Oracle Linux 6281 Published by

Oracle Linux has announced the release of multiple security updates, which include iperf3, dpdk, thunderbird, webkit2gtk3, firefox, kernel, nodejs:22, cloud-init, maven, ant, dpdk, iperf3, libselinux, libsemanage, and selinux-policy:

ELSA-2025-0161 Important: Oracle Linux 9 iperf3 security update
ELSA-2025-0210 Important: Oracle Linux 9 dpdk security update
ELSA-2025-0147 Important: Oracle Linux 9 thunderbird security update
ELSA-2025-0146 Important: Oracle Linux 9 webkit2gtk3 security update
ELSA-2025-0080 Important: Oracle Linux 9 firefox security update
ELSA-2024-11486 Moderate: Oracle Linux 9 kernel security update
ELEA-2024-11235 Oracle Linux 9 nodejs:22 bug fix and enhancement update
ELBA-2024-11227 Oracle Linux 9 cloud-init bug fix update
ELBA-2024-11222 Oracle Linux 9 maven bug fix update
ELBA-2024-11220 Oracle Linux 9 ant bug fix update
ELSA-2025-0222 Important: Oracle Linux 8 dpdk security update
ELSA-2025-0168 Important: Oracle Linux 8 iperf3 security update
ELBA-2024-11159 Oracle Linux 8 libselinux, libsemanage, and selinux-policy bug fix and enhancement update
ELSA-2025-0083 Low: Oracle Linux 8 cups security update
ELSA-2025-0145 Important: Oracle Linux 8 webkit2gtk3 security update
ELSA-2025-0144 Important: Oracle Linux 8 firefox security update
ELSA-2025-0065 Important: Oracle Linux 8 kernel security update
ELBA-2025-20016 Oracle Linux 8 kexec-tools bug fix update
ELBA-2025-20005 Oracle Linux 8 oracle-ovirt-release-el8 bug fix update
ELBA-2025-20004 Oracle Linux 8 oracle-ovirt-release-45-el8 bug fix update
ELBA-2024-12896 Oracle Linux 8 cloud-init bug fix update
ELSA-2025-20007 Important: Oracle Linux 7 Unbreakable Enterprise kernel security update
ELSA-2025-20007 Important: Oracle Linux 6 Extended Lifecycle Support (ELS) Unbreakable Enterprise kernel security update
ELBA-2025-20014 Oracle Linux 7 Unbreakable Enterprise kernel bug fix update (aarch64)
ELBA-2025-20014 Oracle Linux 7 Unbreakable Enterprise kernel bug fix update




ELSA-2025-0161 Important: Oracle Linux 9 iperf3 security update


Oracle Linux Security Advisory ELSA-2025-0161

http://linux.oracle.com/errata/ELSA-2025-0161.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
iperf3-3.9-13.el9_5.1.i686.rpm
iperf3-3.9-13.el9_5.1.x86_64.rpm

aarch64:
iperf3-3.9-13.el9_5.1.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates//iperf3-3.9-13.el9_5.1.src.rpm

Related CVEs:

CVE-2024-53580

Description of changes:

[3.9-13.1]
- Resolves: RHEL-72929 - Denial of Service in iperf Due to Improper JSON Handling



ELSA-2025-0210 Important: Oracle Linux 9 dpdk security update


Oracle Linux Security Advisory ELSA-2025-0210

http://linux.oracle.com/errata/ELSA-2025-0210.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
dpdk-23.11-2.el9_5.x86_64.rpm
dpdk-devel-23.11-2.el9_5.x86_64.rpm
dpdk-doc-23.11-2.el9_5.noarch.rpm
dpdk-tools-23.11-2.el9_5.x86_64.rpm

aarch64:
dpdk-23.11-2.el9_5.aarch64.rpm
dpdk-devel-23.11-2.el9_5.aarch64.rpm
dpdk-doc-23.11-2.el9_5.noarch.rpm
dpdk-tools-23.11-2.el9_5.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates//dpdk-23.11-2.el9_5.src.rpm

Related CVEs:

CVE-2024-11614

Description of changes:

[23.11-2]
- Backport fixes for CVE-2024-11614 (RHEL-68601)



ELSA-2025-0147 Important: Oracle Linux 9 thunderbird security update


Oracle Linux Security Advisory ELSA-2025-0147

http://linux.oracle.com/errata/ELSA-2025-0147.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
thunderbird-128.6.0-3.0.1.el9_5.x86_64.rpm

aarch64:
thunderbird-128.6.0-3.0.1.el9_5.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates//thunderbird-128.6.0-3.0.1.el9_5.src.rpm

Related CVEs:

CVE-2025-0242
CVE-2025-0243

Description of changes:

[128.6.0-3.0.1]
- Fix prefs for new nss [Orabug: 37079813]
- Add Oracle prefs

[128.6.0]
- Add OpenELA debranding

[128.6.0-3]
- Update to 128.6.0 build3

[128.6.0-1]
- Update to 128.6.0 build1



ELSA-2025-0146 Important: Oracle Linux 9 webkit2gtk3 security update


Oracle Linux Security Advisory ELSA-2025-0146

http://linux.oracle.com/errata/ELSA-2025-0146.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
webkit2gtk3-2.46.5-1.el9_5.i686.rpm
webkit2gtk3-2.46.5-1.el9_5.x86_64.rpm
webkit2gtk3-devel-2.46.5-1.el9_5.i686.rpm
webkit2gtk3-devel-2.46.5-1.el9_5.x86_64.rpm
webkit2gtk3-jsc-2.46.5-1.el9_5.i686.rpm
webkit2gtk3-jsc-2.46.5-1.el9_5.x86_64.rpm
webkit2gtk3-jsc-devel-2.46.5-1.el9_5.i686.rpm
webkit2gtk3-jsc-devel-2.46.5-1.el9_5.x86_64.rpm

aarch64:
webkit2gtk3-2.46.5-1.el9_5.aarch64.rpm
webkit2gtk3-devel-2.46.5-1.el9_5.aarch64.rpm
webkit2gtk3-jsc-2.46.5-1.el9_5.aarch64.rpm
webkit2gtk3-jsc-devel-2.46.5-1.el9_5.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates//webkit2gtk3-2.46.5-1.el9_5.src.rpm

Related CVEs:

CVE-2024-54479
CVE-2024-54502
CVE-2024-54505
CVE-2024-54508

Description of changes:

[2.46.5-1]
- Update to 2.46.5



ELSA-2025-0080 Important: Oracle Linux 9 firefox security update


Oracle Linux Security Advisory ELSA-2025-0080

http://linux.oracle.com/errata/ELSA-2025-0080.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
firefox-128.6.0-1.0.1.el9_5.x86_64.rpm
firefox-x11-128.6.0-1.0.1.el9_5.x86_64.rpm

aarch64:
firefox-128.6.0-1.0.1.el9_5.aarch64.rpm
firefox-x11-128.6.0-1.0.1.el9_5.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates//firefox-128.6.0-1.0.1.el9_5.src.rpm

Related CVEs:

CVE-2025-0237
CVE-2025-0238
CVE-2025-0239
CVE-2025-0240
CVE-2025-0241
CVE-2025-0242
CVE-2025-0243

Description of changes:

[128.6.0-1.0.1]
- Fix firefox-oracle-default-prefs.js for new nss [Orabug: 37079773]
- Add firefox-oracle-default-prefs.js and remove the corresponding Red Hat file

[128.6.0]
- Add debranding patches (Mustafa Gezen)
- Add OpenELA default preferences (Louis Abel)

