Updated Unbreakable Enterprise kernel packages has been released for Oracle Linux 6 to address security issues on some Intel CPUs
Oracle Linux Security Advisory ELSA-2019-4839
http://linux.oracle.com/errata/ELSA-2019-4839.html
The following updated rpms for Oracle Linux 6 have been uploaded to the
Unbreakable Linux Network:
i386:
kernel-uek-2.6.39-400.315.1.1.el6uek.i686.rpm
kernel-uek-debug-2.6.39-400.315.1.1.el6uek.i686.rpm
kernel-uek-debug-devel-2.6.39-400.315.1.1.el6uek.i686.rpm
kernel-uek-devel-2.6.39-400.315.1.1.el6uek.i686.rpm
kernel-uek-doc-2.6.39-400.315.1.1.el6uek.noarch.rpm
kernel-uek-firmware-2.6.39-400.315.1.1.el6uek.noarch.rpm
x86_64:
kernel-uek-firmware-2.6.39-400.315.1.1.el6uek.noarch.rpm
kernel-uek-doc-2.6.39-400.315.1.1.el6uek.noarch.rpm
kernel-uek-2.6.39-400.315.1.1.el6uek.x86_64.rpm
kernel-uek-devel-2.6.39-400.315.1.1.el6uek.x86_64.rpm
kernel-uek-debug-devel-2.6.39-400.315.1.1.el6uek.x86_64.rpm
kernel-uek-debug-2.6.39-400.315.1.1.el6uek.x86_64.rpm
SRPMS:
http://oss.oracle.com/ol6/SRPMS-updates/kernel-uek-2.6.39-400.315.1.1.el6uek.src.rpm
Description of changes:
[2.6.39-400.315.1.1.el6uek]
- x86/tsx: Add config options to set tsx=on|off|auto (Michal Hocko)
[Orabug: 30419231] {CVE-2019-11135}
- x86/speculation/taa: Add documentation for TSX Async Abort (Pawan
Gupta) [Orabug: 30419231] {CVE-2019-11135}
- x86/tsx: Add "auto" option to TSX cmdline parameter (Pawan Gupta)
[Orabug: 30419231] {CVE-2019-11135}
- x86/speculation/taa: Add sysfs reporting for TSX Async Abort (Pawan
Gupta) [Orabug: 30419231] {CVE-2019-11135}
- x86/speculation/taa: Add mitigation for TSX Async Abort (Pawan Gupta)
[Orabug: 30419231] {CVE-2019-11135}
- x86/tsx: Add TSX cmdline option with TSX disabled by default (Pawan
Gupta) [Orabug: 30419231] {CVE-2019-11135}
- x86: Add helper function x86_read_arch_cap_msr() (Pawan Gupta)
[Orabug: 30419231] {CVE-2019-11135}
- x86/tsx: Add enumeration support for IA32_TSX_CTRL MSR (Pawan Gupta)
[Orabug: 30419231] {CVE-2019-11135}