[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250108

 
 

909

 
 

196064

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ELSA-2023-12118 -- Oracle kernel-uek-container

ID: oval:org.secpod.oval:def:1506462Date: (C)2023-03-02   (M)2024-04-25
Class: PATCHFamily: unix




[4.14.35-2047.522.3] - ALSA: pcm: oss: Fix race at SNDCTL_DSP_SYNC [Orabug: 34653896] {CVE-2022-3303} - net/rds: Fill in rds_exthdr_size gaps [Orabug: 34979172] - net/rds: Trigger rds_send_hs_ping more than once [Orabug: 34607787] - Revert "RDS: TCP: Track peer"s connection generation number" [Orabug: 34700111] - net/rds: Use the first lane until RDS_EXTHDR_NPATHS arrives [Orabug: 28720880] - net/rds: Kick-start TCP receiver after accept [Orabug: 34600821] - net/rds: rds_tcp_conn_path_shutdown must not discard messages [Orabug: 34560682] - net/rds: Encode cp_index in TCP source port [Orabug: 34556027] [4.14.35-2047.522.2] - tcp: fix ambiguity for SACKed TLP retransmits with RTT - vhost-scsi: Fix max number of virtqueues [Orabug: 34915131] - net/rds: drop rs_transport module reference count on error [Orabug: 34500808] - scsi: qla2xxx: Fix crash due to stale SRB access around I/O timeouts [Orabug: 34306796] - IB/mlx5: Add a signature check to received EQEs and CQEs [Orabug: 34105979] - net/rds: rds_tcp_accept_one ought to not discard messages [Orabug: 34488377] - net/rds: No shortcut out of RDS_CONN_ERROR [Orabug: 34276065] - net/rds: Don"t force state RDS_CONN_RESETTING [Orabug: 34276065] - net/rds: Preserve essential connection state flags [Orabug: 34276065] [4.14.35-2047.522.1] - uek-rpm: ol7: Add enhanced kABI diagnostics [Orabug: 34879138] - uek-rpm: ol7: Add Symtypes files [Orabug: 34879138] - uek-rpm: ol7: Enable creation of Symtypes files [Orabug: 34879138] - uek-rpm: Add kabi tool and documentation [Orabug: 34879138] - xfs: don"t reuse busy extents on extent trim [Orabug: 34605583] - RDMA/ucma: Put a lock around every call to the rdma_cm layer [Orabug: 34106064] - LTS version: v4.14.302 - net: mvneta: Fix an out of bounds check - ipv6: avoid use-after-free in ip6_fragment - net: plip: don"t call kfree_skb/dev_kfree_skb under spin_lock_irq - ethernet: aeroflex: fix potential skb leak in greth_init_rings - tipc: Fix potential OOB in tipc_link_proto_rcv - net: hisilicon: Fix potential use-after-free in hix5hd2_rx - net: hisilicon: Fix potential use-after-free in hisi_femac_rx - net: stmmac: fix "snps,axi-config" node property parsing - NFC: nci: Bounds check struct nfc_target arrays - net: mvneta: Prevent out of bounds read in mvneta_config_rss - net: encx24j600: Fix invalid logic in reading of MISTAT register - net: encx24j600: Add parentheses to fix precedence - mac802154: fix missing INIT_LIST_HEAD in ieee802154_if_add - Bluetooth: 6LoWPAN: add missing hci_dev_put in get_l2cap_conn - igb: Allocate MSI-X vector when testing - e1000e: Fix TX dispatch condition - gpio: amd8111: Fix PCI device reference count leak - ca8210: Fix crash by zero initializing data - ieee802154: cc2520: Fix error return code in cc2520_hw_init - HID: core: fix shift-out-of-bounds in hid_report_raw_event - HID: hid-lg4ff: Add check for empty lbuf - KVM: s390: vsie: Fix the initialization of the epoch extension field - memcg: fix possible use-after-free in memcg_write_event_control - media: v4l2-dv-timings.c: fix too strict blanking sanity checks - xen/netback: do some code cleanup - net: usb: qmi_wwan: add u-blox 0x1342 