Oracle Linux Security Advisory ELSA-2024-12570: Key Kernel Updates and Vulnerabilities
Summary
[4.1.12-124.88.3.el6uek] - crypto: pcrypt - Fix hungtask for PADATA_RESET (Lu Jialin) [Orabug: 36806710] {CVE-2023-52813} - usbnet: sanity check for maxpacket (Oliver Neukum) [Orabug: 36806658] {CVE-2021-47495} - phonet: fix rtm_phonet_notify() skb allocation (Eric Dumazet) [Orabug: 36683487] {CVE-2024-36946} - wifi: nl80211: don't free NULL coalescing rule (Johannes Berg) [Orabug: 36683466] {CVE-2024-36941} - bna: ensure the copied buf is NUL terminated (Bui Quang Minh) [Orabug: 36683433] {CVE-2024-36934} - bna: use memdup_user to copy userspace buffers (Ivan Vecera) [Orabug: 36683433] {CVE-2024-36934} - new helper: memdup_user_nul() (Al Viro) [Orabug: 36683433] {CVE-2024-36934} - netfilter: nf_tables: Fix potential data-race in __nft_expr_type_get() (Ziyang Xuan) [Orabug: 36598047] {CVE-2024-27020} - netfilter: nf_tables: __nft_expr_type_get() selects specific family type (Pablo Neira Ayuso) [Orabug: 36598047] {CVE-2024-27020} - net/mlx5e: drop shorter ethernet ...
Read the Full AdvisorySRPMs
x86_64
kernel-uek-4.1.12-124.88.3.el6uek.x86_64.rpm kernel-uek-doc-4.1.12-124.88.3.el6uek.noarch.rpm kernel-uek-firmware-4.1.12-124.88.3.el6uek.noarch.rpm kernel-uek-devel-4.1.12-124.88.3.el6uek.x86_64.rpm kernel-uek-debug-4.1.12-124.88.3.el6uek.x86_64.rpm kernel-uek-debug-devel-4.1.12-124.88.3.el6uek.x86_64.rpm
aarch64