Explore top 10 tips to secure your open-source projects now. Read More
×The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2025-8246 http://linux.oracle.com/errata/ELSA-2025-8246.html The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: x86_64: bpftool-4.18.0-553.54.1.el8_10.x86_64.rpm kernel-4.18.0-553.54.1.el8_10.x86_64.rpm kernel-abi-stablelists-4.18.0-553.54.1.el8_10.noarch.rpm kernel-core-4.18.0-553.54.1.el8_10.x86_64.rpm kernel-cross-headers-4.18.0-553.54.1.el8_10.x86_64.rpm kernel-debug-4.18.0-553.54.1.el8_10.x86_64.rpm kernel-debug-core-4.18.0-553.54.1.el8_10.x86_64.rpm kernel-debug-devel-4.18.0-553.54.1.el8_10.x86_64.rpm kernel-debug-modules-4.18.0-553.54.1.el8_10.x86_64.rpm kernel-debug-modules-extra-4.18.0-553.54.1.el8_10.x86_64.rpm kernel-devel-4.18.0-553.54.1.el8_10.x86_64.rpm kernel-doc-4.18.0-553.54.1.el8_10.noarch.rpm kernel-headers-4.18.0-553.54.1.el8_10.x86_64.rpm kernel-modules-4.18.0-553.54.1.el8_10.x86_64.rpm kernel-modules-extra-4.18.0-553.54.1.el8_10.x86_64.rpm kernel-tools-4.18.0-553.54.1.el8_10.x86_64.rpm kernel-tools-libs-4.18.0-553.54.1.el8_10.x86_64.rpm perf-4.18.0-553.54.1.el8_10.x86_64.rpm python3-perf-4.18.0-553.54.1.el8_10.x86_64.rpm kernel-tools-libs-devel-4.18.0-553.54.1.el8_10.x86_64.rpm aarch64: bpftool-4.18.0-553.54.1.el8_10.aarch64.rpm kernel-cross-headers-4.18.0-553.54.1.el8_10.aarch64.rpm kernel-headers-4.18.0-553.54.1.el8_10.aarch64.rpm kernel-tools-4.18.0-553.54.1.el8_10.aarch64.rpm kernel-tools-libs-4.18.0-553.54.1.el8_10.aarch64.rpm perf-4.18.0-553.54.1.el8_10.aarch64.rpm python3-perf-4.18.0-553.54.1.el8_10.aarch64.rpm kernel-tools-libs-devel-4.18.0-553.54.1.el8_10.aarch64.rpm SRPMS: http://oss.oracle.com/ol8/SRPMS-updates//kernel-4.18.0-553.54.1.el8_10.src.rpm Related CVEs: CVE-2024-43842 Description of changes: [4.18.0-553.54.1.el8_10.OL8] - Update Oracle Linux certificates (Kevin Lyons) - Disable signing for aarch64 (Ilya Okomin) - Oracle Linux RHCK Module Signing Key was added to the kerneltrusted keys list (olkmod_signing_key.pem) [Orabug: 29539237] - Update x509.genkey [Orabug: 24817676] - Conflict with shim-ia32 and shim-x64
This is an extra release to address a critical issue in 7.0.9 affecting AF_PACKET users: setting a BPF would cause Suricata to fail to start up. This has been fixed. Various security, performance, accuracy, and stability issues have been fixed. LibHTP has been updated to version 0.5.50 which is bundled with this new. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-2a295896e6 2025-04-03 01:51:21.151653+00:00 -------------------------------------------------------------------------------- Name : suricata Product : Fedora 40 Version : 7.0.10 Release : 1.fc40 URL : Summary : Intrusion Detection System Description : The Suricata Engine is an Open Source Next Generation Intrusion Detection and Prevention Engine. This engine is not intended to just replace or emulate the existing tools in the industry, but will bring new ideas and technologies to the field. This new Engine supports Multi-threading, Automatic Protocol Detection (IP, TCP, UDP, ICMP, HTTP, TLS, FTP and SMB! ), Gzip Decompression, Fast IP Matching, and GeoIP identification. -------------------------------------------------------------------------------- Update Information: This is an extra release to address a critical issue in 7.0.9 affecting AF_PACKET users: setting a BPF would cause Suricata to fail to start up. This has been fixed. Various