CVE-2018-1087
CVSS4.6
发布时间 :2018-05-15 12:29:00
修订时间 :2018-06-19 14:25:33
NMPS    

[原文]kernel KVM before versions kernel 4.16, kernel 4.16-rc7, kernel 4.17-rc1, kernel 4.17-rc2 and kernel 4.17-rc3 is vulnerable to a flaw in the way the Linux kernel's KVM hypervisor handled exceptions delivered after a stack switch operation via Mov SS or Pop SS instructions. During the stack switch operation, the processor did not deliver interrupts and exceptions, rather they are delivered once the first instruction after the stack switch is executed. An unprivileged KVM guest user could use this flaw to crash the guest or, potentially, escalate their privileges in the guest.


[CNNVD]CNNVD数据暂缺。


[机译]译文暂缺.

- CVSS (基础分值)

CVSS分值: 4.6 [中等(MEDIUM)]
机密性影响: PARTIAL [很可能造成信息泄露]
完整性影响: PARTIAL [可能会导致系统文件被修改]
可用性影响: PARTIAL [可能会导致性能下降或中断资源访问]
攻击复杂度: LOW [漏洞利用没有访问限制 ]
攻击向量: LOCAL [漏洞利用需要具有物理访问权限或本地帐户]
身份认证: NONE [漏洞利用无需身份认证]

- CWE (弱点类目)

CWE-264 [权限、特权与访问控制]

- CPE (受影响的平台与产品)

cpe:/o:canonical:ubuntu_linux:14.04::~~lts~~~
cpe:/o:canonical:ubuntu_linux:16.04::~~lts~~~
cpe:/o:canonical:ubuntu_linux:17.10
cpe:/o:debian:debian_linux:8.0
cpe:/o:debian:debian_linux:9.0
cpe:/o:linux:linux_kernel:4.16
cpe:/o:linux:linux_kernel:4.16:rc7
cpe:/o:linux:linux_kernel:4.17:rc1
cpe:/o:linux:linux_kernel:4.17:rc2
cpe:/o:linux:linux_kernel:4.17:rc3
cpe:/o:redhat:enterprise_linux:7.0
cpe:/o:redhat:enterprise_linux_desktop:7.0
cpe:/o:redhat:enterprise_linux_server:7.0
cpe:/o:redhat:enterprise_linux_server_aus:7.2
cpe:/o:redhat:enterprise_linux_server_aus:7.3
cpe:/o:redhat:enterprise_linux_server_aus:7.4
cpe:/o:redhat:enterprise_linux_server_eus:7.3
cpe:/o:redhat:enterprise_linux_server_eus:7.4
cpe:/o:redhat:enterprise_linux_server_eus:7.5
cpe:/o:redhat:enterprise_linux_server_tus:7.2
cpe:/o:redhat:enterprise_linux_server_tus:7.3
cpe:/o:redhat:enterprise_linux_server_tus:7.4
cpe:/o:redhat:enterprise_linux_virtualization:4.0
cpe:/o:redhat:enterprise_linux_workstation:7.0

- OVAL (用于检测的技术细节)

未找到相关OVAL定义

- 官方数据库链接

http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-1087
(官方数据源) MITRE
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2018-1087
(官方数据源) NVD

- 其它链接及资源

http://www.openwall.com/lists/oss-security/2018/05/08/5
(UNKNOWN)  MISC  http://www.openwall.com/lists/oss-security/2018/05/08/5
http://www.securityfocus.com/bid/104127
(VENDOR_ADVISORY)  BID  104127
http://www.securitytracker.com/id/1040862
(VENDOR_ADVISORY)  SECTRACK  1040862
https://access.redhat.com/errata/RHSA-2018:1318
(VENDOR_ADVISORY)  REDHAT  RHSA-2018:1318
https://access.redhat.com/errata/RHSA-2018:1345
(VENDOR_ADVISORY)  REDHAT  RHSA-2018:1345
https://access.redhat.com/errata/RHSA-2018:1347
(VENDOR_ADVISORY)  REDHAT  RHSA-2018:1347
https://access.redhat.com/errata/RHSA-2018:1348
(VENDOR_ADVISORY)  REDHAT  RHSA-2018:1348
https://access.redhat.com/errata/RHSA-2018:1355
(VENDOR_ADVISORY)  REDHAT  RHSA-2018:1355
https://access.redhat.com/errata/RHSA-2018:1524
(VENDOR_ADVISORY)  REDHAT  RHSA-2018:1524
https://access.redhat.com/security/vulnerabilities/pop_ss
(VENDOR_ADVISORY)  MISC  https://access.redhat.com/security/vulnerabilities/pop_ss
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-1087
(UNKNOWN)  CONFIRM  https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-1087
https://usn.ubuntu.com/3641-1/
(VENDOR_ADVISORY)  UBUNTU  USN-3641-1
https://usn.ubuntu.com/3641-2/
(VENDOR_ADVISORY)  UBUNTU  USN-3641-2
https://www.debian.org/security/2018/dsa-4196
(VENDOR_ADVISORY)  DEBIAN  DSA-4196

- 漏洞信息 (F147552)

Kernel Live Patch Security Notice LSN-0038-1 (PacketStormID:F147552)
2018-05-09 00:00:00
Benjamin M. Romer  
advisory,kernel
linux
CVE-2018-1087,CVE-2018-8897
[点击下载]

On May 8, fixes for CVE-2018-1087 and CVE-2018-8897 were released in linux kernel version 4.4.0-124.148. These CVEs are both related to the way that the linux kernel handles certain interrupt and exception instructions. If an interrupt or exception instruction (INT3, SYSCALL, etc.) is immediately preceded by a MOV SS or POP SS instruction, the resulting interrupt will be incorrectly handled, possibly crashing the operating system. The issue can be triggered by an unprivileged user. The fix for this problem requires modification of the interrupt descriptor tables (IDT), and modification of the interrupt handlers. Livepatch is unable to safely modify these areas, so upgrading to a corrected kernel and rebooting is required to fix the problem.

==========================================================================
Kernel Live Patch Security Notice LSN-0038-1
May 8, 2018

linux vulnerability
==========================================================================

A security issue affects these releases of Ubuntu:

| Series           | Base kernel  | Arch     | flavors          |
|------------------+--------------+----------+------------------|
| Ubuntu 16.04 LTS | 4.4.0        | amd64    | generic          |
| Ubuntu 16.04 LTS | 4.4.0        | amd64    | lowlatency       |
| Ubuntu 14.04 LTS | 4.4.0        | amd64    | generic          |
| Ubuntu 14.04 LTS | 4.4.0        | amd64    | lowlatency       |

Summary:

On May 8, fixes for CVE-2018-1087 and CVE-2018-8897 were released in linux
kernel version 4.4.0-124.148. These CVEs are both related to the way that
the linux kernel handles certain interrupt and exception instructions. If
an interrupt or exception instruction (INT3, SYSCALL, etc.) is immediately
preceded by a MOV SS or POP SS instruction, the resulting interrupt will 
be incorrectly handled, possibly crashing the operating system. The issue
can be triggered by an unprivileged user.

The fix for this problem requires modification of the interrupt descriptor
tables (IDT), and modification of the interrupt handlers. Livepatch is 
unable to safely modify these areas, so upgrading to a corrected kernel
and rebooting is required to fix the problem. 

Additional information about this problem can be found here:
- https://wiki.ubuntu.com/SecurityTeam/KnowledgeBase/Pop_SS

Software Description:
- linux: Linux kernel

Update instructions:

The problem can be corrected by installing an updated kernel with these
fixes and rebooting.

References:
CVE-2018-1087, CVE-2018-8897

-- 
ubuntu-security-announce mailing list
ubuntu-security-announce@lists.ubuntu.com
Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-security-announce
    

- 漏洞信息 (F147551)

Debian Security Advisory 4196-1 (PacketStormID:F147551)
2018-05-09 00:00:00
Debian  debian.org
advisory,denial of service,kernel,vulnerability
linux,debian
CVE-2018-1087,CVE-2018-8897
[点击下载]

Debian Linux Security Advisory 4196-1 - Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation or denial of service.

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

- -------------------------------------------------------------------------
Debian Security Advisory DSA-4196-1                   security@debian.org
https://www.debian.org/security/                     Salvatore Bonaccorso
May 08, 2018                          https://www.debian.org/security/faq
- -------------------------------------------------------------------------

Package        : linux
CVE ID         : CVE-2018-1087 CVE-2018-8897
Debian Bug     : 897427 897599 898067 898100

Several vulnerabilities have been discovered in the Linux kernel that
may lead to a privilege escalation or denial of service.

CVE-2018-1087

    Andy Lutomirski discovered that the KVM implementation did not
    properly handle #DB exceptions while deferred by MOV SS/POP SS,
    allowing an unprivileged KVM guest user to crash the guest or
    potentially escalate their privileges.

CVE-2018-8897

    Nick Peterson of Everdox Tech LLC discovered that #DB exceptions
    that are deferred by MOV SS or POP SS are not properly handled,
    allowing an unprivileged user to crash the kernel and cause a denial
    of service.

