Oracle Linux Security Advisory ELSA-2023-0100

https://linux.oracle.com/errata/ELSA-2023-0100.html

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

x86_64:
systemd-239-68.0.2.el8_7.1.i686.rpm
systemd-239-68.0.2.el8_7.1.x86_64.rpm
systemd-container-239-68.0.2.el8_7.1.i686.rpm
systemd-container-239-68.0.2.el8_7.1.x86_64.rpm
systemd-devel-239-68.0.2.el8_7.1.i686.rpm
systemd-devel-239-68.0.2.el8_7.1.x86_64.rpm
systemd-journal-remote-239-68.0.2.el8_7.1.x86_64.rpm
systemd-libs-239-68.0.2.el8_7.1.i686.rpm
systemd-libs-239-68.0.2.el8_7.1.x86_64.rpm
systemd-pam-239-68.0.2.el8_7.1.x86_64.rpm
systemd-tests-239-68.0.2.el8_7.1.x86_64.rpm
systemd-udev-239-68.0.2.el8_7.1.x86_64.rpm

aarch64:
systemd-239-68.0.2.el8_7.1.aarch64.rpm
systemd-container-239-68.0.2.el8_7.1.aarch64.rpm
systemd-devel-239-68.0.2.el8_7.1.aarch64.rpm
systemd-journal-remote-239-68.0.2.el8_7.1.aarch64.rpm
systemd-libs-239-68.0.2.el8_7.1.aarch64.rpm
systemd-pam-239-68.0.2.el8_7.1.aarch64.rpm
systemd-tests-239-68.0.2.el8_7.1.aarch64.rpm
systemd-udev-239-68.0.2.el8_7.1.aarch64.rpm


SRPMS:
https://oss.oracle.com:443/ol8/SRPMS-updates/systemd-239-68.0.2.el8_7.1.src.rpm

Related CVEs:

CVE-2022-3821




Description of changes:

[239-68.0.2.1]
- Backport upstream pstore dmesg fix [Orabug: 34850699]
- Standardize ioctl (BTRFS_IOC_QGROUP_CREATE) check and return -ENOTCONN, if quota is not enabled [Orabug: 34694253]
- Disable unprivileged BPF by default [Orabug: 32870980]
- backport upstream pstore tmpfiles patch [Orabug: 31420486]
- udev rules: fix memory hot add and remove [Orabug: 31310273]
- fix to enable systemd-pstore.service [Orabug: 30951066]
- journal: change support URL shown in the catalog entries [Orabug: 30853009]
- fix to generate systemd-pstore.service file [Orabug: 30230056]
- fix _netdev is missing for iscsi entry in /etc/fstab (tony.l.lam@oracle.com) [Orabug: 25897792]
- set "RemoveIPC=no" in logind.conf as default for OL7.2 [Orabug: 22224874]
- allow dm remove ioctl to co-operate with UEK3 (Vaughan Cao) [Orabug: 18467469]
- add hv dynamic memory support (Jerry Snitselaar) [Orabug: 18621475]
- Backport upstream patches for the new systemd-pstore tool (Eric DeVolder) [OraBug: 30230056]

[239-68.1]
- time-util: fix buffer-over-run (#2139390)
- core: move reset_arguments() to the end of main's finish (#2127170)

_______________________________________________
El-errata mailing list
El-errata@oss.oracle.com
https://oss.oracle.com/mailman/listinfo/el-errata

Oracle8: ELSA-2023-0100: systemd Moderate Security Update

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

Summary

[239-68.0.2.1] - Backport upstream pstore dmesg fix [Orabug: 34850699] - Standardize ioctl (BTRFS_IOC_QGROUP_CREATE) check and return -ENOTCONN, if quota is not enabled [Orabug: 34694253] - Disable unprivileged BPF by default [Orabug: 32870980] - backport upstream pstore tmpfiles patch [Orabug: 31420486] - udev rules: fix memory hot add and remove [Orabug: 31310273] - fix to enable systemd-pstore.service [Orabug: 30951066] - journal: change support URL shown in the catalog entries [Orabug: 30853009] - fix to generate systemd-pstore.service file [Orabug: 30230056] - fix _netdev is missing for iscsi entry in /etc/fstab (tony.l.lam@oracle.com) [Orabug: 25897792] - set "RemoveIPC=no" in logind.conf as default for OL7.2 [Orabug: 22224874] - allow dm remove ioctl to co-operate with UEK3 (Vaughan Cao) [Orabug: 18467469] - add hv dynamic memory support (Jerry Snitselaar) [Orabug: 18621475] - Backport upstream patches for the new systemd-pstore tool (Eric DeVolder) [OraBug: 30230056] [239-68.1] - time-util: fix buffer-over-run (#2139390) - core: move reset_arguments() to the end of main's finish (#2127170)

SRPMs

https://oss.oracle.com:443/ol8/SRPMS-updates/systemd-239-68.0.2.el8_7.1.src.rpm

x86_64

systemd-239-68.0.2.el8_7.1.i686.rpm systemd-239-68.0.2.el8_7.1.x86_64.rpm systemd-container-239-68.0.2.el8_7.1.i686.rpm systemd-container-239-68.0.2.el8_7.1.x86_64.rpm systemd-devel-239-68.0.2.el8_7.1.i686.rpm systemd-devel-239-68.0.2.el8_7.1.x86_64.rpm systemd-journal-remote-239-68.0.2.el8_7.1.x86_64.rpm systemd-libs-239-68.0.2.el8_7.1.i686.rpm systemd-libs-239-68.0.2.el8_7.1.x86_64.rpm systemd-pam-239-68.0.2.el8_7.1.x86_64.rpm systemd-tests-239-68.0.2.el8_7.1.x86_64.rpm systemd-udev-239-68.0.2.el8_7.1.x86_64.rpm

aarch64

systemd-239-68.0.2.el8_7.1.aarch64.rpm systemd-container-239-68.0.2.el8_7.1.aarch64.rpm systemd-devel-239-68.0.2.el8_7.1.aarch64.rpm systemd-journal-remote-239-68.0.2.el8_7.1.aarch64.rpm systemd-libs-239-68.0.2.el8_7.1.aarch64.rpm systemd-pam-239-68.0.2.el8_7.1.aarch64.rpm systemd-tests-239-68.0.2.el8_7.1.aarch64.rpm systemd-udev-239-68.0.2.el8_7.1.aarch64.rpm

i386

Severity
Related CVEs: CVE-2022-3821

Related News