security, performance, accuracy, and stability issues have been fixed. LibHTP has been updated to version 0.5.50 which is bundled with this new release. This fixes: CVE-2025-29915: HIGH CVE-2025-29917: HIGH CVE-2025-29918: HIGH CVE-2025-29916: Moderate -------------------------------------------------------------------------------- ChangeLog: * Tue Mar 25 2025 Steve Grubb 7.0.10-1 - New bugfix release * Tue Mar 18 2025 Steve Grubb 7.0.9-1 - New security and bugfix release * Tue Feb 11 2025 Zbigniew JÄdrzejewski-Szmek - 7.0.8-3 - Add sysusers.d config file to allow rpm to create users/groupsautomatically * Sun Jan 19 2025 Fedora Release Engineering - 7.0.8-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_42_Mass_Rebuild -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-2a295896e6' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- . Addresses significant vulnerabilities within Suricata impacting AF_PACKET functionality, introducing enhancements for both performance and stability in Fedora 40.. Intrusion Detection System, Fedora Updates, Network Security. . Severity: Critical. LinuxSecurity.com Team
The 6.8.10 stable kernel update contains a number of important fixes across the tree. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-92664ae6fe 2024-05-22 01:26:21.009294 -------------------------------------------------------------------------------- Name : kernel Product : Fedora 40 Version : 6.8.10 Release : 300.fc40 URL : https://www.kernel.org/ Summary : The Linux kernel Description : The kernel meta package -------------------------------------------------------------------------------- Update Information: The 6.8.10 stable kernel update contains a number of important fixes across the tree -------------------------------------------------------------------------------- ChangeLog: * Fri May 17 2024 Augusto Caringi [6.8.10-0] - redhat/configs: Enable CONFIG_DEBUG_INFO_BTF_MODULES (Augusto Caringi) - Add bugs to BugsFixed for 6.8.10 (Justin M. Forbes) - Turn on INIT_ON_ALLOC_DEFAULT_ON for Fedora (Justin M. Forbes) - Reapply "drm/qxl: simplify qxl_fence_wait" (Linus Torvalds) - BugsFixed updates for 6.8.10 (Justin M. Forbes) - e1000e: change usleep_range to udelay in PHY mdic access (Vitaly Lifshits) - Linux v6.8.10 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2276325 - Lenovo M910Q hardware boot fails with "Bug: scheduling while atomic" when ethernet connected https://bugzilla.redhat.com/show_bug.cgi?id=2276325 [ 2 ] Bug #2279678 - Missing automatic memory initialization: enable CONFIG_INIT_ON_ALLOC_DEFAULT_ON=y https://bugzilla.redhat.com/show_bug.cgi?id=2279678 [ 3 ] Bug #2279734 - Kernel 6.8.8 deadlocks with 100% cpu when run in qemu/kvm https://bugzilla.redhat.com/show_bug.cgi?id=2279734 [ 4 ] Bug #2280396 - CVE-2024-21823 kernel: dmaengine/idxd: hardware erratum allows potential security problem with direct access by untrusted application [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2280396 [ 5 ] Bug #2280408 - CVE-2024-27401 kernel: firewire: nosy: ensure user_length is taken into account when fetching packet contents [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2280408 [ 6 ] Bug #2280461 - CVE-2024-27400 kernel: drm/amdgpu: once more fix the call oder in amdgpu_ttm_move() v2 [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2280461 [ 7 ] Bug #2280463 - CVE-2024-27399 kernel: Bluetooth: l2cap: fix null-ptr-deref in l2cap_chan_timeout [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2280463 [ 8 ] Bug #2280465 - CVE-2024-27398 kernel: Bluetooth: Fix use-after-free bugs caused by sco_sock_timeout [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2280465 [ 9 ] Bug #2281511 - CVE-2024-35947 kernel: dyndbg: fix old BUG_ON in > control parser [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2281511 [ 10 ] Bug #2281946 - CVE-2024-35949 kernel: btrfs: make sure that WRITTEN is set on all metadata blocks [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2281946 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-92664ae6fe' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Long Exception message leading to crash. (CVE-2024-21011) HTTP/2 client improper reverse DNS lookup. (CVE-2024-21012) Integer overflow in C1 compiler address generation. (CVE-2024-21068) Pack200 excessive memory allocation. (CVE-2024-21085) C2 compilation fails with "Exceeded _node_regs array". (CVE-2024-21094) . MGASA-2024-0179 - Updated java-1.8.0, java-11, java-17, java-latest packages fix security vulnerabilities Publication date: 16 May 2024 URL: https://advisories.mageia.org/MGASA-2024-0179.html Type: security Affected Mageia releases: 9 CVE: CVE-2024-21011, CVE-2024-21012, CVE-2024-21085, CVE-2024-21068, CVE-2024-21094 Long Exception message leading to crash. (CVE-2024-21011) HTTP/2 client improper reverse DNS lookup. (CVE-2024-21012) Integer overflow in C1 compiler address generation. (CVE-2024-21068) Pack200 excessive memory allocation. (CVE-2024-21085) C2 compilation fails with "Exceeded _node_regs array". (CVE-2024-21094) References: - https://bugs.mageia.org/show_bug.cgi?id=33117 - https://access.redhat.com/errata/RHSA-2024:1817 - https://access.redhat.com/errata/RHSA-2024:1819 - https://access.redhat.com/errata/RHSA-2024:1823 - https://www.oracle.com/security-alerts/cpuapr2024.html#AppendixJAVA - https://www.cve.org/CVERecord?id=CVE-2024-21011 - https://www.cve.org/CVERecord?id=CVE-2024-21012 - https://www.cve.org/CVERecord?id=CVE-2024-21085 - https://www.cve.org/CVERecord?id=CVE-2024-21068 - https://www.cve.org/CVERecord?id=CVE-2024-21094 SRPMS: - 9/core/java-1.8.0-openjdk-1.8.0.412.b08-1.mga9 - 9/core/java-11-openjdk-11.0.23.0.9-1.mga9 - 9/core/java-17-openjdk-17.0.11.0.9-1.mga9 - 9/core/java-latest-openjdk-22.0.1.0.8-1.rolling.1.mga9 . Mageia 2024-0180 upgrades python-3.7, python-3.8, and python-3.9 addressing vulnerabilities and enhancing functionality.. Java Updates, Mageia Security, Performance Fixes, OpenJDK Security. . Severity: Important. LinuxSecurity.com Team
* bsc#1194642 * bsc#1207987 * bsc#1221831 Cross-References: . # Security update for util-linux Announcement ID: SUSE-SU-2024:1106-1 Rating: important References: * bsc#1194642 * bsc#1207987 * bsc#1221831 Cross-References: * CVE-2024-28085 CVSS scores: * CVE-2024-28085 ( SUSE ): 8.4 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N Affected Products: * SUSE Linux Enterprise High Performance Computing 15 SP2 * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 * SUSE Linux Enterprise Server 15 SP2 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 An update that solves one vulnerability and has two security fixes can now be installed. ## Description: This update for util-linux fixes the following issues: * CVE-2024-28085: Properly neutralize escape sequences in wall. (bsc#1221831) * Prevent error message if `/var/lib/libuuid/clock.txt` does not exist (bsc#1194642) * Fixed performance degradation (bsc#1207987) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 zypper in -t patch SUSE-SLE-Product-HPC-15-SP2-LTSS-2024-1106=1 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 zypper in -t patch SUSE-SLE-Product-SLES-15-SP2-LTSS-2024-1106=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP2-2024-1106=1 ## Package List: * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 (aarch64 x86_64) * util-linux-debugsource-2.33.2-150100.4.45.1 * libmount-devel-2.33.2-150100.4.45.1 * libblkid-devel-static-2.33.2-150100.4.45.1 * libfdisk1-2.33.2-150100.4.45.1 * util-linux-systemd-debuginfo-2.33.2-150100.4.45.1 *libsmartcols-devel-2.33.2-150100.4.45.1 * libsmartcols1-debuginfo-2.33.2-150100.4.45.1 * libblkid1-2.33.2-150100.4.45.1 * util-linux-debuginfo-2.33.2-150100.4.45.1 * util-linux-2.33.2-150100.4.45.1 * libuuid-devel-2.33.2-150100.4.45.1 * util-linux-systemd-2.33.2-150100.4.45.1 * libfdisk-devel-2.33.2-150100.4.45.1 * libuuid-devel-static-2.33.2-150100.4.45.1 * libmount1-2.33.2-150100.4.45.1 * libsmartcols1-2.33.2-150100.4.45.1 * libblkid-devel-2.33.2-150100.4.45.1 * libuuid1-2.33.2-150100.4.45.1 * libblkid1-debuginfo-2.33.2-150100.4.45.1 * libfdisk1-debuginfo-2.33.2-150100.4.45.1 * uuidd-2.33.2-150100.4.45.1 * util-linux-systemd-debugsource-2.33.2-150100.4.45.1 * libuuid1-debuginfo-2.33.2-150100.4.45.1 * uuidd-debuginfo-2.33.2-150100.4.45.1 * libmount1-debuginfo-2.33.2-150100.4.45.1 * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 (noarch) * util-linux-lang-2.33.2-150100.4.45.1 * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 (x86_64) * libuuid1-32bit-2.33.2-150100.4.45.1 * libblkid1-32bit-2.33.2-150100.4.45.1 * libmount1-32bit-2.33.2-150100.4.45.1 * libuuid1-32bit-debuginfo-2.33.2-150100.4.45.1 * libblkid1-32bit-debuginfo-2.33.2-150100.4.45.1 * libmount1-32bit-debuginfo-2.33.2-150100.4.45.1 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 (aarch64 ppc64le s390x x86_64) * util-linux-debugsource-2.33.2-150100.4.45.1 * libmount-devel-2.33.2-150100.4.45.1 * libblkid-devel-static-2.33.2-150100.4.45.1 * libfdisk1-2.33.2-150100.4.45.1 * util-linux-systemd-debuginfo-2.33.2-150100.4.45.1 * libsmartcols-devel-2.33.2-150100.4.45.1 * libsmartcols1-debuginfo-2.33.2-150100.4.45.1 * libblkid1-2.33.2-150100.4.45.1 * util-linux-debuginfo-2.33.2-150100.4.45.1 * util-linux-2.33.2-150100.4.45.1 * libuuid-devel-2.33.2-150100.4.45.1 * util-linux-systemd-2.33.2-150100.4.45.1 * libfdisk-devel-2.33.2-150100.4.45.1 *libuuid-devel-static-2.33.2-150100.4.45.1 * libmount1-2.33.2-150100.4.45.1 * libsmartcols1-2.33.2-150100.4.45.1 * libblkid-devel-2.33.2-150100.4.45.1 * libuuid1-2.33.2-150100.4.45.1 * libblkid1-debuginfo-2.33.2-150100.4.45.1 * libfdisk1-debuginfo-2.33.2-150100.4.45.1 * uuidd-2.33.2-150100.4.45.1 * util-linux-systemd-debugsource-2.33.2-150100.4.45.1 * libuuid1-debuginfo-2.33.2-150100.4.45.1 * uuidd-debuginfo-2.33.2-150100.4.45.1 * libmount1-debuginfo-2.33.2-150100.4.45.1 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 (noarch) * util-linux-lang-2.33.2-150100.4.45.1 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 (x86_64) * libuuid1-32bit-2.33.2-150100.4.45.1 * libblkid1-32bit-2.33.2-150100.4.45.1 * libmount1-32bit-2.33.2-150100.4.45.1 * libuuid1-32bit-debuginfo-2.33.2-150100.4.45.1 * libblkid1-32bit-debuginfo-2.33.2-150100.4.45.1 * libmount1-32bit-debuginfo-2.33.2-150100.4.45.