SCIENTIFIC-LINUX-ERRATA Archives

October 2018

SCIENTIFIC-LINUX-ERRATA@LISTSERV.FNAL.GOV

Options: Use Monospaced Font
Show Text Part by Default
Show All Mail Headers

Message: [<< First] [< Prev] [Next >] [Last >>]
Topic: [<< First] [< Prev] [Next >] [Last >>]
Author: [<< First] [< Prev] [Next >] [Last >>]

Print Reply
Subject:
From:
Scott Reid <[log in to unmask]>
Reply To:
Date:
Wed, 10 Oct 2018 17:34:52 -0000
Content-Type:
text/plain
Parts/Attachments:
text/plain (60 lines)
Synopsis:          Important: kernel security and bug fix update
Advisory ID:       SLSA-2018:2846-1
Issue Date:        2018-10-09
CVE Numbers:       CVE-2018-14634
                   CVE-2018-5391
--

Security Fix(es):

* A flaw named FragmentSmack was found in the way the Linux kernel handled
reassembly of fragmented IPv4 and IPv6 packets. A remote attacker could
use this flaw to trigger time and calculation expensive fragment
reassembly algorithm by sending specially crafted packets which could lead
to a CPU saturation and hence a denial of service on the system.
(CVE-2018-5391)

* kernel: Integer overflow in Linux's create_elf_tables function
(CVE-2018-14634)
--

SL6
  x86_64
    kernel-2.6.32-754.6.3.el6.x86_64.rpm
    kernel-debug-2.6.32-754.6.3.el6.x86_64.rpm
    kernel-debug-debuginfo-2.6.32-754.6.3.el6.i686.rpm
    kernel-debug-debuginfo-2.6.32-754.6.3.el6.x86_64.rpm
    kernel-debug-devel-2.6.32-754.6.3.el6.i686.rpm
    kernel-debug-devel-2.6.32-754.6.3.el6.x86_64.rpm
    kernel-debuginfo-2.6.32-754.6.3.el6.i686.rpm
    kernel-debuginfo-2.6.32-754.6.3.el6.x86_64.rpm
    kernel-debuginfo-common-i686-2.6.32-754.6.3.el6.i686.rpm
    kernel-debuginfo-common-x86_64-2.6.32-754.6.3.el6.x86_64.rpm
    kernel-devel-2.6.32-754.6.3.el6.x86_64.rpm
    kernel-headers-2.6.32-754.6.3.el6.x86_64.rpm
    perf-2.6.32-754.6.3.el6.x86_64.rpm
    perf-debuginfo-2.6.32-754.6.3.el6.i686.rpm
    perf-debuginfo-2.6.32-754.6.3.el6.x86_64.rpm
    python-perf-debuginfo-2.6.32-754.6.3.el6.i686.rpm
    python-perf-debuginfo-2.6.32-754.6.3.el6.x86_64.rpm
    python-perf-2.6.32-754.6.3.el6.x86_64.rpm
  i386
    kernel-2.6.32-754.6.3.el6.i686.rpm
    kernel-debug-2.6.32-754.6.3.el6.i686.rpm
    kernel-debug-debuginfo-2.6.32-754.6.3.el6.i686.rpm
    kernel-debug-devel-2.6.32-754.6.3.el6.i686.rpm
    kernel-debuginfo-2.6.32-754.6.3.el6.i686.rpm
    kernel-debuginfo-common-i686-2.6.32-754.6.3.el6.i686.rpm
    kernel-devel-2.6.32-754.6.3.el6.i686.rpm
    kernel-headers-2.6.32-754.6.3.el6.i686.rpm
    perf-2.6.32-754.6.3.el6.i686.rpm
    perf-debuginfo-2.6.32-754.6.3.el6.i686.rpm
    python-perf-debuginfo-2.6.32-754.6.3.el6.i686.rpm
    python-perf-2.6.32-754.6.3.el6.i686.rpm
  noarch
    kernel-abi-whitelists-2.6.32-754.6.3.el6.noarch.rpm
    kernel-doc-2.6.32-754.6.3.el6.noarch.rpm
    kernel-firmware-2.6.32-754.6.3.el6.noarch.rpm

- Scientific Linux Development Team

ATOM RSS1 RSS2