[CLSA-2023:1700590886] kernel: Fix of 10 CVEs
Type:
security
Severity:
None
Release date:
2023-11-21
Description:
- openvswitch: fix OOB access in reserve_sfa_size() {CVE-2022-2639} - xen/blkfront: fix leaking data in shared pages {CVE-2022-26365} - Bluetooth: Fix slab-out-of-bounds read in hci_extended_inquiry_result_evt() {CVE-2020-36386} - btrfs: only search for left_info if there is no right_info in try_merge_free_space {CVE-2019-19448} - filldir[64]: remove WARN_ON_ONCE() for bad directory entries {CVE-2019-10220} - Make filldir[64]() verify the directory entry filename is valid {CVE-2019-10220} - ath9k: release allocated buffer if timed out {CVE-2019-19074} - net: sched: sch_qfq: prevent slab-out-of-bounds in {CVE-2023-31436} - memstick: r592: Fix UAF bug in r592_remove due to race {CVE-2023-3141} - wifi: rndis_wlan: Prevent buffer overflow in rndis_query_oid {CVE-2023-23559} - ext4: fix kernel infoleak via ext4_extent_header {CVE-2022-0850}
Updated packages:
  • kernel-abi-whitelists-2.6.32-754.35.8.el6.tuxcare.els13.noarch.rpm
    sha:c2f7b9b2599d8d821035b968b733b47908472024
  • kernel-doc-2.6.32-754.35.8.el6.tuxcare.els13.noarch.rpm
    sha:33d02032ef49225e77aed33b07e23dfcb2ce4493
  • kernel-firmware-2.6.32-754.35.8.el6.tuxcare.els13.noarch.rpm
    sha:1c56564bf087e41b6b10bccbf151b7f4225e4cdf
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.