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 (ppc64le x86_64) * util-linux-debugsource-2.33.2-150100.4.45.1 * libmount-devel-2.33.2-150100.4.45.1 * libblkid-devel-static-2.33.2-150100.4.45.1 * libfdisk1-2.33.2-150100.4.45.1 * util-linux-systemd-debuginfo-2.33.2-150100.4.45.1 * libsmartcols-devel-2.33.2-150100.4.45.1 * libsmartcols1-debuginfo-2.33.2-150100.4.45.1 * libblkid1-2.33.2-150100.4.45.1 * util-linux-debuginfo-2.33.2-150100.4.45.1 * util-linux-2.33.2-150100.4.45.1 * libuuid-devel-2.33.2-150100.4.45.1 * util-linux-systemd-2.33.2-150100.4.45.1 * libfdisk-devel-2.33.2-150100.4.45.1 * libuuid-devel-static-2.33.2-150100.4.45.1 * libmount1-2.33.2-150100.4.45.1 * libsmartcols1-2.33.2-150100.4.45.1 * libblkid-devel-2.33.2-150100.4.45.1 * libuuid1-2.33.2-150100.4.45.1 * libblkid1-debuginfo-2.33.2-150100.4.45.1 * libfdisk1-debuginfo-2.33.2-150100.4.45.1 * uuidd-2.33.2-150100.4.45.1 * util-linux-systemd-debugsource-2.33.2-150100.4.45.1 *libuuid1-debuginfo-2.33.2-150100.4.45.1 * uuidd-debuginfo-2.33.2-150100.4.45.1 * libmount1-debuginfo-2.33.2-150100.4.45.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 (noarch) * util-linux-lang-2.33.2-150100.4.45.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 (x86_64) * libuuid1-32bit-2.33.2-150100.4.45.1 * libblkid1-32bit-2.33.2-150100.4.45.1 * libmount1-32bit-2.33.2-150100.4.45.1 * libuuid1-32bit-debuginfo-2.33.2-150100.4.45.1 * libblkid1-32bit-debuginfo-2.33.2-150100.4.45.1 * libmount1-32bit-debuginfo-2.33.2-150100.4.45.1 ## References: * https://www.suse.com/security/cve/CVE-2024-28085.html * https://bugzilla.suse.com/show_bug.cgi?id=1194642 * https://bugzilla.suse.com/show_bug.cgi?id=1207987 * https://bugzilla.suse.com/show_bug.cgi?id=1221831 . Canonical's latest patch for libc6 tackles significant vulnerabilities and enhances functionality for reliable system performance.. SUSE Util-Linux Update, Important Security Advisory, SUSE System Fix. . Severity: Important. LinuxSecurity.com Team
- Updated to latest upstream (118.0). -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2023-7a4026e363 2023-09-30 03:34:21.206859 -------------------------------------------------------------------------------- Name : firefox Product : Fedora 37 Version : 118.0 Release : 1.fc37 URL : https://www.firefox.com/en-US/?redirect_source=mozilla-org Summary : Mozilla Firefox Web browser Description : Mozilla Firefox is an open-source web browser, designed for standards compliance, performance and portability. -------------------------------------------------------------------------------- Update Information: - Updated to latest upstream (118.0) -------------------------------------------------------------------------------- ChangeLog: * Mon Sep 25 2023 Martin Stransky - 118.0-1 - Updated to 118.0 * Thu Sep 14 2023 Adam Williamson - 117.0.1-2 - Pass --with-clang-path to fix build with clang 17 (rhbz#2239047) -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-7a4026e363' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list --
