[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250108

 
 

909

 
 

196064

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ELSA-2023-12339 -- Oracle kernel-uek_bpftool

ID: oval:org.secpod.oval:def:1506637Date: (C)2023-07-17   (M)2024-04-25
Class: PATCHFamily: unix




[5.15.0-101.103.2.1] - Revert "attr: use consistent sgid stripping checks" [Orabug: 35346968] - Revert "iommu: Force iommu shutdown on panic" [Orabug: 35346963] [5.15.0-101.103.2] - uek-rpm: mod-extra: Remove mt7921e.ko from extras list [Orabug: 34999685] - crypto: allow ECDH and ECDSA algorithms in FIPS [Orabug: 35230211] - uek-rpm: make CRYPTO_ECDSA builtin [Orabug: 35230211] - KVM: arm64: PMU: Align chained counter implementation with architecture pseudocode [Orabug: 35243389] - net/mlx5: Fix memory leak in error flow of port set buffer [Orabug: 35246355] - net/mlx5e: Update shared buffer along with device buffer changes [Orabug: 35246355] - net/mlx5e: Add API to query/modify SBPR and SBCM registers [Orabug: 35246355] - net/mlx5: Expose shared buffer registers bits and structs [Orabug: 35246355] - PCI: Work around Intel I210 ROM BAR overlap defect [Orabug: 35250975] - net/rds: Adding TCP stats for TCP keepalive timeout [Orabug: 35254377] - rds: slight code cleanup of RDS checksum code [Orabug: 35262486] - x86/acpi/boot: Correct acpi_is_processor_usable check [Orabug: 35274587] - x86/ACPI/boot: Use FADT version to check support for online capable [Orabug: 35274587] - x86/acpi/boot: Do not register processors that cannot be onlined for x2APIC [Orabug: 35274587] - x86/ACPI: Don"t add CPUs that are not online capable [Orabug: 35274587] - ACPICA: Add support for MADT online enabled bit [Orabug: 35274587] - net/rds: use appropriate reason while dropping a connection [Orabug: 35278121] - KVM: nVMX: add missing consistency checks for CR0 and CR4 [Orabug: 35278210] {CVE-2023-30456} - Revert "scsi: megaraid_sas: Skip syncing the RAID map on older controllers" [Orabug: 35285941] [5.15.0-101.103.1] - Revert "Revert "x86: link vdso and boot with -z noexecstack --no-warn-rwx-segments"" - Revert "Revert "Makefile: link with -z noexecstack --no-warn-rwx-segments"" - LTS version: v5.15.103 - Makefile: use -gdwarf-{4|5} for assembler for DEBUG_INFO_DWARF{4|5} - KVM: VMX: Fix crash due to uninitialized current_vmcs - KVM: VMX: Introduce vmx_msr_bitmap_l01_changed helper - KVM: nVMX: Don"t use Enlightened MSR Bitmap for L3 - fs: hold writers when changing mount"s idmapping - UML: define RUNTIME_DISCARD_EXIT - xfs: remove xfs_setattr_time declaration - KVM: fix memoryleak in kvm_init - tools bpftool: Fix compilation error with new binutils - tools bpf_jit_disasm: Fix compilation error with new binutils - tools perf: Fix compilation error with new binutils - tools include: add dis-asm-compat.h to handle version differences - tools build: Add feature test for init_disassemble_info API changes - sh: define RUNTIME_DISCARD_EXIT - s390: define RUNTIME_DISCARD_EXIT to fix link error with GNU ld - powerpc/vmlinux.lds: Don"t discard .rela* for relocatable builds - powerpc/vmlinux.lds: Define RUNTIME_DISCARD_EXIT - arch: fix broken BuildID for arm64 and riscv - ext4: block range must be validated before use in ext4_mb_clear_bb - ext4: add strict range checks while freeing blocks - ext4: add ext4_sb_block_valid refactored out of ext4_inode_block_valid - ext4: refactor ext4_free_blocks to pull out ext4_mb_clear_bb - filelocks: use mount idmapping for setlease permission check - media: rc: gpio-ir-recv: add remove function - media: ov5640: Fix analogue gain control - scripts: handle BrokenPipeError for python scripts - PCI: Add SolidRun vendor ID - macintosh: windfarm: Use unsigned type for 1-bit bitfields - alpha: fix R_ALPHA_LITERAL reloc for large modules - powerpc/kcsan: Exclude udelay to prevent recursive instrumentation - powerpc/iommu: fix memory leak with using debugfs_lookup - MIPS: Fix a compilation issue - fs: use consistent setgid checks in is_sxid - attr: use consistent sgid stripping checks - attr: add setattr_should_drop_sgid - fs: move should_remove_suid - attr: add in_group_or_capable - fs: move S_ISGID stripping into the vfs_* helpers - fs: add mode_strip_sgid helper - xfs: set prealloc flag in xfs_alloc_file_space - xfs: fallocate should call file_modified - xfs: remove XFS_PREALLOC_SYNC - xfs: use setattr_copy to set vfs inode attributes - tpm/eventlog: Don"t abort tpm_read_log on faulty ACPI address - watch_queue: fix IOC_WATCH_QUEUE_SET_SIZE alloc error paths - staging: rtl8723bs: Fix key-store index handling - staging: rtl8723bs: fix placement of braces - Staging: rtl8723bs: Placing opening { braces in previous line - staging: rtl8723bs: clean up comparsions to NULL - iommu/amd: Add a length limitation for the ivrs_acpihid command-line parameter - iommu/amd: Fix ill-formed ivrs_ioapic, ivrs_hpet and ivrs_acpihid options - iommu/amd: Add PCI segment support for ivrs_[ioapic/hpet/acpihid] commands - nbd: use the correct block_device in nbd_bdev_reset - irqdomain: Fix mapping-creation race - ext4: Fix deadlock during directory rename - RISC-V: Don"t check text_mutex during stop_machine - s390/ftrace: remove dead code - riscv: Use READ_ONCE_NOCHECK in imprecise unwinding stack mode - af_unix: fix struct pid leaks in OOB support - af_unix: Remove unnecessary brackets around CONFIG_AF_UNIX_OOB. - net: dsa: mt7530: permit port 5 to work without port 6 on MT7621 SoC - SUNRPC: Fix a server shutdown leak - octeontx2-af: Unlock contexts in the queue context cache in case of fault detection - net/smc: fix fallback failed while sendmsg with fastopen - platform: x86: MLX_PLATFORM: select REGMAP instead of depending on it - netfilter: conntrack: adopt safer max chain length - scsi: megaraid_sas: Update max supported LD IDs to 240 - net: ethernet: mtk_eth_soc: fix RX data corruption issue - net: phy: smsc: fix link up detection in forced irq mode - net: phy: smsc: Cache interrupt mask - btf: fix resolving BTF_KIND_VAR after ARRAY, STRUCT, UNION, PTR - netfilter: tproxy: fix deadlock due to missing BH disable - netfilter: ctnetlink: revert to dumping mark regardless of event type - bnxt_en: Avoid order-5 memory allocation for TPA data - net: phylib: get rid of unnecessary locking - net: stmmac: add to set device wake up flag when stmmac init phy - drm/msm/dpu: fix len of sc7180 ctl blocks - bpf, sockmap: Fix an infinite loop error when len is 0 in tcp_bpf_recvmsg_parser - ice: copy last block omitted in ice_get_module_eeprom - net: caif: Fix use-after-free in cfusbl_device_notify - net: lan78xx: fix accessing the LAN7800"s internal phy specific registers from the MAC driver - perf stat: Fix counting when initial delay configured - selftests: nft_nat: ensuring the listening side is up before starting the client - ila: do not generate empty messages in ila_xlat_nl_cmd_get_mapping - powerpc: dts: t1040rdb: fix compatible string for Rev A boards - nfc: fdp: add null check of devm_kmalloc_array in