Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Oracle Linux 7 ELSA-2021-9442 Critical: Kernel Update for Threats

oracle
Calendar Grey September 8, 2021
Oracle Linux Logo Esm H88
CentOS 8 has released a crucial update regarding the kernel security vulnerability. See Advisory ELSA-2021-7803 for improved system defense.
The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

Summary

[4.1.12-124.54.6.el7uek] - xen-netback: do not kfree_skb() when irq is disabled (Dongli Zhang) [Orabug: 33282046] [4.1.12-124.54.5.el7uek] - l2tp: fix race between l2tp_session_delete() and l2tp_tunnel_closeall() (Guillaume Nault) [Orabug: 33113975] {CVE-2020-0429} - l2tp: ensure sessions are freed after their PPPOL2TP socket (Guillaume Nault) [Orabug: 33113975] {CVE-2020-0429} - l2tp: Refactor the codes with existing macros instead of literal number (Gao Feng) [Orabug: 33113975] {CVE-2020-0429} - l2tp: fix duplicate session creation (Guillaume Nault) [Orabug: 33113975] {CVE-2020-0429} - l2tp: ensure session can't get removed during pppol2tp_session_ioctl() (Guillaume Nault) [Orabug: 33113975] {CVE-2020-0429} - l2tp: fix race in l2tp_recv_common() (Guillaume Nault) [Orabug: 33113975] {CVE-2020-0429} - net: l2tp: Make l2tp_ip6 namespace aware (Shmulik Ladkani) [Orabug: 33113975] {CVE-2020-0429} - l2tp: Correctly return -EBADF from pppol2tp_getname. (phil.turnbull@ora...

Read the Full Advisory

SRPMs

https://oss.oracle.com:443/ol7/SRPMS-updates/kernel-uek-4.1.12-124.54.6.el7uek.src.rpm

x86_64

kernel-uek-doc-4.1.12-124.54.6.el7uek.noarch.rpm kernel-uek-firmware-4.1.12-124.54.6.el7uek.noarch.rpm kernel-uek-4.1.12-124.54.6.el7uek.x86_64.rpm kernel-uek-devel-4.1.12-124.54.6.el7uek.x86_64.rpm kernel-uek-debug-4.1.12-124.54.6.el7uek.x86_64.rpm kernel-uek-debug-devel-4.1.12-124.54.6.el7uek.x86_64.rpm

aarch64

Severity
critical
Lowest
Low
Medium
High
Critical

Related CVEs: CVE-2019-9456 CVE-2019-9458 CVE-2020-0305 CVE-2020-0429 CVE-2020-27068 CVE-2020-28097 CVE-2021-34693 CVE-2021-3609

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here