For the oldstable distribution (jessie), these problems have been fixed
in version 3.16.56-1+deb8u1. This update includes various fixes for
regressions from 3.16.56-1 as released in DSA-4187-1 (Cf. #897427,
#898067 and #898100).

For the stable distribution (stretch), these problems have been fixed in
version 4.9.88-1+deb9u1. The fix for CVE-2018-1108 applied in DSA-4188-1
is temporarily reverted due to various regression, cf. #897599.

We recommend that you upgrade your linux packages.

For the detailed security status of linux please refer to its security
tracker page at:
https://security-tracker.debian.org/tracker/linux

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/

Mailing list: debian-security-announce@lists.debian.org
-----BEGIN PGP SIGNATURE-----
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=CskH
-----END PGP SIGNATURE-----
    

- 漏洞信息 (F147549)

Ubuntu Security Notice USN-3641-2 (PacketStormID:F147549)
2018-05-08 00:00:00
Ubuntu  security.ubuntu.com
advisory,denial of service,kernel,local,vulnerability
linux,ubuntu
CVE-2018-1000199,CVE-2018-1087,CVE-2018-8897
[点击下载]

Ubuntu Security Notice 3641-2 - USN-3641-1 fixed vulnerabilities in the Linux kernel for Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, and Ubuntu 17.10. This update provides the corresponding updates for Ubuntu 12.04 ESM. Nick Peterson discovered that the Linux kernel did not properly handle debug exceptions following a MOV/POP to SS instruction. A local attacker could use this to cause a denial of service. This issue only affected the amd64 architecture. Various other issues were also addressed.

==========================================================================
Ubuntu Security Notice USN-3641-2
May 08, 2018

linux, linux-lts-trusty vulnerabilities
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 12.04 ESM

Summary:

Several security issues were fixed in the Linux kernel.

Software Description:
- linux: Linux kernel
- linux-lts-trusty: Linux hardware enablement kernel from Trusty for Precise ESM

Details:

USN-3641-1 fixed vulnerabilities in the Linux kernel for Ubuntu 14.04
LTS, Ubuntu 16.04 LTS, and Ubuntu 17.10.  This update provides the
corresponding updates for Ubuntu 12.04 ESM.

Nick Peterson discovered that the Linux kernel did not properly handle
debug exceptions following a MOV/POP to SS instruction. A local attacker
could use this to cause a denial of service (system crash). This issue only
affected the amd64 architecture. (CVE-2018-8897)

Andy Lutomirski discovered that the KVM subsystem of the Linux kernel did
not properly emulate the ICEBP instruction following a MOV/POP to SS
instruction. A local attacker in a KVM virtual machine could use this to
cause a denial of service (guest VM crash) or possibly escalate privileges
inside of the virtual machine. This issue only affected the i386 and amd64
architectures. (CVE-2018-1087)

Andy Lutomirski discovered that the Linux kernel did not properly perform
error handling on virtualized debug registers. A local attacker could use
this to cause a denial of service (system crash) or possibly execute
arbitrary code. (CVE-2018-1000199)

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 12.04 ESM:
  linux-image-3.13.0-147-generic  3.13.0-147.196~precise1
  linux-image-3.13.0-147-generic-lpae  3.13.0-147.196~precise1
  linux-image-3.2.0-134-generic   3.2.0-134.180
  linux-image-3.2.0-134-generic-pae  3.2.0-134.180
  linux-image-3.2.0-134-highbank  3.2.0-134.180
  linux-image-3.2.0-134-omap      3.2.0-134.180
  linux-image-3.2.0-134-powerpc-smp  3.2.0-134.180
  linux-image-3.2.0-134-powerpc64-smp  3.2.0-134.180
  linux-image-3.2.0-134-virtual   3.2.0-134.180
  linux-image-generic             3.2.0.134.149
  linux-image-generic-lpae-lts-trusty  3.13.0.147.138
  linux-image-generic-lts-trusty  3.13.0.147.138
  linux-image-generic-pae         3.2.0.134.149
  linux-image-highbank            3.2.0.134.149
  linux-image-omap                3.2.0.134.149
  linux-image-powerpc             3.2.0.134.149
  linux-image-powerpc-smp         3.2.0.134.149
  linux-image-powerpc64-smp       3.2.0.134.149

After a standard system update you need to reboot your computer to make
all the necessary changes.

ATTENTION: Due to an unavoidable ABI change the kernel updates have
been given a new version number, which requires you to recompile and
reinstall all third party kernel modules you might have installed.
Unless you manually uninstalled the standard kernel metapackages
(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,
linux-powerpc), a standard system upgrade will automatically perform
this as well.

References:
  https://usn.ubuntu.com/usn/usn-3641-2
  https://usn.ubuntu.com/usn/usn-3641-1
  CVE-2018-1000199, CVE-2018-1087, CVE-2018-8897

    

- 漏洞信息 (F147547)

Ubuntu Security Notice USN-3641-1 (PacketStormID:F147547)
2018-05-08 00:00:00
Ubuntu  security.ubuntu.com
advisory,denial of service,kernel,local
linux,ubuntu
CVE-2018-1000199,CVE-2018-1087,CVE-2018-8897
[点击下载]

Ubuntu Security Notice 3641-1 - Nick Peterson discovered that the Linux kernel did not properly handle debug exceptions following a MOV/POP to SS instruction. A local attacker could use this to cause a denial of service. This issue only affected the amd64 architecture. Andy Lutomirski discovered that the KVM subsystem of the Linux kernel did not properly emulate the ICEBP instruction following a MOV/POP to SS instruction. A local attacker in a KVM virtual machine could use this to cause a denial of service or possibly escalate privileges inside of the virtual machine. This issue only affected the i386 and amd64 architectures. Various other issues were also addressed.

==========================================================================
Ubuntu Security Notice USN-3641-1
May 08, 2018

linux, linux-aws, linux-azure, linux-euclid, linux-gcp, linux-hwe,
linux-kvm, linux-lts-xenial, linux-oem, linux-raspi2, and
linux-snapdragon vulnerabilities
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 17.10
- Ubuntu 16.04 LTS
- Ubuntu 14.04 LTS

Summary:

Several security issues were fixed in the Linux kernel.

Software Description:
- linux: Linux kernel
- linux-raspi2: Linux kernel for Raspberry Pi 2
- linux-aws: Linux kernel for Amazon Web Services (AWS) systems
- linux-azure: Linux kernel for Microsoft Azure Cloud systems
- linux-euclid: Linux kernel for Intel Euclid systems
- linux-gcp: Linux kernel for Google Cloud Platform (GCP) systems
- linux-hwe: Linux hardware enablement (HWE) kernel
- linux-kvm: Linux kernel for cloud environments
- linux-oem: Linux kernel for OEM processors
- linux-snapdragon: Linux kernel for Snapdragon processors
- linux-lts-xenial: Linux hardware enablement kernel from Xenial for Trusty

Details:

Nick Peterson discovered that the Linux kernel did not
properly handle debug exceptions following a MOV/POP to SS
instruction. A local attacker could use this to cause a denial
of service (system crash). This issue only affected the amd64
architecture. (CVE-2018-8897)

Andy Lutomirski discovered that the KVM subsystem of the Linux kernel
did not properly emulate the ICEBP instruction following a MOV/POP
to SS instruction. A local attacker in a KVM virtual machine could
use this to cause a denial of service (guest VM crash) or possibly
escalate privileges inside of the virtual machine. This issue only
affected the i386 and amd64 architectures. (CVE-2018-1087)

Andy Lutomirski discovered that the Linux kernel did not properly
perform error handling on virtualized debug registers. A local
attacker could use this to cause a denial of service (system crash)
or possibly execute arbitrary code. (CVE-2018-1000199)

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 17.10:
  linux-image-4.13.0-1019-raspi2  4.13.0-1019.20
  linux-image-4.13.0-41-generic   4.13.0-41.46
  linux-image-4.13.0-41-generic-lpae  4.13.0-41.46
  linux-image-4.13.0-41-lowlatency  4.13.0-41.46
  linux-image-generic             4.13.0.41.44
  linux-image-generic-lpae        4.13.0.41.44
  linux-image-lowlatency          4.13.0.41.44
  linux-image-raspi2              4.13.0.1019.17

