CVE-2024-26584 kernel: tls: handle backlogging of crypto requests https://bugzilla.redhat.com/show_bug.cgi?id=2265519 [ 5 ] Bug #2265520 - CVE-2024-26583 kernel: tls: race between async notify and socket close https://bugzilla.redhat.com/show_bug.cgi?id=2265520 [ 6 ] Bug #2265646 - CVE-2024-26593 kernel: i2c: i801: Fix block process call transactions https://bugzilla.redhat.com/show_bug.cgi?id=2265646 [ 7 ] Bug #2265833 - CVE-2024-26603 kernel: x86/fpu: Stop relying on userspace for info to fault in xsave buffer https://bugzilla.redhat.com/show_bug.cgi?id=2265833

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-71f0f16533' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html

Severity
Name : kernel
Product : Fedora 38
Version : 6.7.6
Release : 100.fc38
URL : https://www.kernel.org/
Summary : The Linux kernel

Related News