[128.6.0-1]
- Update to 128.6.0 build1



ELSA-2024-11486 Moderate: Oracle Linux 9 kernel security update


Oracle Linux Security Advisory ELSA-2024-11486

http://linux.oracle.com/errata/ELSA-2024-11486.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
bpftool-7.4.0-503.19.1.el9_5.x86_64.rpm
kernel-5.14.0-503.19.1.el9_5.x86_64.rpm
kernel-abi-stablelists-5.14.0-503.19.1.el9_5.noarch.rpm
kernel-core-5.14.0-503.19.1.el9_5.x86_64.rpm
kernel-debug-5.14.0-503.19.1.el9_5.x86_64.rpm
kernel-debug-core-5.14.0-503.19.1.el9_5.x86_64.rpm
kernel-debug-devel-5.14.0-503.19.1.el9_5.x86_64.rpm
kernel-debug-devel-matched-5.14.0-503.19.1.el9_5.x86_64.rpm
kernel-debug-modules-5.14.0-503.19.1.el9_5.x86_64.rpm
kernel-debug-modules-core-5.14.0-503.19.1.el9_5.x86_64.rpm
kernel-debug-modules-extra-5.14.0-503.19.1.el9_5.x86_64.rpm
kernel-debug-uki-virt-5.14.0-503.19.1.el9_5.x86_64.rpm
kernel-devel-5.14.0-503.19.1.el9_5.x86_64.rpm
kernel-devel-matched-5.14.0-503.19.1.el9_5.x86_64.rpm
kernel-doc-5.14.0-503.19.1.el9_5.noarch.rpm
kernel-headers-5.14.0-503.19.1.el9_5.x86_64.rpm
kernel-modules-5.14.0-503.19.1.el9_5.x86_64.rpm
kernel-modules-core-5.14.0-503.19.1.el9_5.x86_64.rpm
kernel-modules-extra-5.14.0-503.19.1.el9_5.x86_64.rpm
kernel-tools-5.14.0-503.19.1.el9_5.x86_64.rpm
kernel-tools-libs-5.14.0-503.19.1.el9_5.x86_64.rpm
kernel-uki-virt-5.14.0-503.19.1.el9_5.x86_64.rpm
kernel-uki-virt-addons-5.14.0-503.19.1.el9_5.x86_64.rpm
perf-5.14.0-503.19.1.el9_5.x86_64.rpm
python3-perf-5.14.0-503.19.1.el9_5.x86_64.rpm
rtla-5.14.0-503.19.1.el9_5.x86_64.rpm
rv-5.14.0-503.19.1.el9_5.x86_64.rpm
kernel-cross-headers-5.14.0-503.19.1.el9_5.x86_64.rpm
kernel-tools-libs-devel-5.14.0-503.19.1.el9_5.x86_64.rpm
libperf-5.14.0-503.19.1.el9_5.x86_64.rpm

aarch64:
bpftool-7.4.0-503.19.1.el9_5.aarch64.rpm
kernel-headers-5.14.0-503.19.1.el9_5.aarch64.rpm
kernel-tools-5.14.0-503.19.1.el9_5.aarch64.rpm
kernel-tools-libs-5.14.0-503.19.1.el9_5.aarch64.rpm
perf-5.14.0-503.19.1.el9_5.aarch64.rpm
python3-perf-5.14.0-503.19.1.el9_5.aarch64.rpm
rtla-5.14.0-503.19.1.el9_5.aarch64.rpm
rv-5.14.0-503.19.1.el9_5.aarch64.rpm
kernel-cross-headers-5.14.0-503.19.1.el9_5.aarch64.rpm
kernel-tools-libs-devel-5.14.0-503.19.1.el9_5.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates//kernel-5.14.0-503.19.1.el9_5.src.rpm

Related CVEs:

CVE-2024-27399
CVE-2024-38564
CVE-2024-45020
CVE-2024-46697
CVE-2024-47675
CVE-2024-49888
CVE-2024-50099
CVE-2024-50110
CVE-2024-50115
CVE-2024-50124
CVE-2024-50125
CVE-2024-50142
CVE-2024-50148
CVE-2024-50192
CVE-2024-50223
CVE-2024-50255
CVE-2024-50262

Description of changes:

[5.14.0-503.19.1.el9_5.OL9]
- Disable UKI signing [Orabug: 36571828]
- Update Oracle Linux certificates (Kevin Lyons)
- Disable signing for aarch64 (Ilya Okomin)
- Oracle Linux RHCK Module Signing Key was added to the kernel trusted keys list (olkmod_signing_key.pem) [Orabug: 29539237]
- Update x509.genkey [Orabug: 24817676]
- Conflict with shim-ia32 and shim-x64