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2023-12798 https://linux.oracle.com/errata/ELSA-2023-12798.html The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable LinuxNetwork: x86_64: bpftool-5.15.0-105.125.6.2.1.el8uek.x86_64.rpm kernel-uek-5.15.0-105.125.6.2.1.el8uek.x86_64.rpm kernel-uek-core-5.15.0-105.125.6.2.1.el8uek.x86_64.rpm kernel-uek-debug-5.15.0-105.125.6.2.1.el8uek.x86_64.rpm kernel-uek-debug-core-5.15.0-105.125.6.2.1.el8uek.x86_64.rpm kernel-uek-debug-devel-5.15.0-105.125.6.2.1.el8uek.x86_64.rpm kernel-uek-debug-modules-5.15.0-105.125.6.2.1.el8uek.x86_64.rpm kernel-uek-debug-modules-extra-5.15.0-105.125.6.2.1.el8uek.x86_64.rpm kernel-uek-devel-5.15.0-105.125.6.2.1.el8uek.x86_64.rpm kernel-uek-doc-5.15.0-105.125.6.2.1.el8uek.noarch.rpm kernel-uek-modules-5.15.0-105.125.6.2.1.el8uek.x86_64.rpm kernel-uek-modules-extra-5.15.0-105.125.6.2.1.el8uek.x86_64.rpm kernel-uek-container-5.15.0-105.125.6.2.1.el8uek.x86_64.rpm kernel-uek-container-debug-5.15.0-105.125.6.2.1.el8uek.x86_64.rpm aarch64: bpftool-5.15.0-105.125.6.2.1.el8uek.aarch64.rpm kernel-uek-5.15.0-105.125.6.2.1.el8uek.aarch64.rpm kernel-uek-core-5.15.0-105.125.6.2.1.el8uek.aarch64.rpm kernel-uek-debug-5.15.0-105.125.6.2.1.el8uek.aarch64.rpm kernel-uek-debug-core-5.15.0-105.125.6.2.1.el8uek.aarch64.rpm kernel-uek-debug-devel-5.15.0-105.125.6.2.1.el8uek.aarch64.rpm kernel-uek-debug-modules-5.15.0-105.125.6.2.1.el8uek.aarch64.rpm kernel-uek-debug-modules-extra-5.15.0-105.125.6.2.1.el8uek.aarch64.rpm kernel-uek-devel-5.15.0-105.125.6.2.1.el8uek.aarch64.rpm kernel-uek-doc-5.15.0-105.125.6.2.1.el8uek.noarch.rpm kernel-uek-modules-5.15.0-105.125.6.2.1.el8uek.aarch64.rpm kernel-uek-modules-extra-5.15.0-105.125.6.2.1.el8uek.aarch64.rpm kernel-uek-container-5.15.0-105.125.6.2.1.el8uek.aarch64.rpm kernel-uek-container-debug-5.15.0-105.125.6.2.1.el8uek.aarch64.rpm SRPMS: https://oss.oracle.com:443/ol8/SRPMS-updates//kernel-uek-5.15.0-105.125.6.2.1.el8uek.src.rpm Related CVEs: CVE-2023-22024 Description of changes: [5.15.0-105.125.6.2.1.el8uek] - rds: Fix lack of reentrancy for connection reset with dst addr zero (HÃ¥kon Bugge) [Orabug: 35713695] {CVE-2023-22024} _______________________________________________ El-errata mailing list
The container suse/sle15 was updated. The following patches have been included in this update:. SUSE Container Update Advisory: suse/sle15 ----------------------------------------------------------------- Container Advisory ID : SUSE-CU-2023:2160-1 Container Tags : bci/bci-base:15.4 , bci/bci-base:15.4.27.14.72 , suse/sle15:15.4 , suse/sle15:15.4.27.14.72 Container Release : 27.14.72 Severity : moderate Type : security References : 1201627 1207534 CVE-2022-4304 ----------------------------------------------------------------- The container suse/sle15 was updated. The following patches have been included in this update: ----------------------------------------------------------------- Advisory ID: SUSE-SU-2023:2648-1 Released: Tue Jun 27 09:52:35 2023 Summary: Security update for openssl-1_1 Type: security Severity: moderate References: 1201627,1207534,CVE-2022-4304 This update for openssl-1_1 fixes the following issues: - CVE-2022-4304: Reworked the fix for the Timing-Oracle in RSA decryption. The previous fix for this timing side channel turned out to cause a severe 2-3x performance regression in the typical use case (bsc#1207534). - Update further expiring certificates that affect the testsuite (bsc#1201627). The following package changes have been done: - libopenssl1_1-hmac-1.1.1l-150400.7.42.1 updated - libopenssl1_1-1.1.1l-150400.7.42.1 updated - openssl-1_1-1.1.1l-150400.7.42.1 updated . Routine security enhancement for suse/sle15 container features updates addressing openssl vulnerabilities and optimizations for better performance.. SUSE Container Update, Openssl Patch, Security Advisory. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.