SCIENTIFIC-LINUX-ERRATA Archives

September 2017

SCIENTIFIC-LINUX-ERRATA@LISTSERV.FNAL.GOV

Options: Use Monospaced Font
Show Text Part by Default
Show All Mail Headers

Message: [<< First] [< Prev] [Next >] [Last >>]
Topic: [<< First] [< Prev] [Next >] [Last >>]
Author: [<< First] [< Prev] [Next >] [Last >>]

Print Reply
Subject:
From:
Pat Riehecky <[log in to unmask]>
Reply To:
Date:
Tue, 26 Sep 2017 22:34:57 -0000
Content-Type:
text/plain
Parts/Attachments:
text/plain (57 lines)
Synopsis:          Important: kernel security update
Advisory ID:       SLSA-2017:2795-1
Issue Date:        2017-09-26
CVE Numbers:       CVE-2017-1000253
--

Security Fix(es):

* A flaw was found in the way the Linux kernel loaded ELF executables.
Provided that an application was built as Position Independent Executable
(PIE), the loader could allow part of that application's data segment to
map over the memory area reserved for its stack, potentially resulting in
memory corruption. An unprivileged local user with access to SUID (or
otherwise privileged) PIE binary could use this flaw to escalate their
privileges on the system. (CVE-2017-1000253, Important)
--

SL6
  x86_64
    kernel-2.6.32-696.10.3.el6.x86_64.rpm
    kernel-debug-2.6.32-696.10.3.el6.x86_64.rpm
    kernel-debug-debuginfo-2.6.32-696.10.3.el6.i686.rpm
    kernel-debug-debuginfo-2.6.32-696.10.3.el6.x86_64.rpm
    kernel-debug-devel-2.6.32-696.10.3.el6.i686.rpm
    kernel-debug-devel-2.6.32-696.10.3.el6.x86_64.rpm
    kernel-debuginfo-2.6.32-696.10.3.el6.i686.rpm
    kernel-debuginfo-2.6.32-696.10.3.el6.x86_64.rpm
    kernel-debuginfo-common-i686-2.6.32-696.10.3.el6.i686.rpm
    kernel-debuginfo-common-x86_64-2.6.32-696.10.3.el6.x86_64.rpm
    kernel-devel-2.6.32-696.10.3.el6.x86_64.rpm
    kernel-headers-2.6.32-696.10.3.el6.x86_64.rpm
    perf-2.6.32-696.10.3.el6.x86_64.rpm
    perf-debuginfo-2.6.32-696.10.3.el6.i686.rpm
    perf-debuginfo-2.6.32-696.10.3.el6.x86_64.rpm
    python-perf-debuginfo-2.6.32-696.10.3.el6.i686.rpm
    python-perf-debuginfo-2.6.32-696.10.3.el6.x86_64.rpm
    python-perf-2.6.32-696.10.3.el6.x86_64.rpm
  i386
    kernel-2.6.32-696.10.3.el6.i686.rpm
    kernel-debug-2.6.32-696.10.3.el6.i686.rpm
    kernel-debug-debuginfo-2.6.32-696.10.3.el6.i686.rpm
    kernel-debug-devel-2.6.32-696.10.3.el6.i686.rpm
    kernel-debuginfo-2.6.32-696.10.3.el6.i686.rpm
    kernel-debuginfo-common-i686-2.6.32-696.10.3.el6.i686.rpm
    kernel-devel-2.6.32-696.10.3.el6.i686.rpm
    kernel-headers-2.6.32-696.10.3.el6.i686.rpm
    perf-2.6.32-696.10.3.el6.i686.rpm
    perf-debuginfo-2.6.32-696.10.3.el6.i686.rpm
    python-perf-debuginfo-2.6.32-696.10.3.el6.i686.rpm
    python-perf-2.6.32-696.10.3.el6.i686.rpm
  noarch
    kernel-abi-whitelists-2.6.32-696.10.3.el6.noarch.rpm
    kernel-doc-2.6.32-696.10.3.el6.noarch.rpm
    kernel-firmware-2.6.32-696.10.3.el6.noarch.rpm

- Scientific Linux Development Team

ATOM RSS1 RSS2