Descripción: | Summary: The remote host is missing an update for the 'kernel-uek' package(s) announced via the ELSA-2013-2546 advisory.
Vulnerability Insight: [2.6.39-400.209.1] - Revert 'stop mig handler when lockres in progress ,and return -EAGAIN' (Srinivas Eeda) [Orabug: 16924802] - ocfs2/dlm: Fix list traversal in dlm_process_recovery_data (Srinivas Eeda) [Orabug: 17432400] - ocfs2/dlm: ocfs2 dlm umount skip migrating lockres (Srinivas Eeda) [Orabug: 16859627]
[2.6.39-400.208.1] - Btrfs: make the chunk allocator completely tree lockless (Josef Bacik) [Orabug: 17334251] - mpt2sas: protect mpt2sas_ioc_list access with lock (Jerry Snitselaar) [Orabug: 17383579] - mptsas: update to 4.28.20.02 (Jerry Snitselaar) [Orabug: 17294806] - RDS: protocol negotiation fails during reconnect (Bang Nguyen) [Orabug: 17375389] - config:remove LM80 modules to void blindly loading cause crash (ethan.zhao) [Orabug: 16976462]
[2.6.39-400.207.0] - Update lpfc version for 8.3.7.26.3p driver release (Gairy Grannum) [Orabug: 17340816] - lpfc 8.3.36: Update DIF support for passthru/strip/insert (James Smart) [Orabug: 17340816] - Update lpfc version for 8.3.7.26.1p driver release (Gairy Grannum) [Orabug: 17376967] - lpfc: whitespace fix (Vaios Papadimitriou) [Orabug: 17376967] - Update copyrights for 8.3.41 modifications (James Smart) [Orabug: 17376967] - Add first burst support to driver (James Smart) [Orabug: 17376967] - Fixed the format of some log message fields (James Smart) [Orabug: 17376967] - Add first burst support to driver (James Smart) [Orabug: 17376967] - Fixed not able to perform PCI function reset when board was not in online mode (James Smart) [Orabug: 17376967] - Fixed failure in setting SLI3 board mode (James Smart) [Orabug: 17376967] - Fixed SLI3 failing FCP write on check-condition no-sense with residual zero (James Smart) [Orabug: 17376967] - Fixed support for 128 byte WQEs (James Smart) [Orabug: 17376967] - Ensure driver properly zeros unused fields in SLI4 mailbox commands (James Smart) [Orabug: 17376967] - Fixed max value of lpfc_lun_queue_depth (James Smart) [Orabug: 17376967] - Fixed Receive Queue varied frame size handling (James Smart) [Orabug: 17376967] - Fix mailbox byteswap issue on PPC (James Smart) [Orabug: 17376967] - lpfc 8.3.40: Update Copyrights to 2013 for 8.3.38, 8.3.39, and 8.3.40 modifications (James Smart) [Orabug: 17376967] - Fixed freeing of iocb when internal loopback times out (James Smart) [Orabug: 17376967] - lpfc 8.3.40: Fixed a race condition between SLI host and port failed FCF rediscovery (James Smart) [Orabug: 17376967] - lpfc 8.3.40: Fixed issue mailbox wait routine failed to issue dump memory mbox command (James Smart) [Orabug: 17376967] - treewide: Fix typos in kernel messages (Masanari Iida) [Orabug: 17376967] - lpfc 8.3.40: Fixed system panic due to unsafe walking and deleting linked list (James Smart) [Orabug: 17376967] - lpfc 8.3.40: Fixed FCoE connection list vlan identifier and add FCF list debug (James Smart) [Orabug: 17376967] - lpfc 8.3.40: Clarified the behavior of the lpfc_max_luns ... [Please see the references for more information on the vulnerabilities]
Affected Software/OS: 'kernel-uek' package(s) on Oracle Linux 5, Oracle Linux 6.
Solution: Please install the updated package(s).
CVSS Score: 4.9
CVSS Vector: AV:L/AC:L/Au:N/C:C/I:N/A:N
|