Description: | Summary: The remote host is missing an update for the 'kernel, ocfs2-2.6.18-53.1.14.0.1.el5, oracleasm-2.6.18-53.1.14.0.1.el5' package(s) announced via the ELSA-2008-0154 advisory.
Vulnerability Insight: [2.6.18-53.1.14.0.1.el5] - [NET] Add entropy support to e1000 and bnx2 (John Sobecki) [orabug 6045759] - [NET] Fix msi issue with kexec/kdump (Michael Chan) [orabug 6219364] - [MM] Fix alloc_pages_node() static `nid' race made kernel crash (Joe Jin) [orabug 6187457] - [splice] Fix bad unlock_page() in error case (Jens Axboe) [orabug 6263574] - [dio] fix error-path crashes (Linus Torvalds) [orabug 6242289]
[2.6.18-53.1.14.el5] - merge from 2.6.18-53.1.13 to 2.6.18-53.1.12 - [nfs] potential file corruption issue when writing (Jeff Layton ) [432078] - [ppc] chrp: fix possible strncmp NULL pointer usage (Vitaly Mayatskikh ) [396821] - [isdn] i4l: fix memory overruns (Vitaly Mayatskikh ) [425171] - [isdn] fix possible isdn_net buffer overflows (Aristeu Rozanski ) [392151] {CVE-2007-6063} - [mm] hugepages: leak due to pagetable page sharing (Larry Woodman ) [431522] - [net] NULL dereference in iwl driver (Vitaly Mayatskikh ) [401421] {CVE-2007-5938} - [misc] Denial of service with wedged processes (Jerome Marchand ) [221403] - [xen] ia64: hvm guest memory range checking (Jarod Wilson ) [408701]
Affected Software/OS: 'kernel, ocfs2-2.6.18-53.1.14.0.1.el5, oracleasm-2.6.18-53.1.14.0.1.el5' package(s) on Oracle Linux 5.
Solution: Please install the updated package(s).
CVSS Score: 7.8
CVSS Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C
|