The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2016-3565 https://linux.oracle.com/errata/ELSA-2016-3565.html The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network: x86_64: kernel-uek-firmware-3.8.13-118.6.2.el7uek.noarch.rpm kernel-uek-doc-3.8.13-118.6.2.el7uek.noarch.rpm kernel-uek-3.8.13-118.6.2.el7uek.x86_64.rpm kernel-uek-devel-3.8.13-118.6.2.el7uek.x86_64.rpm kernel-uek-debug-devel-3.8.13-118.6.2.el7uek.x86_64.rpm kernel-uek-debug-3.8.13-118.6.2.el7uek.x86_64.rpm dtrace-modules-3.8.13-118.6.2.el7uek-0.4.5-3.el7.x86_64.rpm SRPMS: https://oss.oracle.com:443/ol7/SRPMS-updates/kernel-uek-3.8.13-118.6.2.el7uek.src.rpm https://oss.oracle.com:443/ol7/SRPMS-updates/dtrace-modules-3.8.13-118.6.2.el7uek-0.4.5-3.el7.src.rpm Description of changes: kernel-uek [3.8.13-118.6.2.el7uek] - KEYS: Fix ASN.1 indefinite length object parsing This fixes CVE-2016-0758. (David Howells) [Orabug: 23279020] {CVE-2016-0758} - net: add validation for the socket syscall protocol argument (Hannes Frederic Sowa) [Orabug: 23267997] {CVE-2015-8543} {CVE-2015-8543} - ipv6: addrconf: validate new MTU before applying it (Marcelo Leitner) [Orabug: 23263252] {CVE-2015-8215} - unix: properly account for FDs passed over unix sockets (willy tarreau) [Orabug: 23262276] {CVE-2013-4312} {CVE-2013-4312} . Red Hat Linux Security Bulletin RHEA-2021-2498 highlights critical updates and patches addressing vulnerabilities in the core system.. Kernel Update, Oracle Linux, Security Fix, Critical Update. . Severity: Critical. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.