El-errata: ELSA-2021-9009 Important: Oracle Linux 6 Unbreakable Enterprise kernel security update
Oracle Linux Security Advisory ELSA-2021-9009
http://linux.oracle.com/errata/ELSA-2021-9009.html
The following updated rpms for Oracle Linux 6 have been uploaded to the
Unbreakable Linux Network:
x86_64:
kernel-uek-doc-4.1.12-124.46.4.1.el6uek.noarch.rpm
kernel-uek-firmware-4.1.12-124.46.4.1.el6uek.noarch.rpm
kernel-uek-4.1.12-124.46.4.1.el6uek.x86_64.rpm
kernel-uek-devel-4.1.12-124.46.4.1.el6uek.x86_64.rpm
kernel-uek-debug-4.1.12-124.46.4.1.el6uek.x86_64.rpm
kernel-uek-debug-devel-4.1.12-124.46.4.1.el6uek.x86_64.rpm
SRPMS:
http://oss.oracle.com/ol6/SRPMS-updates/kernel-uek-4.1.12-124.46.4.1.el6uek.src.rpm
Description of changes:
[4.1.12-124.46.4.1.el6uek]
- target: fix XCOPY NAA identifier lookup (Mike Christie) [Orabug:
32248041] {CVE-2020-28374}
[4.1.12-124.46.4.el6uek]
- xen/events: block rogue events for some time (Juergen Gross) [Orabug:
31984335] {CVE-2020-27673}
- xen/events: defer eoi in case of excessive number of events (Juergen
Gross) [Orabug: 31984335] {CVE-2020-27673}
- xen/events: use a common cpu hotplug hook for event channels (Juergen
Gross) [Orabug: 31984335] {CVE-2020-27673}
- xen/events: switch user event channels to lateeoi model (Juergen
Gross) [Orabug: 31984335] {CVE-2020-27673}
- xen/pciback: use lateeoi irq binding (Juergen Gross) [Orabug:
31984335] {CVE-2020-27673}
- xen/scsiback: use lateeoi irq binding (Juergen Gross) [Orabug:
31984335] {CVE-2020-27673}
- xen/netback: use lateeoi irq binding (Juergen Gross) [Orabug:
31984335] {CVE-2020-27673}
- xen/blkback: use lateeoi irq binding (Juergen Gross) [Orabug:
31984335] {CVE-2020-27673}
- xen/events: add a new "late EOI" evtchn framework (Juergen Gross)
[Orabug: 31984335] {CVE-2020-27673}
- xen/events: fix race in evtchn_fifo_unmask() (Juergen Gross) [Orabug:
31984335] {CVE-2020-27673}
- xen/events: add a proper barrier to 2-level uevent unmasking (Juergen
Gross) [Orabug: 31984335] {CVE-2020-27673}
- xen-blkback: set ring->xenblkd to NULL after kthread_stop() (Pawel
Wieczorkiewicz) [Orabug: 32223358] {CVE-2020-29569}
An Unbreakable Enterprise kernel security update has been released for Oracle Linux 6.