Ubuntu 16.04 LTS:
  linux-image-4.13.0-1015-gcp     4.13.0-1015.19
  linux-image-4.13.0-1016-azure   4.13.0-1016.19
  linux-image-4.13.0-1026-oem     4.13.0-1026.29
  linux-image-4.13.0-41-generic   4.13.0-41.46~16.04.1
  linux-image-4.13.0-41-generic-lpae  4.13.0-41.46~16.04.1
  linux-image-4.13.0-41-lowlatency  4.13.0-41.46~16.04.1
  linux-image-4.4.0-1023-kvm      4.4.0-1023.28
  linux-image-4.4.0-1057-aws      4.4.0-1057.66
  linux-image-4.4.0-1089-raspi2   4.4.0-1089.97
  linux-image-4.4.0-1092-snapdragon  4.4.0-1092.97
  linux-image-4.4.0-124-generic   4.4.0-124.148
  linux-image-4.4.0-124-generic-lpae  4.4.0-124.148
  linux-image-4.4.0-124-lowlatency  4.4.0-124.148
  linux-image-4.4.0-124-powerpc-e500mc  4.4.0-124.148
  linux-image-4.4.0-124-powerpc-smp  4.4.0-124.148
  linux-image-4.4.0-124-powerpc64-emb  4.4.0-124.148
  linux-image-4.4.0-124-powerpc64-smp  4.4.0-124.148
  linux-image-4.4.0-9027-euclid   4.4.0-9027.29
  linux-image-aws                 4.4.0.1057.59
  linux-image-azure               4.13.0.1016.17
  linux-image-euclid              4.4.0.9027.28
  linux-image-gcp                 4.13.0.1015.17
  linux-image-generic             4.4.0.124.130
  linux-image-generic-hwe-16.04   4.13.0.41.60
  linux-image-generic-lpae        4.4.0.124.130
  linux-image-generic-lpae-hwe-16.04  4.13.0.41.60
  linux-image-gke                 4.13.0.1015.17
  linux-image-kvm                 4.4.0.1023.22
  linux-image-lowlatency          4.4.0.124.130
  linux-image-lowlatency-hwe-16.04  4.13.0.41.60
  linux-image-oem                 4.13.0.1026.30
  linux-image-powerpc-e500mc      4.4.0.124.130
  linux-image-powerpc-smp         4.4.0.124.130
  linux-image-powerpc64-emb       4.4.0.124.130
  linux-image-powerpc64-smp       4.4.0.124.130
  linux-image-raspi2              4.4.0.1089.89
  linux-image-snapdragon          4.4.0.1092.84

Ubuntu 14.04 LTS:
  linux-image-3.13.0-147-generic  3.13.0-147.196
  linux-image-3.13.0-147-generic-lpae  3.13.0-147.196
  linux-image-3.13.0-147-lowlatency  3.13.0-147.196
  linux-image-3.13.0-147-powerpc-e500  3.13.0-147.196
  linux-image-3.13.0-147-powerpc-e500mc  3.13.0-147.196
  linux-image-3.13.0-147-powerpc-smp  3.13.0-147.196
  linux-image-3.13.0-147-powerpc64-emb  3.13.0-147.196
  linux-image-3.13.0-147-powerpc64-smp  3.13.0-147.196
  linux-image-4.4.0-1019-aws      4.4.0-1019.19
  linux-image-4.4.0-124-generic   4.4.0-124.148~14.04.1
  linux-image-4.4.0-124-generic-lpae  4.4.0-124.148~14.04.1
  linux-image-4.4.0-124-lowlatency  4.4.0-124.148~14.04.1
  linux-image-4.4.0-124-powerpc-e500mc  4.4.0-124.148~14.04.1
  linux-image-4.4.0-124-powerpc-smp  4.4.0-124.148~14.04.1
  linux-image-4.4.0-124-powerpc64-emb  4.4.0-124.148~14.04.1
  linux-image-4.4.0-124-powerpc64-smp  4.4.0-124.148~14.04.1
  linux-image-aws                 4.4.0.1019.19
  linux-image-generic             3.13.0.147.157
  linux-image-generic-lpae        3.13.0.147.157
  linux-image-generic-lpae-lts-xenial  4.4.0.124.104
  linux-image-generic-lts-xenial  4.4.0.124.104
  linux-image-generic-pae         3.13.0.147.157
  linux-image-lowlatency          3.13.0.147.157
  linux-image-lowlatency-lts-xenial  4.4.0.124.104
  linux-image-powerpc-e500        3.13.0.147.157
  linux-image-powerpc-e500mc      3.13.0.147.157
  linux-image-powerpc-e500mc-lts-xenial  4.4.0.124.104
  linux-image-powerpc-smp         3.13.0.147.157
  linux-image-powerpc-smp-lts-xenial  4.4.0.124.104
  linux-image-powerpc64-emb       3.13.0.147.157
  linux-image-powerpc64-emb-lts-xenial  4.4.0.124.104
  linux-image-powerpc64-smp       3.13.0.147.157
  linux-image-powerpc64-smp-lts-xenial  4.4.0.124.104

After a standard system update you need to reboot your computer to make
all the necessary changes.

ATTENTION: Due to an unavoidable ABI change the kernel updates have
been given a new version number, which requires you to recompile and
reinstall all third party kernel modules you might have installed.
Unless you manually uninstalled the standard kernel metapackages
(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,
linux-powerpc), a standard system upgrade will automatically perform
this as well.

References:
  https://usn.ubuntu.com/usn/usn-3641-1
  CVE-2018-1000199, CVE-2018-1087, CVE-2018-8897

Package Information:
  https://launchpad.net/ubuntu/+source/linux/4.13.0-41.46
  https://launchpad.net/ubuntu/+source/linux-raspi2/4.13.0-1019.20
  https://launchpad.net/ubuntu/+source/linux/4.4.0-124.148
  https://launchpad.net/ubuntu/+source/linux-aws/4.4.0-1057.66
  https://launchpad.net/ubuntu/+source/linux-azure/4.13.0-1016.19
  https://launchpad.net/ubuntu/+source/linux-euclid/4.4.0-9027.29
  https://launchpad.net/ubuntu/+source/linux-gcp/4.13.0-1015.19
  https://launchpad.net/ubuntu/+source/linux-hwe/4.13.0-41.46~16.04.1
  https://launchpad.net/ubuntu/+source/linux-kvm/4.4.0-1023.28
  https://launchpad.net/ubuntu/+source/linux-oem/4.13.0-1026.29
  https://launchpad.net/ubuntu/+source/linux-raspi2/4.4.0-1089.97
  https://launchpad.net/ubuntu/+source/linux-snapdragon/4.4.0-1092.97
  https://launchpad.net/ubuntu/+source/linux/3.13.0-147.196
  https://launchpad.net/ubuntu/+source/linux-aws/4.4.0-1019.19
  https://launchpad.net/ubuntu/+source/linux-lts-xenial/4.4.0-124.148~14.04.1

    

- 漏洞信息 (F147545)

Red Hat Security Advisory 2018-1355-01 (PacketStormID:F147545)
2018-05-08 00:00:00
Red Hat  
advisory,denial of service,kernel,vulnerability
linux,redhat
CVE-2017-16939,CVE-2018-1000199,CVE-2018-1068,CVE-2018-1087,CVE-2018-8897
[点击下载]

Red Hat Security Advisory 2018-1355-01 - The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements. Issues addressed include denial of service and use-after-free vulnerabilities.

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

=====================================================================
                   Red Hat Security Advisory

Synopsis:          Important: kernel-rt security and bug fix update
Advisory ID:       RHSA-2018:1355-01
Product:           Red Hat Enterprise Linux
Advisory URL:      https://access.redhat.com/errata/RHSA-2018:1355
Issue date:        2018-05-08
CVE Names:         CVE-2017-16939 CVE-2018-1068 CVE-2018-1087 
                   CVE-2018-8897 CVE-2018-1000199 
=====================================================================

1. Summary:

An update for kernel-rt is now available for Red Hat Enterprise Linux 7.

Red Hat Product Security has rated this update as having a security impact
of Important. A Common Vulnerability Scoring System (CVSS) base score,
which gives a detailed severity rating, is available for each vulnerability
from the CVE link(s) in the References section.

2. Relevant releases/architectures:

Red Hat Enterprise Linux Realtime (v. 7) - noarch, x86_64
Red Hat Enterprise Linux for Real Time for NFV (v. 7) - noarch, x86_64

3. Description:

The kernel-rt packages provide the Real Time Linux Kernel, which enables
fine-tuning for systems with extremely high determinism requirements.

Security Fix(es):

* Kernel: KVM: error in exception handling leads to wrong debug stack value
(CVE-2018-1087)

* Kernel: error in exception handling leads to DoS (CVE-2018-8897)

* Kernel: ipsec: xfrm: use-after-free leading to potential privilege
escalation (CVE-2017-16939)

* kernel: Out-of-bounds write via userland offsets in ebt_entry struct in
netfilter/ebtables.c (CVE-2018-1068)

* kernel: ptrace() incorrect error handling leads to corruption and DoS
(CVE-2018-1000199)

For more details about the security issue(s), including the impact, a CVSS
score, and other related information, refer to the CVE page(s) listed in
the References section.

Red Hat would like to thank Andy Lutomirski for reporting CVE-2018-1087 and
CVE-2018-1000199 and Nick Peterson (Everdox Tech LLC) and Andy Lutomirski
for reporting CVE-2018-8897.

Bug Fix(es):

* The kernel-rt packages have been upgraded to the 3.10.0-862.2.3 source
tree, which provides a number of bug fixes over the previous version.
(BZ#1549768)

4. Solution:

For details on how to apply this update, which includes the changes
described in this advisory, refer to:

https://access.redhat.com/articles/11258

The system must be rebooted for this update to take effect.

