Alerts This Week
Warning Icon 1 905
Alerts This Week
Warning Icon 1 905

Oracle Linux 7 ELSA-2024-12571 Critical Kernel Security Issue

oracle
Calendar Grey August 7, 2024
Oracle Linux Logo Esm H88
CentOS 7 enhanced packages released to address vulnerabilities highlighted in ELSA-2024-12572. Discover further details here!
The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

Summary

[4.1.12-124.88.3.el7uek] - crypto: pcrypt - Fix hungtask for PADATA_RESET (Lu Jialin) [Orabug: 36806710] {CVE-2023-52813} - usbnet: sanity check for maxpacket (Oliver Neukum) [Orabug: 36806658] {CVE-2021-47495} - phonet: fix rtm_phonet_notify() skb allocation (Eric Dumazet) [Orabug: 36683487] {CVE-2024-36946} - wifi: nl80211: don't free NULL coalescing rule (Johannes Berg) [Orabug: 36683466] {CVE-2024-36941} - bna: ensure the copied buf is NUL terminated (Bui Quang Minh) [Orabug: 36683433] {CVE-2024-36934} - bna: use memdup_user to copy userspace buffers (Ivan Vecera) [Orabug: 36683433] {CVE-2024-36934} - new helper: memdup_user_nul() (Al Viro) [Orabug: 36683433] {CVE-2024-36934} - netfilter: nf_tables: Fix potential data-race in __nft_expr_type_get() (Ziyang Xuan) [Orabug: 36598047] {CVE-2024-27020} - netfilter: nf_tables: __nft_expr_type_get() selects specific family type (Pablo Neira Ayuso) [Orabug: 36598047] {CVE-2024-27020} - net/mlx5e: drop shorter ethernet ...

Read the Full Advisory

SRPMs

http://oss.oracle.com/ol7/SRPMS-updates//kernel-uek-4.1.12-124.88.3.el7uek.src.rpm

x86_64

kernel-uek-doc-4.1.12-124.88.3.el7uek.noarch.rpm kernel-uek-firmware-4.1.12-124.88.3.el7uek.noarch.rpm kernel-uek-4.1.12-124.88.3.el7uek.x86_64.rpm kernel-uek-devel-4.1.12-124.88.3.el7uek.x86_64.rpm kernel-uek-debug-4.1.12-124.88.3.el7uek.x86_64.rpm kernel-uek-debug-devel-4.1.12-124.88.3.el7uek.x86_64.rpm

aarch64

Severity
critical
Lowest
Low
Medium
High
Critical

Related CVEs: CVE-2023-52813 CVE-2021-47495 CVE-2024-36946 CVE-2024-36941 CVE-2024-36934 CVE-2024-27020 CVE-2024-41090 CVE-2024-41091 CVE-2023-52528 CVE-2023-52880 CVE-2024-26642 CVE-2024-25739 CVE-2022-24448

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here