Description: | Summary: The remote host is missing an update for the 'kernel' package(s) announced via the ELSA-2015-2636 advisory.
Vulnerability Insight: [2.6.32-573.12.1] - Revert: [netdrv] igb: add support for 1512 PHY (Stefan Assmann) [1278275 1238551]
[2.6.32-573.11.1] - [kvm] svm: unconditionally intercept DB (Paolo Bonzini) [1279467 1279468] {CVE-2015-8104} - [x86] virt: guest to host DoS by triggering an infinite loop in microcode (Paolo Bonzini) [1277557 1277559] {CVE-2015-5307}
[2.6.32-573.10.1] - [sound] Fix USB audio issues (wrong URB_ISO_ASAP semantics) (Jaroslav Kysela) [1273916 1255071] - [security] keys: Don't permit request_key() to construct a new keyring (David Howells) [1275927 1273463] {CVE-2015-7872} - [security] keys: Fix crash when attempt to garbage collect an uninstantiated keyring (David Howells) [1275927 1273463] {CVE-2015-7872} - [security] keys: Fix race between key destruction and finding a keyring by name (David Howells) [1275927 1273463] {CVE-2015-7872} - [ipc] Initialize msg/shm IPC objects before doing ipc_addid() (Stanislav Kozina) [1271504 1271505] {CVE-2015-7613} - [fs] vfs: Test for and handle paths that are unreachable from their mnt_root (Eric W. Biederman) [1209368 1209369] {CVE-2015-2925} - [fs] dcache: Handle escaped paths in prepend_path (Eric W. Biederman) [1209368 1209369] {CVE-2015-2925} - [netdrv] igb: add support for 1512 PHY (Stefan Assmann) [1278275 1238551] - [hid] fix unused rsize usage (Don Zickus) [1268203 1256568] - [hid] fix data access in implement() (Don Zickus) [1268203 1256568] - [fs] NFS: Hold i_lock in nfs_wb_page_cancel() while locking a request (Benjamin Coddington) [1273721 1135601]
[2.6.32-573.9.1] - [mm] hugetlb: fix race in region tracking (Herton R. Krzesinski) [1274599 1260755] - [mm] hugetlb: improve, cleanup resv_map parameters (Herton R. Krzesinski) [1274599 1260755] - [mm] hugetlb: unify region structure handling (Herton R. Krzesinski) [1274599 1260755] - [mm] hugetlb: change variable name reservations to resv (Herton R. Krzesinski) [1274599 1260755] - [fs] dcache: Log ELOOP rather than creating a loop (Benjamin Coddington) [1272858 1254020] - [fs] dcache: Fix loop checks in d_materialise_unique (Benjamin Coddington) [1272858 1254020]
Affected Software/OS: 'kernel' package(s) on Oracle Linux 6.
Solution: Please install the updated package(s).
CVSS Score: 6.9
CVSS Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C
|