composition - regulator: twl6030: fix get status of twl6032 regulators - ASoC: soc-pcm: Add NULL check in BE reparenting - ALSA: seq: Fix function prototype mismatch in snd_seq_expand_var_event - ARM: dts: rockchip: disable arm_global_timer on rk3066 and rk3188 - ARM: 9266/1: mm: fix no-MMU ZERO_PAGE implementation - ARM: 9251/1: perf: Fix stacktraces for tracepoint events in THUMB2 kernels - ARM: dts: rockchip: fix ir-receiver node names - arm: dts: rockchip: fix node name for hym8563 rtc - LTS version: v4.14.301 - ipc/sem: Fix dangling sem_array access in semtimedop race - v4l2: don"t fall back to follow_pfn if pin_user_pages_fast fails - mmc: sdhci: Fix voltage switch delay - mmc: sdhci: use FIELD_GET for preset value bit masks - x86/ioremap: Fix page aligned size calculation in __ioremap_caller - Bluetooth: L2CAP: Fix accepting connection request for invalid SPSM {CVE-2022-42896} - x86/pm: Add enumeration check before spec MSRs save/restore setup - nvme: restrict management ioctls to admin - tcp/udp: Fix memory leak in ipv6_renew_options. [Orabug: 34719346] {CVE-2022-3524} - iommu/vt-d: Fix PCI device refcount leak in dmar_dev_scope_init - pinctrl: single: Fix potential division by zero - ASoC: ops: Fix bounds check for _sx controls - efi: random: Properly limit the size of the random seed - nilfs2: fix NULL pointer dereference in nilfs_palloc_commit_free_entry - tools/vm/slabinfo-gnuplot: use "grep -E" instead of "egrep" - btrfs: qgroup: fix sleep from invalid context bug in btrfs_qgroup_inherit - perf: Add sample_flags to indicate the PMU-filled sample data - hwmon: fix pci device refcount leak in nv1a_ram_new - hwmon: Check for null before removing sysfs attrs - net: ethernet: renesas: ravb: Fix promiscuous mode after system resumed - packet: do not set TP_STATUS_CSUM_VALID on CHECKSUM_COMPLETE - net: hsr: Fix potential use-after-free - dsa: lan9303: Correct stat name - net/9p: Fix a potential socket leak in p9_socket_open - net: net_netdev: Fix error handling in ntb_netdev_init_module - net: phy: fix null-ptr-deref while probe failed - qlcnic: fix sleep-in-atomic-context bugs caused by msleep - can: cc770: cc770_isa_probe: add missing free_cc770dev - can: sja1000_isa: sja1000_isa_probe: add missing free_sja1000dev - net/mlx5: Fix uninitialized variable bug in outlen_write - of: property: decrement node refcount in of_fwnode_get_reference_args - hwmon: Fix possible UAF when ibmpex_register_bmc fails - hwmon: fix missing pci_disable_device - iio: light: rpr0521: add missing Kconfig dependencies - iio: health: afe4404: Fix oob read in afe4404_[read|write]_raw - iio: health: afe4403: Fix oob read in afe4403_read_raw - drm/amdgpu: always register an MMU notifier for userptr - net: usb: qmi_wwan: add Telit 0x103a composition - tcp: configurable source port perturb table size - platform/x86: hp-wmi: Ignore Smart Experience App event - platform/x86: acer-wmi: Enable SW_TABLET_MODE on Switch V 10 - platform/x86: asus-wmi: add missing pci_dev_put in asus_wmi_set_xusb2pr - xen/platform-pci: add missing free_irq in error path - serial: 8250: 8250_omap: Avoid RS485 RTS glitch on -

Platform:
Oracle Linux 7
Product:
kernel-uek-container
Reference:
ELSA-2023-12118
CVE-2022-3640
CVE-2022-3303
CVE-2022-42895
CVE-2022-3524
CVE-2022-42896
CVE    5
CVE-2022-3303
CVE-2022-3640
CVE-2022-3524
CVE-2022-42895
...
CPE    2
cpe:/o:oracle:linux:7
cpe:/a:kernel-uek:kernel-uek-container

© SecPod Technologies