Oracle Linux Security Advisory ELSA-2023-4517

https://linux.oracle.com/errata/ELSA-2023-4517.html

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

x86_64:
bpftool-4.18.0-477.21.1.el8_8.x86_64.rpm
kernel-4.18.0-477.21.1.el8_8.x86_64.rpm
kernel-abi-stablelists-4.18.0-477.21.1.el8_8.noarch.rpm
kernel-core-4.18.0-477.21.1.el8_8.x86_64.rpm
kernel-cross-headers-4.18.0-477.21.1.el8_8.x86_64.rpm
kernel-debug-4.18.0-477.21.1.el8_8.x86_64.rpm
kernel-debug-core-4.18.0-477.21.1.el8_8.x86_64.rpm
kernel-debug-devel-4.18.0-477.21.1.el8_8.x86_64.rpm
kernel-debug-modules-4.18.0-477.21.1.el8_8.x86_64.rpm
kernel-debug-modules-extra-4.18.0-477.21.1.el8_8.x86_64.rpm
kernel-devel-4.18.0-477.21.1.el8_8.x86_64.rpm
kernel-doc-4.18.0-477.21.1.el8_8.noarch.rpm
kernel-headers-4.18.0-477.21.1.el8_8.x86_64.rpm
kernel-modules-4.18.0-477.21.1.el8_8.x86_64.rpm
kernel-modules-extra-4.18.0-477.21.1.el8_8.x86_64.rpm
kernel-tools-4.18.0-477.21.1.el8_8.x86_64.rpm
kernel-tools-libs-4.18.0-477.21.1.el8_8.x86_64.rpm
perf-4.18.0-477.21.1.el8_8.x86_64.rpm
python3-perf-4.18.0-477.21.1.el8_8.x86_64.rpm
kernel-tools-libs-devel-4.18.0-477.21.1.el8_8.x86_64.rpm

aarch64:
bpftool-4.18.0-477.21.1.el8_8.aarch64.rpm
kernel-cross-headers-4.18.0-477.21.1.el8_8.aarch64.rpm
kernel-headers-4.18.0-477.21.1.el8_8.aarch64.rpm
kernel-tools-4.18.0-477.21.1.el8_8.aarch64.rpm
kernel-tools-libs-4.18.0-477.21.1.el8_8.aarch64.rpm
perf-4.18.0-477.21.1.el8_8.aarch64.rpm
python3-perf-4.18.0-477.21.1.el8_8.aarch64.rpm
kernel-tools-libs-devel-4.18.0-477.21.1.el8_8.aarch64.rpm


SRPMS:
https://oss.oracle.com:443/ol8/SRPMS-updates//kernel-4.18.0-477.21.1.el8_8.src.rpm

Related CVEs:

CVE-2022-42896
CVE-2023-1281
CVE-2023-1829
CVE-2023-2124
CVE-2023-2194
CVE-2023-2235




Description of changes:

[4.18.0-477.21.1.el8_8.OL8]
- Bluetooth: L2CAP: Fix accepting connection request for invalid SPSM (Tamás Koczka) {CVE-2022-42896}
- net/sched: tcindex: update imperfect hash filters respecting rcu (Jamal Hadi Salim) {CVE-2023-1281}
- net/sched: tcindex: search key must be 16 bits (Jamal Hadi Salim) {CVE-2023-1281}
- net/sched: Retire tcindex classifier (Jamal Hadi Salim) {CVE-2023-1829}
- xfs: verify buffer contents when we skip log replay (Darrick J. Wong) {CVE-2023-2124}
- i2c: xgene-slimpro: Fix out-of-bounds bug in xgene_slimpro_i2c_xfer() (Wei Chen) {CVE-2023-2194}
- perf: Fix check before add_event_to_groups() in perf_group_detach() (Budimir Markovic) {CVE-2023-2235}


_______________________________________________
El-errata mailing list
El-errata@oss.oracle.com
https://oss.oracle.com/mailman/listinfo/el-errata

Oracle8: ELSA-2023-4517: kernel Important Security Update

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

Summary

[4.18.0-477.21.1.el8_8.OL8] - Bluetooth: L2CAP: Fix accepting connection request for invalid SPSM (Tamás Koczka) {CVE-2022-42896} - net/sched: tcindex: update imperfect hash filters respecting rcu (Jamal Hadi Salim) {CVE-2023-1281} - net/sched: tcindex: search key must be 16 bits (Jamal Hadi Salim) {CVE-2023-1281} - net/sched: Retire tcindex classifier (Jamal Hadi Salim) {CVE-2023-1829} - xfs: verify buffer contents when we skip log replay (Darrick J. Wong) {CVE-2023-2124} - i2c: xgene-slimpro: Fix out-of-bounds bug in xgene_slimpro_i2c_xfer() (Wei Chen) {CVE-2023-2194} - perf: Fix check before add_event_to_groups() in perf_group_detach() (Budimir Markovic) {CVE-2023-2235}

SRPMs

https://oss.oracle.com:443/ol8/SRPMS-updates//kernel-4.18.0-477.21.1.el8_8.src.rpm

x86_64

bpftool-4.18.0-477.21.1.el8_8.x86_64.rpm kernel-4.18.0-477.21.1.el8_8.x86_64.rpm kernel-abi-stablelists-4.18.0-477.21.1.el8_8.noarch.rpm kernel-core-4.18.0-477.21.1.el8_8.x86_64.rpm kernel-cross-headers-4.18.0-477.21.1.el8_8.x86_64.rpm kernel-debug-4.18.0-477.21.1.el8_8.x86_64.rpm kernel-debug-core-4.18.0-477.21.1.el8_8.x86_64.rpm kernel-debug-devel-4.18.0-477.21.1.el8_8.x86_64.rpm kernel-debug-modules-4.18.0-477.21.1.el8_8.x86_64.rpm kernel-debug-modules-extra-4.18.0-477.21.1.el8_8.x86_64.rpm kernel-devel-4.18.0-477.21.1.el8_8.x86_64.rpm kernel-doc-4.18.0-477.21.1.el8_8.noarch.rpm kernel-headers-4.18.0-477.21.1.el8_8.x86_64.rpm kernel-modules-4.18.0-477.21.1.el8_8.x86_64.rpm kernel-modules-extra-4.18.0-477.21.1.el8_8.x86_64.rpm kernel-tools-4.18.0-477.21.1.el8_8.x86_64.rpm kernel-tools-libs-4.18.0-477.21.1.el8_8.x86_64.rpm perf-4.18.0-477.21.1.el8_8.x86_64.rpm python3-perf-4.18.0-477.21.1.el8_8.x86_64.rpm kernel-tools-libs-devel-4.18.0-477.21.1.el8_8.x86_64.rpm

aarch64

bpftool-4.18.0-477.21.1.el8_8.aarch64.rpm kernel-cross-headers-4.18.0-477.21.1.el8_8.aarch64.rpm kernel-headers-4.18.0-477.21.1.el8_8.aarch64.rpm kernel-tools-4.18.0-477.21.1.el8_8.aarch64.rpm kernel-tools-libs-4.18.0-477.21.1.el8_8.aarch64.rpm perf-4.18.0-477.21.1.el8_8.aarch64.rpm python3-perf-4.18.0-477.21.1.el8_8.aarch64.rpm kernel-tools-libs-devel-4.18.0-477.21.1.el8_8.aarch64.rpm

i386

Severity
Related CVEs: CVE-2022-42896 CVE-2023-1281 CVE-2023-1829 CVE-2023-2124 CVE-2023-2194 CVE-2023-2235

Related News