An Unbreakable Enterprise kernel security update has been released for Oracle Linux 7.
Oracle Linux Security Advisory ELSA-2020-5543
http://linux.oracle.com/errata/ELSA-2020-5543.html
The following updated rpms for Oracle Linux 7 have been uploaded to the
Unbreakable Linux Network:
x86_64:
kernel-uek-doc-4.1.12-124.36.4.el7uek.noarch.rpm
kernel-uek-firmware-4.1.12-124.36.4.el7uek.noarch.rpm
kernel-uek-4.1.12-124.36.4.el7uek.x86_64.rpm
kernel-uek-devel-4.1.12-124.36.4.el7uek.x86_64.rpm
kernel-uek-debug-4.1.12-124.36.4.el7uek.x86_64.rpm
kernel-uek-debug-devel-4.1.12-124.36.4.el7uek.x86_64.rpm
SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates/kernel-uek-4.1.12-124.36.4.el7uek.src.rpm
Description of changes:
[4.1.12-124.36.4.el7uek]
- KVM: nVMX: Check IO instruction VM-exit conditions (Oliver Upton)
[Orabug: 30944739] {CVE-2020-2732}
- KVM: nVMX: Refactor IO bitmap checks into helper function (Oliver
Upton) [Orabug: 30944739] {CVE-2020-2732}
- KVM: nVMX: Don't emulate instructions in guest mode (Paolo Bonzini)
[Orabug: 30944739] {CVE-2020-2732}