5. Bugs fixed (https://bugzilla.redhat.com/):

1517220 - CVE-2017-16939 Kernel: ipsec: xfrm: use-after-free leading to potential privilege escalation
1549768 - kernel-rt: update to the RHEL7.5.z batch#1 source tree
1552048 - CVE-2018-1068 kernel: Out-of-bounds write via userland offsets in ebt_entry struct in netfilter/ebtables.c
1566837 - CVE-2018-1087 Kernel: KVM: error in exception handling leads to wrong debug stack value
1567074 - CVE-2018-8897 Kernel: error in exception handling leads to DoS
1568477 - CVE-2018-1000199 kernel: ptrace() incorrect error handling leads to corruption and DoS

6. Package List:

Red Hat Enterprise Linux for Real Time for NFV (v. 7):

Source:
kernel-rt-3.10.0-862.2.3.rt56.806.el7.src.rpm

noarch:
kernel-rt-doc-3.10.0-862.2.3.rt56.806.el7.noarch.rpm

x86_64:
kernel-rt-3.10.0-862.2.3.rt56.806.el7.x86_64.rpm
kernel-rt-debug-3.10.0-862.2.3.rt56.806.el7.x86_64.rpm
kernel-rt-debug-debuginfo-3.10.0-862.2.3.rt56.806.el7.x86_64.rpm
kernel-rt-debug-devel-3.10.0-862.2.3.rt56.806.el7.x86_64.rpm
kernel-rt-debug-kvm-3.10.0-862.2.3.rt56.806.el7.x86_64.rpm
kernel-rt-debug-kvm-debuginfo-3.10.0-862.2.3.rt56.806.el7.x86_64.rpm
kernel-rt-debuginfo-3.10.0-862.2.3.rt56.806.el7.x86_64.rpm
kernel-rt-debuginfo-common-x86_64-3.10.0-862.2.3.rt56.806.el7.x86_64.rpm
kernel-rt-devel-3.10.0-862.2.3.rt56.806.el7.x86_64.rpm
kernel-rt-kvm-3.10.0-862.2.3.rt56.806.el7.x86_64.rpm
kernel-rt-kvm-debuginfo-3.10.0-862.2.3.rt56.806.el7.x86_64.rpm
kernel-rt-trace-3.10.0-862.2.3.rt56.806.el7.x86_64.rpm
kernel-rt-trace-debuginfo-3.10.0-862.2.3.rt56.806.el7.x86_64.rpm
kernel-rt-trace-devel-3.10.0-862.2.3.rt56.806.el7.x86_64.rpm
kernel-rt-trace-kvm-3.10.0-862.2.3.rt56.806.el7.x86_64.rpm
kernel-rt-trace-kvm-debuginfo-3.10.0-862.2.3.rt56.806.el7.x86_64.rpm

Red Hat Enterprise Linux Realtime (v. 7):

Source:
kernel-rt-3.10.0-862.2.3.rt56.806.el7.src.rpm

noarch:
kernel-rt-doc-3.10.0-862.2.3.rt56.806.el7.noarch.rpm

x86_64:
kernel-rt-3.10.0-862.2.3.rt56.806.el7.x86_64.rpm
kernel-rt-debug-3.10.0-862.2.3.rt56.806.el7.x86_64.rpm
kernel-rt-debug-debuginfo-3.10.0-862.2.3.rt56.806.el7.x86_64.rpm
kernel-rt-debug-devel-3.10.0-862.2.3.rt56.806.el7.x86_64.rpm
kernel-rt-debug-kvm-debuginfo-3.10.0-862.2.3.rt56.806.el7.x86_64.rpm
kernel-rt-debuginfo-3.10.0-862.2.3.rt56.806.el7.x86_64.rpm
kernel-rt-debuginfo-common-x86_64-3.10.0-862.2.3.rt56.806.el7.x86_64.rpm
kernel-rt-devel-3.10.0-862.2.3.rt56.806.el7.x86_64.rpm
kernel-rt-kvm-debuginfo-3.10.0-862.2.3.rt56.806.el7.x86_64.rpm
kernel-rt-trace-3.10.0-862.2.3.rt56.806.el7.x86_64.rpm
kernel-rt-trace-debuginfo-3.10.0-862.2.3.rt56.806.el7.x86_64.rpm
kernel-rt-trace-devel-3.10.0-862.2.3.rt56.806.el7.x86_64.rpm
kernel-rt-trace-kvm-debuginfo-3.10.0-862.2.3.rt56.806.el7.x86_64.rpm

These packages are GPG signed by Red Hat for security.  Our key and
details on how to verify the signature are available from
https://access.redhat.com/security/team/key/

7. References:

https://access.redhat.com/security/cve/CVE-2017-16939
https://access.redhat.com/security/cve/CVE-2018-1068
https://access.redhat.com/security/cve/CVE-2018-1087
https://access.redhat.com/security/cve/CVE-2018-8897
https://access.redhat.com/security/cve/CVE-2018-1000199
https://access.redhat.com/security/updates/classification/#important
https://access.redhat.com/security/vulnerabilities/pop_ss

8. Contact:

The Red Hat security contact is <secalert@redhat.com>. More contact
details at https://access.redhat.com/security/team/contact/

Copyright 2018 Red Hat, Inc.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1

iD8DBQFa8iPFXlSAg2UNWIIRAimcAJ9PyhLNkFZaSyrDi2gHNnGgpwAs8gCfUqkW
HAZMOG7hwIVzN1vkw37Q1X4=
=0Sxa
-----END PGP SIGNATURE-----

--
RHSA-announce mailing list
RHSA-announce@redhat.com
https://www.redhat.com/mailman/listinfo/rhsa-announce
    

- 漏洞信息 (F147544)

Red Hat Security Advisory 2018-1348-01 (PacketStormID:F147544)
2018-05-08 00:00:00
Red Hat  
advisory,denial of service,kernel
linux,redhat
CVE-2018-1000199,CVE-2018-1087,CVE-2018-8897
[点击下载]

Red Hat Security Advisory 2018-1348-01 - The kernel packages contain the Linux kernel, the core of any Linux operating system. Issues addressed include a denial of service vulnerability.

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

=====================================================================
                   Red Hat Security Advisory

Synopsis:          Important: kernel security update
Advisory ID:       RHSA-2018:1348-01
Product:           Red Hat Enterprise Linux
Advisory URL:      https://access.redhat.com/errata/RHSA-2018:1348
Issue date:        2018-05-08
CVE Names:         CVE-2018-1087 CVE-2018-8897 CVE-2018-1000199 
=====================================================================

1. Summary:

An update for kernel is now available for Red Hat Enterprise Linux 7.3
Extended Update Support.

Red Hat Product Security has rated this update as having a security impact
of Important. A Common Vulnerability Scoring System (CVSS) base score,
which gives a detailed severity rating, is available for each vulnerability
from the CVE link(s) in the References section.

2. Relevant releases/architectures:

Red Hat Enterprise Linux ComputeNode EUS (v. 7.3) - noarch, x86_64
Red Hat Enterprise Linux ComputeNode Optional EUS (v. 7.3) - x86_64
Red Hat Enterprise Linux Server EUS (v. 7.3) - noarch, ppc64, ppc64le, s390x, x86_64
Red Hat Enterprise Linux Server Optional EUS (v. 7.3) - ppc64, ppc64le, x86_64

3. Description:

The kernel packages contain the Linux kernel, the core of any Linux
operating system.

Security Fix(es):

* Kernel: KVM: error in exception handling leads to wrong debug stack value
(CVE-2018-1087)

* Kernel: error in exception handling leads to DoS (CVE-2018-8897)

* kernel: ptrace() incorrect error handling leads to corruption and DoS
(CVE-2018-1000199)

For more details about the security issue(s), including the impact, a CVSS
score, and other related information, refer to the CVE page(s) listed in
the References section.

Red Hat would like to thank Andy Lutomirski for reporting CVE-2018-1087 and
CVE-2018-1000199 and Nick Peterson (Everdox Tech LLC) and Andy Lutomirski
for reporting CVE-2018-8897.

4. Solution:

For details on how to apply this update, which includes the changes
described in this advisory, refer to:

https://access.redhat.com/articles/11258

The system must be rebooted for this update to take effect.