fdp_nci_i2c_read_device_properties - bgmac: fix *initial* chip reset to support BCM5358 - drm/msm/a5xx: fix context faults during ring switch - drm/msm/a5xx: fix the emptyness check in the preempt code - drm/msm/a5xx: fix highest bank bit for a530 - drm/msm/a5xx: fix setting of the CP_PREEMPT_ENABLE_LOCAL register - drm/msm: Fix potential invalid ptr free - drm/nouveau/kms/nv50: fix nv50_wndw_new_ prototype - drm/nouveau/kms/nv50-: remove unused functions - ext4: Fix possible corruption when moving a directory - regulator: core: Use ktime_get_boottime to determine how long a regulator was off - regulator: core: Fix off-on-delay-us for always-on/boot-on regulators - regulator: Flag uncontrollable regulators as always_on - scsi: core: Remove the /proc/scsi/ directory earlier - riscv: Add header include guards to insn.h - riscv: Avoid enabling interrupts in die - RISC-V: Avoid dereferening NULL regs in die - arm64: efi: Make efi_rt_lock a raw_spinlock - brd: mark as nowait compatible - block/brd: add error handling support for add_disk - iommu/vt-d: Fix PASID directory pointer coherency - irqdomain: Refactor __irq_domain_alloc_irqs - f2fs: retry to update the inode page given data corruption - f2fs: do not bother checkpoint by f2fs_get_node_info - f2fs: avoid down_write on nat_tree_lock during checkpoint - udf: Fix off-by-one error when discarding preallocation - fs: dlm: start midcomms before scand - fs: dlm: add midcomms init/start functions - fs: dlm: fix log of lowcomms vs midcomms - KVM: SVM: Process ICR on AVIC IPI delivery failure due to invalid target - KVM: SVM: Don"t rewrite guest ICR on AVIC IPI virtualization failure - KVM: Register /dev/kvm as the _very_ last thing during initialization - KVM: Pre-allocate cpumasks for kvm_make_all_cpus_request_except - KVM: Optimize kvm_make_vcpus_request_mask a bit - nfc: change order inside nfc_se_io error path - ext4: zero i_disksize when initializing the bootloader inode - ext4: fix WARNING in ext4_update_inline_data - ext4: move where set the MAY_INLINE_DATA flag is set - ext4: fix another off-by-one fsmap error on 1k block filesystems - ext4: fix RENAME_WHITEOUT handling for inline directories - ext4: fix cgroup writeback accounting with fs-layer encryption - staging: rtl8723bs: Pass correct parameters to cfg80211_get_bss - drm/connector: print max_requested_bpc in state debugfs - drm/amdgpu: fix error checking in amdgpu_read_mm_registers for soc15 - x86/CPU/AMD: Disable XSAVES on AMD family 0x17 - fork: allow CLONE_NEWTIME in clone3 flags - perf inject: Fix --buildid-all not to eat up MMAP2 - btrfs: fix percent calculation for bg reclaim message - LTS version: v5.15.102 - staging: rtl8192e: Remove call_usermodehelper starting RadioPower.sh - staging: rtl8192e: Remove function ..dm_check_ac_dc_power calling a script - wifi: cfg80211: Partial revert "wifi: cfg80211: Fix use after free for wext" - LTS version: v5.15.101 - Revert "drm/i915: Don"t use BAR mappings for ring buffers with LLC" - LTS version: v5.15.100 - usb: gadget: uvc: fix missing mutex_unlock if kstrtou8 fails - malidp: Fix NULL vs IS_ERR checking - scsi: mpt3sas: Remove usage of dma_get_required_mask API - scsi: mpt3sas: re-do lost mpt3sas DMA mask fix - scsi: mpt3sas: Don"t change DMA mask while reallocating pools - Revert "scsi: mpt3sas: Fix return value check of dma_get_required_mask" - drm/virtio: Fix error code in virtio_gpu_object_shmem_init - media: uvcvideo: Fix race condition with usb_kill_urb - Bluetooth: hci_sock: purge