[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

RHSA-2017:2669-01 -- Redhat kernel-rt

ID: oval:org.secpod.oval:def:505118Date: (C)2020-11-10   (M)2024-04-17
Class: PATCHFamily: unix




The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements. Security Fix: * A race condition was found in the Linux kernel, present since v3.14-rc1 through v4.12. The race happens between threads of inotify_handle_event and vfs_rename while running the rename operation against the same file. As a result of the race the next slab data or the slab"s free list pointer can be corrupted with attacker-controlled data, which may lead to the privilege escalation. * It was found that the NFSv4 server in the Linux kernel did not properly validate layout type when processing NFSv4 pNFS LAYOUTGET and GETDEVICEINFO operands. A remote attacker could use this flaw to soft-lockup the system and thus cause denial of service. This update also fixes multiple Moderate and Low impact security issues: CVE-2017-8797 CVE-2015-8839 CVE-2016-9576 CVE-2016-7042 CVE-2016-7097 CVE-2016-8645 CVE-2016-9576 CVE-2016-9806 CVE-2016-10088 CVE-2017-2671 CVE-2017-5970 CVE-2017-6001 CVE-2017-6951 CVE-2017-7187 CVE-2017-7889 CVE-2017-8890 CVE-2017-9074 CVE-2017-8890 CVE-2017-9075 CVE-2017-8890 CVE-2017-9076 CVE-2017-8890 CVE-2017-9077 CVE-2016-9604 CVE-2016-9685 Documentation for these issues are available from the Technical Notes document linked to in the References section. Red Hat would like to thank Leilei Lin , Fan Wu , and Shixiong Zhao for reporting CVE-2017-7533 and Marco Grassi for reporting CVE-2016-8645. The CVE-2016-7042 issue was discovered by Ondrej Kozina ; the CVE-2016-7097 issue was discovered by Andreas Gruenbacher and Jan Kara ; the CVE-2016-9604 issue was discovered by David Howells ; and the CVE-2016-9685 issue was discovered by Qian Cai .

Platform:
Red Hat Enterprise Linux 6
Product:
kernel-rt
Reference:
RHSA-2017:2669-01
CVE-2015-8839
CVE-2016-10088
CVE-2016-7042
CVE-2016-7097
CVE-2016-8645
CVE-2016-9576
CVE-2016-9604
CVE-2016-9685
CVE-2016-9806
CVE-2017-2671
CVE-2017-5970
CVE-2017-6001
CVE-2017-6951
CVE-2017-7187
CVE-2017-7533
CVE-2017-7889
CVE-2017-8797
CVE-2017-8890
CVE-2017-9074
CVE-2017-9075
CVE-2017-9076
CVE-2017-9077
CVE-2017-5551
CVE-2017-7495
CVE-2016-10741
CVE    25
CVE-2016-10741
CVE-2016-10088
CVE-2016-7042
CVE-2016-7097
...

© SecPod Technologies