5. Bugs fixed (https://bugzilla.redhat.com/):

1566837 - CVE-2018-1087 Kernel: KVM: error in exception handling leads to wrong debug stack value
1567074 - CVE-2018-8897 Kernel: error in exception handling leads to DoS
1568477 - CVE-2018-1000199 kernel: ptrace() incorrect error handling leads to corruption and DoS

6. Package List:

Red Hat Enterprise Linux ComputeNode EUS (v. 7.3):

Source:
kernel-3.10.0-514.48.3.el7.src.rpm

noarch:
kernel-abi-whitelists-3.10.0-514.48.3.el7.noarch.rpm
kernel-doc-3.10.0-514.48.3.el7.noarch.rpm

x86_64:
kernel-3.10.0-514.48.3.el7.x86_64.rpm
kernel-debug-3.10.0-514.48.3.el7.x86_64.rpm
kernel-debug-debuginfo-3.10.0-514.48.3.el7.x86_64.rpm
kernel-debug-devel-3.10.0-514.48.3.el7.x86_64.rpm
kernel-debuginfo-3.10.0-514.48.3.el7.x86_64.rpm
kernel-debuginfo-common-x86_64-3.10.0-514.48.3.el7.x86_64.rpm
kernel-devel-3.10.0-514.48.3.el7.x86_64.rpm
kernel-headers-3.10.0-514.48.3.el7.x86_64.rpm
kernel-tools-3.10.0-514.48.3.el7.x86_64.rpm
kernel-tools-debuginfo-3.10.0-514.48.3.el7.x86_64.rpm
kernel-tools-libs-3.10.0-514.48.3.el7.x86_64.rpm
perf-3.10.0-514.48.3.el7.x86_64.rpm
perf-debuginfo-3.10.0-514.48.3.el7.x86_64.rpm
python-perf-3.10.0-514.48.3.el7.x86_64.rpm
python-perf-debuginfo-3.10.0-514.48.3.el7.x86_64.rpm

Red Hat Enterprise Linux ComputeNode Optional EUS (v. 7.3):

x86_64:
kernel-debug-debuginfo-3.10.0-514.48.3.el7.x86_64.rpm
kernel-debuginfo-3.10.0-514.48.3.el7.x86_64.rpm
kernel-debuginfo-common-x86_64-3.10.0-514.48.3.el7.x86_64.rpm
kernel-tools-debuginfo-3.10.0-514.48.3.el7.x86_64.rpm
kernel-tools-libs-devel-3.10.0-514.48.3.el7.x86_64.rpm
perf-debuginfo-3.10.0-514.48.3.el7.x86_64.rpm
python-perf-debuginfo-3.10.0-514.48.3.el7.x86_64.rpm

Red Hat Enterprise Linux Server EUS (v. 7.3):

Source:
kernel-3.10.0-514.48.3.el7.src.rpm

noarch:
kernel-abi-whitelists-3.10.0-514.48.3.el7.noarch.rpm
kernel-doc-3.10.0-514.48.3.el7.noarch.rpm

ppc64:
kernel-3.10.0-514.48.3.el7.ppc64.rpm
kernel-bootwrapper-3.10.0-514.48.3.el7.ppc64.rpm
kernel-debug-3.10.0-514.48.3.el7.ppc64.rpm
kernel-debug-debuginfo-3.10.0-514.48.3.el7.ppc64.rpm
kernel-debug-devel-3.10.0-514.48.3.el7.ppc64.rpm
kernel-debuginfo-3.10.0-514.48.3.el7.ppc64.rpm
kernel-debuginfo-common-ppc64-3.10.0-514.48.3.el7.ppc64.rpm
kernel-devel-3.10.0-514.48.3.el7.ppc64.rpm
kernel-headers-3.10.0-514.48.3.el7.ppc64.rpm
kernel-tools-3.10.0-514.48.3.el7.ppc64.rpm
kernel-tools-debuginfo-3.10.0-514.48.3.el7.ppc64.rpm
kernel-tools-libs-3.10.0-514.48.3.el7.ppc64.rpm
perf-3.10.0-514.48.3.el7.ppc64.rpm
perf-debuginfo-3.10.0-514.48.3.el7.ppc64.rpm
python-perf-3.10.0-514.48.3.el7.ppc64.rpm
python-perf-debuginfo-3.10.0-514.48.3.el7.ppc64.rpm

ppc64le:
kernel-3.10.0-514.48.3.el7.ppc64le.rpm
kernel-bootwrapper-3.10.0-514.48.3.el7.ppc64le.rpm
kernel-debug-3.10.0-514.48.3.el7.ppc64le.rpm
kernel-debug-debuginfo-3.10.0-514.48.3.el7.ppc64le.rpm
kernel-debuginfo-3.10.0-514.48.3.el7.ppc64le.rpm
kernel-debuginfo-common-ppc64le-3.10.0-514.48.3.el7.ppc64le.rpm
kernel-devel-3.10.0-514.48.3.el7.ppc64le.rpm
kernel-headers-3.10.0-514.48.3.el7.ppc64le.rpm
kernel-tools-3.10.0-514.48.3.el7.ppc64le.rpm
kernel-tools-debuginfo-3.10.0-514.48.3.el7.ppc64le.rpm
kernel-tools-libs-3.10.0-514.48.3.el7.ppc64le.rpm
perf-3.10.0-514.48.3.el7.ppc64le.rpm
perf-debuginfo-3.10.0-514.48.3.el7.ppc64le.rpm
python-perf-3.10.0-514.48.3.el7.ppc64le.rpm
python-perf-debuginfo-3.10.0-514.48.3.el7.ppc64le.rpm

s390x:
kernel-3.10.0-514.48.3.el7.s390x.rpm
kernel-debug-3.10.0-514.48.3.el7.s390x.rpm
kernel-debug-debuginfo-3.10.0-514.48.3.el7.s390x.rpm
kernel-debug-devel-3.10.0-514.48.3.el7.s390x.rpm
kernel-debuginfo-3.10.0-514.48.3.el7.s390x.rpm
kernel-debuginfo-common-s390x-3.10.0-514.48.3.el7.s390x.rpm
kernel-devel-3.10.0-514.48.3.el7.s390x.rpm
kernel-headers-3.10.0-514.48.3.el7.s390x.rpm
kernel-kdump-3.10.0-514.48.3.el7.s390x.rpm
kernel-kdump-debuginfo-3.10.0-514.48.3.el7.s390x.rpm
kernel-kdump-devel-3.10.0-514.48.3.el7.s390x.rpm
perf-3.10.0-514.48.3.el7.s390x.rpm
perf-debuginfo-3.10.0-514.48.3.el7.s390x.rpm
python-perf-3.10.0-514.48.3.el7.s390x.rpm
python-perf-debuginfo-3.10.0-514.48.3.el7.s390x.rpm

x86_64:
kernel-3.10.0-514.48.3.el7.x86_64.rpm
kernel-debug-3.10.0-514.48.3.el7.x86_64.rpm
kernel-debug-debuginfo-3.10.0-514.48.3.el7.x86_64.rpm
kernel-debug-devel-3.10.0-514.48.3.el7.x86_64.rpm
kernel-debuginfo-3.10.0-514.48.3.el7.x86_64.rpm
kernel-debuginfo-common-x86_64-3.10.0-514.48.3.el7.x86_64.rpm
kernel-devel-3.10.0-514.48.3.el7.x86_64.rpm
kernel-headers-3.10.0-514.48.3.el7.x86_64.rpm
kernel-tools-3.10.0-514.48.3.el7.x86_64.rpm
kernel-tools-debuginfo-3.10.0-514.48.3.el7.x86_64.rpm
kernel-tools-libs-3.10.0-514.48.3.el7.x86_64.rpm
perf-3.10.0-514.48.3.el7.x86_64.rpm
perf-debuginfo-3.10.0-514.48.3.el7.x86_64.rpm
python-perf-3.10.0-514.48.3.el7.x86_64.rpm
python-perf-debuginfo-3.10.0-514.48.3.el7.x86_64.rpm

Red Hat Enterprise Linux Server Optional EUS (v. 7.3):

ppc64:
kernel-debug-debuginfo-3.10.0-514.48.3.el7.ppc64.rpm
kernel-debuginfo-3.10.0-514.48.3.el7.ppc64.rpm
kernel-debuginfo-common-ppc64-3.10.0-514.48.3.el7.ppc64.rpm
kernel-tools-debuginfo-3.10.0-514.48.3.el7.ppc64.rpm
kernel-tools-libs-devel-3.10.0-514.48.3.el7.ppc64.rpm
perf-debuginfo-3.10.0-514.48.3.el7.ppc64.rpm
python-perf-debuginfo-3.10.0-514.48.3.el7.ppc64.rpm

ppc64le:
kernel-debug-debuginfo-3.10.0-514.48.3.el7.ppc64le.rpm
kernel-debug-devel-3.10.0-514.48.3.el7.ppc64le.rpm
kernel-debuginfo-3.10.0-514.48.3.el7.ppc64le.rpm
kernel-debuginfo-common-ppc64le-3.10.0-514.48.3.el7.ppc64le.rpm
kernel-tools-debuginfo-3.10.0-514.48.3.el7.ppc64le.rpm
kernel-tools-libs-devel-3.10.0-514.48.3.el7.ppc64le.rpm
perf-debuginfo-3.10.0-514.48.3.el7.ppc64le.rpm
python-perf-debuginfo-3.10.0-514.48.3.el7.ppc64le.rpm

x86_64:
kernel-debug-debuginfo-3.10.0-514.48.3.el7.x86_64.rpm
kernel-debuginfo-3.10.0-514.48.3.el7.x86_64.rpm
kernel-debuginfo-common-x86_64-3.10.0-514.48.3.el7.x86_64.rpm
kernel-tools-debuginfo-3.10.0-514.48.3.el7.x86_64.rpm
kernel-tools-libs-devel-3.10.0-514.48.3.el7.x86_64.rpm
perf-debuginfo-3.10.0-514.48.3.el7.x86_64.rpm
python-perf-debuginfo-3.10.0-514.48.3.el7.x86_64.rpm