socket queues in the destruct callback - drm/display/dp_mst: Fix down message handling after a packet reception error - drm/display/dp_mst: Fix down/up message handling after sink disconnect - x86/resctl: fix scheduler confusion with "current" - net: tls: avoid hanging tasks on the tx_lock - soundwire: cadence: Drain the RX FIFO after an IO timeout - soundwire: cadence: Remove wasted space in response_buf - phy: rockchip-typec: Fix unsigned comparison with less than zero - PCI: Add ACS quirk for Wangxun NICs - PCI: loongson: Add more devices that need MRRS quirk - kernel/fail_function: fix memory leak with using debugfs_lookup - drivers: base: dd: fix memory leak with using debugfs_lookup - drivers: base: component: fix memory leak with using debugfs_lookup - misc: vmw_balloon: fix memory leak with using debugfs_lookup - tty: pcn_uart: fix memory leak with using debugfs_lookup - PCI: Take other bus devices into account when distributing resources - PCI: Align extra resources for hotplug bridges properly - usb: gadget: uvc: Make bSourceID read/write - usb: uvc: Enumerate valid values for color matching - USB: ene_usb6250: Allocate enough memory for full object - usb: host: xhci: mvebu: Iterate over array indexes instead of using pointer math - USB: gadget: pxa27x_udc: fix memory leak with using debugfs_lookup - USB: gadget: pxa25x_udc: fix memory leak with using debugfs_lookup - USB: gadget: lpc32xx_udc: fix memory leak with using debugfs_lookup - USB: gadget: bcm63xx_udc: fix memory leak with using debugfs_lookup - USB: gadget: gr_udc: fix memory leak with using debugfs_lookup - USB: isp1362: fix memory leak with using debugfs_lookup - USB: isp116x: fix memory leak with using debugfs_lookup - USB: fotg210: fix memory leak with using debugfs_lookup - USB: sl811: fix memory leak with using debugfs_lookup - USB: uhci: fix memory leak with using debugfs_lookup - USB: chipidea: fix memory leak with using debugfs_lookup - USB: dwc3: fix memory leak with using debugfs_lookup - PCI: loongson: Prevent LS7A MRRS increases - soundwire: bus_type: Avoid lockdep assert in sdw_drv_probe - iio: accel: mma9551_core: Prevent uninitialized variable in mma9551_read_config_word - iio: accel: mma9551_core: Prevent uninitialized variable in mma9551_read_status_word - tools/iio/iio_utils:fix memory leak - mei: bus-fixup:upon error print return values of send and receive - serial: sc16is7xx: setup GPIO controller later in probe - tty: serial: fsl_lpuart: disable the CTS when send break signal - tty: fix out-of-bounds access in tty_driver_lookup_tty - staging: emxx_udc: Add checks for dma_alloc_coherent - USB: fix memory leak with using debugfs_lookup - media: uvcvideo: Silence memcpy run-time false positive warnings - media: uvcvideo: Quirk for autosuspend in Logitech B910 and C910 - media: uvcvideo: Handle errors from calls to usb_string - media: uvcvideo: Handle cameras with invalid descriptors - media: uvcvideo: Remove format descriptions - iommu/amd: Fix error handling for pdev_pri_ats_enable - IB/hfi1: Update RMT size calculation - mfd: arizona: Use pm_runtime_resume_and_get to prevent refcnt leak - bootconfig: Increase max nodes of bootconfig from 1024 to 8192 for DCC support - firmware/efi sysfb_efi: Add quirk for Lenovo IdeaPad Duet 3 - kernel/printk/index.c: fix memory leak with using debugfs_lookup - tracing: Add NULL checks for buffer in ring_buffer_free_read_page - thermal: intel: BXT_PMIC: select REGMAP instead of depending on it - thermal: intel: quark_dts: fix error pointer dereference - ASoC: mediatek: mt8195: add missing initialization - ASoC: zl38060 add gpiolib dependency - ASoC: zl38060: Remove spurious gpiolib select - ASoC: adau7118: don"t disable regulators on device unbind - loop: loop_set_status_from_info check before assignment - rtc: allow rtc_read_alarm without read_alarm callback - scsi: ipr: Work around fortify-string warning - genirq: Add and use an irq_data_update_affinity helper - genirq: Refactor accessors to use irq_data_get_affinity_mask - rtc: sun6i: Always export the internal oscillator - vc_screen: modify vcs_size handling in vcs_read - tcp: tcp_check_req can be called from process context - ARM: dts: spear320-hmi: correct STMPE GPIO compatible - net/sched: act_sample: fix action bind logic - net/sched: act_mpls: fix action bind logic - net/sched: act_pedit: fix action bind logic - net/sched: transition act_pedit to rcu and percpu stats - nfc: fix memory leak of se_io context in nfc_genl_se_io - net/mlx5: Geneve, Fix handling of Geneve object id as error code - net/mlx5e: Verify flow_source cap before using it - 9p/rdma: unmap receive dma buffer in rdma_request/post_recv - 9p/xen: fix connection sequence - 9p/xen: fix version parsing - net: fix __dev_kfree_skb_any vs drop monitor - octeontx2-pf: Use correct struct reference in test condition - sctp: add a refcnt in sctp_stream_priorities to avoid a nested loop - ipv6: Add lwtunnel encap size of all siblings in nexthop calculation - netfilter: x_tables: fix percpu counter block leak on error path when creating new netns - netfilter: ebtables: fix table blob use-after-free - netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack - watchdog: sbsa_wdog: Make sure the timeout programming is within the limits - watchdog: pcwd_usb: Fix attempting to access uninitialized memory - watchdog: Fix kmemleak in watchdog_cdev_register - watchdog: at91sam9_wdt: use devm_request_irq to avoid missing free_irq in error path - um: virt-pci: properly remove PCI device from bus - um: virtio_uml: move device breaking into workqueue - um: virtio_uml: mark device as unregistered when breaking it - um: virtio_uml: free command if adding to virtqueue failed - x86: um: vdso: Add "%rcx" and "%r11" to the syscall clobber list - netfilter: nf_tables: allow to fetch set elements when table has an owner - ext4: use ext4_fc_tl_mem in fast-commit replay path - f2fs: fix to avoid potential memory corruption in __update_iostat_latency - ubi: ubi_wl_put_peb: Fix infinite loop when wear-leveling work failed - ubi: Fix UAF wear-leveling entry in eraseblk_count_seq_show - ubi: fastmap: Fix missed fm_anchor PEB in wear-leveling after disabling fastmap - ubifs: ubifs_writepage: Mark page dirty after writing inode failed - ubifs: dirty_cow_znode: Fix memleak in error handling path - ubifs: Re-statistic cleaned znode count if commit failed - ubi: Fix possible null-ptr-deref in ubi_free_volume - ubifs: Fix memory leak in alloc_wbufs - ubi: Fix unreferenced object reported by kmemleak in ubi_resize_volume - ubi: Fix use-after-free when volume resizing failed - ubifs: Reserve one leb for each journal head while doing budget - ubifs: do_rename: Fix wrong space budget when target inode"s nlink

Platform:
Oracle Linux 8
Oracle Linux 9
Product:
kernel-uek
bpftool
Reference:
ELSA-2023-12339
CVE-2023-30456
CVE    1
CVE-2023-30456
CPE    4
cpe:/o:oracle:linux:8
cpe:/o:oracle:kernel-uek
cpe:/a:bpf:bpftool
cpe:/o:oracle:linux:9
...

© SecPod Technologies