[CLSA-2023:1700590262] kernel: Fix of 10 CVEs
Type:
security
Severity:
Important
Release date:
2023-11-21
Description:
- openvswitch: fix OOB access in reserve_sfa_size() {CVE-2022-2639} - xen/blkfront: fix leaking data in shared pages {CVE-2022-26365} - Bluetooth: Fix slab-out-of-bounds read in hci_extended_inquiry_result_evt() {CVE-2020-36386} - btrfs: only search for left_info if there is no right_info in try_merge_free_space {CVE-2019-19448} - filldir[64]: remove WARN_ON_ONCE() for bad directory entries {CVE-2019-10220} - Make filldir[64]() verify the directory entry filename is valid {CVE-2019-10220} - ath9k: release allocated buffer if timed out {CVE-2019-19074} - net: sched: sch_qfq: prevent slab-out-of-bounds in {CVE-2023-31436} - memstick: r592: Fix UAF bug in r592_remove due to race {CVE-2023-3141} - wifi: rndis_wlan: Prevent buffer overflow in rndis_query_oid {CVE-2023-23559} - ext4: fix kernel infoleak via ext4_extent_header {CVE-2022-0850}
Updated packages:
  • kernel-2.6.32-754.35.8.el6.tuxcare.els13.x86_64.rpm
    sha:a65ee5c154838296c70c0110121b8674314544f9
  • kernel-debug-2.6.32-754.35.8.el6.tuxcare.els13.x86_64.rpm
    sha:2f8bb3c13570f1e52619806906e4c55339495cfb
  • kernel-debug-devel-2.6.32-754.35.8.el6.tuxcare.els13.i686.rpm
    sha:6d0c918cbe6952db963ac188d54749a706c2c80e
  • kernel-debug-devel-2.6.32-754.35.8.el6.tuxcare.els13.x86_64.rpm
    sha:d39ce333b7f8d05f3da73d300a5a15397cef38ad
  • kernel-devel-2.6.32-754.35.8.el6.tuxcare.els13.x86_64.rpm
    sha:c0915b295561bd3daab0fd93710f3249c521c9d4
  • kernel-headers-2.6.32-754.35.8.el6.tuxcare.els13.x86_64.rpm
    sha:c7ebd311c1ff6633fd4585d065d3cfb7c43f1778
  • perf-2.6.32-754.35.8.el6.tuxcare.els13.x86_64.rpm
    sha:7b4071eacf95023040c1c819fe5d822301028383
  • python-perf-2.6.32-754.35.8.el6.tuxcare.els13.x86_64.rpm
    sha:23bfa4f2f745b095326222327faeb11cd9dc5ee5
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.