These packages are GPG signed by Red Hat for security.  Our key and
details on how to verify the signature are available from
https://access.redhat.com/security/team/key/

7. References:

https://access.redhat.com/security/cve/CVE-2018-1087
https://access.redhat.com/security/cve/CVE-2018-8897
https://access.redhat.com/security/cve/CVE-2018-1000199
https://access.redhat.com/security/updates/classification/#important

8. Contact:

The Red Hat security contact is <secalert@redhat.com>. More contact
details at https://access.redhat.com/security/team/contact/

Copyright 2018 Red Hat, Inc.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1

iD8DBQFa8hyBXlSAg2UNWIIRAneEAKCislWXxms+w2cocgWLD3Mu2HMHkwCgiR+2
i4C0UytgQXhOcPkztivUlaU=
=N2cw
-----END PGP SIGNATURE-----

--
RHSA-announce mailing list
RHSA-announce@redhat.com
https://www.redhat.com/mailman/listinfo/rhsa-announce
    

- 漏洞信息 (F147540)

Red Hat Security Advisory 2018-1347-01 (PacketStormID:F147540)
2018-05-08 00:00:00
Red Hat  
advisory,denial of service,kernel
linux,redhat
CVE-2018-1000199,CVE-2018-1087,CVE-2018-8897
[点击下载]

Red Hat Security Advisory 2018-1347-01 - The kernel packages contain the Linux kernel, the core of any Linux operating system. Issues addressed include a denial of service vulnerability.

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

=====================================================================
                   Red Hat Security Advisory

Synopsis:          Important: kernel security update
Advisory ID:       RHSA-2018:1347-01
Product:           Red Hat Enterprise Linux
Advisory URL:      https://access.redhat.com/errata/RHSA-2018:1347
Issue date:        2018-05-08
CVE Names:         CVE-2018-1087 CVE-2018-8897 CVE-2018-1000199 
=====================================================================

1. Summary:

An update for kernel is now available for Red Hat Enterprise Linux 7.2
Advanced Update Support, Red Hat Enterprise Linux 7.2 Telco Extended Update
Support, and Red Hat Enterprise Linux 7.2 Update Services for SAP
Solutions.

Red Hat Product Security has rated this update as having a security impact
of Important. A Common Vulnerability Scoring System (CVSS) base score,
which gives a detailed severity rating, is available for each vulnerability
from the CVE link(s) in the References section.

2. Relevant releases/architectures:

Red Hat Enterprise Linux Server AUS (v. 7.2) - noarch, x86_64
Red Hat Enterprise Linux Server E4S (v. 7.2) - noarch, ppc64le, x86_64
Red Hat Enterprise Linux Server Optional AUS (v. 7.2) - x86_64
Red Hat Enterprise Linux Server Optional E4S (v. 7.2) - ppc64le, x86_64
Red Hat Enterprise Linux Server Optional TUS (v. 7.2) - x86_64
Red Hat Enterprise Linux Server TUS (v. 7.2) - noarch, x86_64

3. Description:

The kernel packages contain the Linux kernel, the core of any Linux
operating system.

Security Fix(es):

* Kernel: KVM: error in exception handling leads to wrong debug stack value
(CVE-2018-1087)

* Kernel: error in exception handling leads to DoS (CVE-2018-8897)

* kernel: ptrace() incorrect error handling leads to corruption and DoS
(CVE-2018-1000199)

For more details about the security issue(s), including the impact, a CVSS
score, and other related information, refer to the CVE page(s) listed in
the References section.

Red Hat would like to thank Andy Lutomirski for reporting CVE-2018-1087 and
CVE-2018-1000199 and Nick Peterson (Everdox Tech LLC) and Andy Lutomirski
for reporting CVE-2018-8897.

4. Solution:

For details on how to apply this update, which includes the changes
described in this advisory, refer to:

https://access.redhat.com/articles/11258

The system must be rebooted for this update to take effect.

5. Bugs fixed (https://bugzilla.redhat.com/):

1566837 - CVE-2018-1087 Kernel: KVM: error in exception handling leads to wrong debug stack value
1567074 - CVE-2018-8897 Kernel: error in exception handling leads to DoS
1568477 - CVE-2018-1000199 kernel: ptrace() incorrect error handling leads to corruption and DoS

6. Package List:

Red Hat Enterprise Linux Server AUS (v. 7.2):

Source:
kernel-3.10.0-327.66.3.el7.src.rpm

noarch:
kernel-abi-whitelists-3.10.0-327.66.3.el7.noarch.rpm
kernel-doc-3.10.0-327.66.3.el7.noarch.rpm

x86_64:
kernel-3.10.0-327.66.3.el7.x86_64.rpm
kernel-debug-3.10.0-327.66.3.el7.x86_64.rpm
kernel-debug-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm
kernel-debug-devel-3.10.0-327.66.3.el7.x86_64.rpm
kernel-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm
kernel-debuginfo-common-x86_64-3.10.0-327.66.3.el7.x86_64.rpm
kernel-devel-3.10.0-327.66.3.el7.x86_64.rpm
kernel-headers-3.10.0-327.66.3.el7.x86_64.rpm
kernel-tools-3.10.0-327.66.3.el7.x86_64.rpm
kernel-tools-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm
kernel-tools-libs-3.10.0-327.66.3.el7.x86_64.rpm
perf-3.10.0-327.66.3.el7.x86_64.rpm
perf-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm
python-perf-3.10.0-327.66.3.el7.x86_64.rpm
python-perf-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm

Red Hat Enterprise Linux Server E4S (v. 7.2):

Source:
kernel-3.10.0-327.66.3.el7.src.rpm

noarch:
kernel-abi-whitelists-3.10.0-327.66.3.el7.noarch.rpm
kernel-doc-3.10.0-327.66.3.el7.noarch.rpm

ppc64le:
kernel-3.10.0-327.66.3.el7.ppc64le.rpm
kernel-bootwrapper-3.10.0-327.66.3.el7.ppc64le.rpm
kernel-debug-3.10.0-327.66.3.el7.ppc64le.rpm
kernel-debug-debuginfo-3.10.0-327.66.3.el7.ppc64le.rpm
kernel-debuginfo-3.10.0-327.66.3.el7.ppc64le.rpm
kernel-debuginfo-common-ppc64le-3.10.0-327.66.3.el7.ppc64le.rpm
kernel-devel-3.10.0-327.66.3.el7.ppc64le.rpm
kernel-headers-3.10.0-327.66.3.el7.ppc64le.rpm
kernel-tools-3.10.0-327.66.3.el7.ppc64le.rpm
kernel-tools-debuginfo-3.10.0-327.66.3.el7.ppc64le.rpm
kernel-tools-libs-3.10.0-327.66.3.el7.ppc64le.rpm
perf-3.10.0-327.66.3.el7.ppc64le.rpm
perf-debuginfo-3.10.0-327.66.3.el7.ppc64le.rpm
python-perf-3.10.0-327.66.3.el7.ppc64le.rpm
python-perf-debuginfo-3.10.0-327.66.3.el7.ppc64le.rpm

x86_64:
kernel-3.10.0-327.66.3.el7.x86_64.rpm
kernel-debug-3.10.0-327.66.3.el7.x86_64.rpm
kernel-debug-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm
kernel-debug-devel-3.10.0-327.66.3.el7.x86_64.rpm
kernel-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm
kernel-debuginfo-common-x86_64-3.10.0-327.66.3.el7.x86_64.rpm
kernel-devel-3.10.0-327.66.3.el7.x86_64.rpm
kernel-headers-3.10.0-327.66.3.el7.x86_64.rpm
kernel-tools-3.10.0-327.66.3.el7.x86_64.rpm
kernel-tools-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm
kernel-tools-libs-3.10.0-327.66.3.el7.x86_64.rpm
perf-3.10.0-327.66.3.el7.x86_64.rpm
perf-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm
python-perf-3.10.0-327.66.3.el7.x86_64.rpm
python-perf-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm

Red Hat Enterprise Linux Server TUS (v. 7.2):

Source:
kernel-3.10.0-327.66.3.el7.src.rpm

noarch:
kernel-abi-whitelists-3.10.0-327.66.3.el7.noarch.rpm
kernel-doc-3.10.0-327.66.3.el7.noarch.rpm

x86_64:
kernel-3.10.0-327.66.3.el7.x86_64.rpm
kernel-debug-3.10.0-327.66.3.el7.x86_64.rpm
kernel-debug-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm
kernel-debug-devel-3.10.0-327.66.3.el7.x86_64.rpm
kernel-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm
kernel-debuginfo-common-x86_64-3.10.0-327.66.3.el7.x86_64.rpm
kernel-devel-3.10.0-327.66.3.el7.x86_64.rpm
kernel-headers-3.10.0-327.66.3.el7.x86_64.rpm
kernel-tools-3.10.0-327.66.3.el7.x86_64.rpm
kernel-tools-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm
kernel-tools-libs-3.10.0-327.66.3.el7.x86_64.rpm
perf-3.10.0-327.66.3.el7.x86_64.rpm
perf-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm
python-perf-3.10.0-327.66.3.el7.x86_64.rpm
python-perf-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm

Red Hat Enterprise Linux Server Optional AUS (v. 7.2):

x86_64:
kernel-debug-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm
kernel-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm
kernel-debuginfo-common-x86_64-3.10.0-327.66.3.el7.x86_64.rpm
kernel-tools-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm
kernel-tools-libs-devel-3.10.0-327.66.3.el7.x86_64.rpm
perf-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm
python-perf-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm

Red Hat Enterprise Linux Server Optional E4S (v. 7.2):

ppc64le:
kernel-debug-debuginfo-3.10.0-327.66.3.el7.ppc64le.rpm
kernel-debug-devel-3.10.0-327.66.3.el7.ppc64le.rpm
kernel-debuginfo-3.10.0-327.66.3.el7.ppc64le.rpm
kernel-debuginfo-common-ppc64le-3.10.0-327.66.3.el7.ppc64le.rpm
kernel-tools-debuginfo-3.10.0-327.66.3.el7.ppc64le.rpm
kernel-tools-libs-devel-3.10.0-327.66.3.el7.ppc64le.rpm
perf-debuginfo-3.10.0-327.66.3.el7.ppc64le.rpm
python-perf-debuginfo-3.10.0-327.66.3.el7.ppc64le.rpm

x86_64:
kernel-debug-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm
kernel-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm
kernel-debuginfo-common-x86_64-3.10.0-327.66.3.el7.x86_64.rpm
kernel-tools-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm
kernel-tools-libs-devel-3.10.0-327.66.3.el7.x86_64.rpm
perf-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm
python-perf-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm

Red Hat Enterprise Linux Server Optional TUS (v. 7.2):

x86_64:
kernel-debug-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm
kernel-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm
kernel-debuginfo-common-x86_64-3.10.0-327.66.3.el7.x86_64.rpm
kernel-tools-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm
kernel-tools-libs-devel-3.10.0-327.66.3.el7.x86_64.rpm
perf-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm
python-perf-debuginfo-3.10.0-327.66.3.el7.x86_64.rpm

These packages are GPG signed by Red Hat for security.  Our key and
details on how to verify the signature are available from
https://access.redhat.com/security/team/key/

7. References:

https://access.redhat.com/security/cve/CVE-2018-1087
https://access.redhat.com/security/cve/CVE-2018-8897
https://access.redhat.com/security/cve/CVE-2018-1000199
https://access.redhat.com/security/updates/classification/#important

8. Contact:

The Red Hat security contact is <secalert@redhat.com>. More contact
details at https://access.redhat.com/security/team/contact/

Copyright 2018 Red Hat, Inc.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1

iD8DBQFa8hjAXlSAg2UNWIIRAkH1AKCosff5yYgtYpdAUcf3SnlQOGVZfgCgiEYR
g6/4/EzMBa+lSt9QhxSqC18=
=IYAU
-----END PGP SIGNATURE-----

--
RHSA-announce mailing list
RHSA-announce@redhat.com
https://www.redhat.com/mailman/listinfo/rhsa-announce
    

- 漏洞信息 (F147537)

Red Hat Security Advisory 2018-1345-01 (PacketStormID:F147537)
2018-05-08 00:00:00
Red Hat  
advisory,denial of service,kernel
linux,redhat
CVE-2018-1000199,CVE-2018-1087,CVE-2018-8897
[点击下载]

Red Hat Security Advisory 2018-1345-01 - The kernel packages contain the Linux kernel, the core of any Linux operating system. Issues addressed include a denial of service vulnerability.

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

=====================================================================
                   Red Hat Security Advisory

Synopsis:          Important: kernel security update
Advisory ID:       RHSA-2018:1345-01
Product:           Red Hat Enterprise Linux
Advisory URL:      https://access.redhat.com/errata/RHSA-2018:1345
Issue date:        2018-05-08
CVE Names:         CVE-2018-1087 CVE-2018-8897 CVE-2018-1000199 
=====================================================================

1. Summary:

An update for kernel is now available for Red Hat Enterprise Linux 7.4
Extended Update Support.

Red Hat Product Security has rated this update as having a security impact
of Important. A Common Vulnerability Scoring System (CVSS) base score,
which gives a detailed severity rating, is available for each vulnerability
from the CVE link(s) in the References section.

2. Relevant releases/architectures:

Red Hat Enterprise Linux ComputeNode EUS (v. 7.4) - noarch, x86_64
Red Hat Enterprise Linux ComputeNode Optional EUS (v. 7.4) - x86_64
Red Hat Enterprise Linux Server EUS (v. 7.4) - noarch, ppc64, ppc64le, s390x, x86_64
Red Hat Enterprise Linux Server Optional EUS (v. 7.4) - noarch, ppc64, ppc64le, x86_64

3. Description:

The kernel packages contain the Linux kernel, the core of any Linux
operating system.

Security Fix(es):

* Kernel: KVM: error in exception handling leads to wrong debug stack value
(CVE-2018-1087)

* Kernel: error in exception handling leads to DoS (CVE-2018-8897)

* kernel: ptrace() incorrect error handling leads to corruption and DoS
(CVE-2018-1000199)

For more details about the security issue(s), including the impact, a CVSS
score, and other related information, refer to the CVE page(s) listed in
the References section.

Red Hat would like to thank Andy Lutomirski for reporting CVE-2018-1087 and
CVE-2018-1000199 and Nick Peterson (Everdox Tech LLC) and Andy Lutomirski
for reporting CVE-2018-8897.

4. Solution:

For details on how to apply this update, which includes the changes
described in this advisory, refer to:

https://access.redhat.com/articles/11258

The system must be rebooted for this update to take effect.

5. Bugs fixed (https://bugzilla.redhat.com/):

1566837 - CVE-2018-1087 Kernel: KVM: error in exception handling leads to wrong debug stack value
1567074 - CVE-2018-8897 Kernel: error in exception handling leads to DoS
1568477 - CVE-2018-1000199 kernel: ptrace() incorrect error handling leads to corruption and DoS

6. Package List:

Red Hat Enterprise Linux ComputeNode EUS (v. 7.4):

Source:
kernel-3.10.0-693.25.4.el7.src.rpm

noarch:
kernel-abi-whitelists-3.10.0-693.25.4.el7.noarch.rpm
kernel-doc-3.10.0-693.25.4.el7.noarch.rpm

x86_64:
kernel-3.10.0-693.25.4.el7.x86_64.rpm
kernel-debug-3.10.0-693.25.4.el7.x86_64.rpm
kernel-debug-debuginfo-3.10.0-693.25.4.el7.x86_64.rpm
kernel-debug-devel-3.10.0-693.25.4.el7.x86_64.rpm
kernel-debuginfo-3.10.0-693.25.4.el7.x86_64.rpm
kernel-debuginfo-common-x86_64-3.10.0-693.25.4.el7.x86_64.rpm
kernel-devel-3.10.0-693.25.4.el7.x86_64.rpm
kernel-headers-3.10.0-693.25.4.el7.x86_64.rpm
kernel-tools-3.10.0-693.25.4.el7.x86_64.rpm
kernel-tools-debuginfo-3.10.0-693.25.4.el7.x86_64.rpm
kernel-tools-libs-3.10.0-693.25.4.el7.x86_64.rpm
perf-3.10.0-693.25.4.el7.x86_64.rpm
perf-debuginfo-3.10.0-693.25.4.el7.x86_64.rpm
python-perf-3.10.0-693.25.4.el7.x86_64.rpm
python-perf-debuginfo-3.10.0-693.25.4.el7.x86_64.rpm

Red Hat Enterprise Linux ComputeNode Optional EUS (v. 7.4):

x86_64:
kernel-debug-debuginfo-3.10.0-693.25.4.el7.x86_64.rpm
kernel-debuginfo-3.10.0-693.25.4.el7.x86_64.rpm
kernel-debuginfo-common-x86_64-3.10.0-693.25.4.el7.x86_64.rpm
kernel-tools-debuginfo-3.10.0-693.25.4.el7.x86_64.rpm
kernel-tools-libs-devel-3.10.0-693.25.4.el7.x86_64.rpm
perf-debuginfo-3.10.0-693.25.4.el7.x86_64.rpm
python-perf-debuginfo-3.10.0-693.25.4.el7.x86_64.rpm

Red Hat Enterprise Linux Server EUS (v. 7.4):

Source:
kernel-3.10.0-693.25.4.el7.src.rpm

noarch:
kernel-abi-whitelists-3.10.0-693.25.4.el7.noarch.rpm
kernel-doc-3.10.0-693.25.4.el7.noarch.rpm

ppc64:
kernel-3.10.0-693.25.4.el7.ppc64.rpm
kernel-bootwrapper-3.10.0-693.25.4.el7.ppc64.rpm
kernel-debug-3.10.0-693.25.4.el7.ppc64.rpm
kernel-debug-debuginfo-3.10.0-693.25.4.el7.ppc64.rpm
kernel-debug-devel-3.10.0-693.25.4.el7.ppc64.rpm
kernel-debuginfo-3.10.0-693.25.4.el7.ppc64.rpm
kernel-debuginfo-common-ppc64-3.10.0-693.25.4.el7.ppc64.rpm
kernel-devel-3.10.0-693.25.4.el7.ppc64.rpm
kernel-headers-3.10.0-693.25.4.el7.ppc64.rpm
kernel-tools-3.10.0-693.25.4.el7.ppc64.rpm
kernel-tools-debuginfo-3.10.0-693.25.4.el7.ppc64.rpm
kernel-tools-libs-3.10.0-693.25.4.el7.ppc64.rpm
perf-3.10.0-693.25.4.el7.ppc64.rpm
perf-debuginfo-3.10.0-693.25.4.el7.ppc64.rpm
python-perf-3.10.0-693.25.4.el7.ppc64.rpm
python-perf-debuginfo-3.10.0-693.25.4.el7.ppc64.rpm

ppc64le:
kernel-3.10.0-693.25.4.el7.ppc64le.rpm
kernel-bootwrapper-3.10.0-693.25.4.el7.ppc64le.rpm
kernel-debug-3.10.0-693.25.4.el7.ppc64le.rpm
kernel-debug-debuginfo-3.10.0-693.25.4.el7.ppc64le.rpm
kernel-debuginfo-3.10.0-693.25.4.el7.ppc64le.rpm
kernel-debuginfo-common-ppc64le-3.10.0-693.25.4.el7.ppc64le.rpm
kernel-devel-3.10.0-693.25.4.el7.ppc64le.rpm
kernel-headers-3.10.0-693.25.4.el7.ppc64le.rpm
kernel-tools-3.10.0-693.25.4.el7.ppc64le.rpm
kernel-tools-debuginfo-3.10.0-693.25.4.el7.ppc64le.rpm
kernel-tools-libs-3.10.0-693.25.4.el7.ppc64le.rpm
perf-3.10.0-693.25.4.el7.ppc64le.rpm
perf-debuginfo-3.10.0-693.25.4.el7.ppc64le.rpm
python-perf-3.10.0-693.25.4.el7.ppc64le.rpm
python-perf-debuginfo-3.10.0-693.25.4.el7.ppc64le.rpm

s390x:
kernel-3.10.0-693.25.4.el7.s390x.rpm
kernel-debug-3.10.0-693.25.4.el7.s390x.rpm
kernel-debug-debuginfo-3.10.0-693.25.4.el7.s390x.rpm
kernel-debug-devel-3.10.0-693.25.4.el7.s390x.rpm
kernel-debuginfo-3.10.0-693.25.4.el7.s390x.rpm
kernel-debuginfo-common-s390x-3.10.0-693.25.4.el7.s390x.rpm
kernel-devel-3.10.0-693.25.4.el7.s390x.rpm
kernel-headers-3.10.0-693.25.4.el7.s390x.rpm
kernel-kdump-3.10.0-693.25.4.el7.s390x.rpm
kernel-kdump-debuginfo-3.10.0-693.25.4.el7.s390x.rpm
kernel-kdump-devel-3.10.0-693.25.4.el7.s390x.rpm
perf-3.10.0-693.25.4.el7.s390x.rpm
perf-debuginfo-3.10.0-693.25.4.el7.s390x.rpm
python-perf-3.10.0-693.25.4.el7.s390x.rpm
python-perf-debuginfo-3.10.0-693.25.4.el7.s390x.rpm

x86_64:
kernel-3.10.0-693.25.4.el7.x86_64.rpm
kernel-debug-3.10.0-693.25.4.el7.x86_64.rpm
kernel-debug-debuginfo-3.10.0-693.25.4.el7.x86_64.rpm
kernel-debug-devel-3.10.0-693.25.4.el7.x86_64.rpm
kernel-debuginfo-3.10.0-693.25.4.el7.x86_64.rpm
kernel-debuginfo-common-x86_64-3.10.0-693.25.4.el7.x86_64.rpm
kernel-devel-3.10.0-693.25.4.el7.x86_64.rpm
kernel-headers-3.10.0-693.25.4.el7.x86_64.rpm
kernel-tools-3.10.0-693.25.4.el7.x86_64.rpm
kernel-tools-debuginfo-3.10.0-693.25.4.el7.x86_64.rpm
kernel-tools-libs-3.10.0-693.25.4.el7.x86_64.rpm
perf-3.10.0-693.25.4.el7.x86_64.rpm
perf-debuginfo-3.10.0-693.25.4.el7.x86_64.rpm
python-perf-3.10.0-693.25.4.el7.x86_64.rpm
python-perf-debuginfo-3.10.0-693.25.4.el7.x86_64.rpm

Red Hat Enterprise Linux Server Optional EUS (v. 7.4):

noarch:
kernel-doc-3.10.0-693.25.4.el7.noarch.rpm

ppc64:
kernel-debug-debuginfo-3.10.0-693.25.4.el7.ppc64.rpm
kernel-debuginfo-3.10.0-693.25.4.el7.ppc64.rpm
kernel-debuginfo-common-ppc64-3.10.0-693.25.4.el7.ppc64.rpm
kernel-tools-debuginfo-3.10.0-693.25.4.el7.ppc64.rpm
kernel-tools-libs-devel-3.10.0-693.25.4.el7.ppc64.rpm
perf-debuginfo-3.10.0-693.25.4.el7.ppc64.rpm
python-perf-debuginfo-3.10.0-693.25.4.el7.ppc64.rpm

ppc64le:
kernel-debug-debuginfo-3.10.0-693.25.4.el7.ppc64le.rpm
kernel-debug-devel-3.10.0-693.25.4.el7.ppc64le.rpm
kernel-debuginfo-3.10.0-693.25.4.el7.ppc64le.rpm
kernel-debuginfo-common-ppc64le-3.10.0-693.25.4.el7.ppc64le.rpm
kernel-tools-debuginfo-3.10.0-693.25.4.el7.ppc64le.rpm
kernel-tools-libs-devel-3.10.0-693.25.4.el7.ppc64le.rpm
perf-debuginfo-3.10.0-693.25.4.el7.ppc64le.rpm
python-perf-debuginfo-3.10.0-693.25.4.el7.ppc64le.rpm

x86_64:
kernel-debug-debuginfo-3.10.0-693.25.4.el7.x86_64.rpm
kernel-debuginfo-3.10.0-693.25.4.el7.x86_64.rpm
kernel-debuginfo-common-x86_64-3.10.0-693.25.4.el7.x86_64.rpm
kernel-tools-debuginfo-3.10.0-693.25.4.el7.x86_64.rpm
kernel-tools-libs-devel-3.10.0-693.25.4.el7.x86_64.rpm
perf-debuginfo-3.10.0-693.25.4.el7.x86_64.rpm
python-perf-debuginfo-3.10.0-693.25.4.el7.x86_64.rpm

These packages are GPG signed by Red Hat for security.  Our key and
details on how to verify the signature are available from
https://access.redhat.com/security/team/key/

7. References:

https://access.redhat.com/security/cve/CVE-2018-1087
https://access.redhat.com/security/cve/CVE-2018-8897
https://access.redhat.com/security/cve/CVE-2018-1000199
https://access.redhat.com/security/updates/classification/#important

8. Contact:

The Red Hat security contact is <secalert@redhat.com>. More contact
details at https://access.redhat.com/security/team/contact/

Copyright 2018 Red Hat, Inc.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1

iD8DBQFa8f82XlSAg2UNWIIRAmdHAJsHdMunEKNUy8QOsW4n0kzPy2gwlgCfbvSi
i1pABwheuGvkWWsL1GHuQ+c=
=dDVY
-----END PGP SIGNATURE-----

--
RHSA-announce mailing list
RHSA-announce@redhat.com
https://www.redhat.com/mailman/listinfo/rhsa-announce
    

- 漏洞信息 (F147534)

Red Hat Security Advisory 2018-1318-01 (PacketStormID:F147534)
2018-05-08 00:00:00
Red Hat  
advisory,denial of service,kernel,vulnerability
linux,redhat
CVE-2017-16939,CVE-2018-1000199,CVE-2018-1068,CVE-2018-1087,CVE-2018-1091,CVE-2018-8897
[点击下载]

Red Hat Security Advisory 2018-1318-01 - The kernel packages contain the Linux kernel, the core of any Linux operating system. Issues addressed include denial of service and use-after-free vulnerabilities.

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

=====================================================================
                   Red Hat Security Advisory

Synopsis:          Important: kernel security, bug fix, and enhancement update
Advisory ID:       RHSA-2018:1318-01
Product:           Red Hat Enterprise Linux
Advisory URL:      https://access.redhat.com/errata/RHSA-2018:1318
Issue date:        2018-05-08
CVE Names:         CVE-2017-16939 CVE-2018-1068 CVE-2018-1087 
                   CVE-2018-1091 CVE-2018-8897 CVE-2018-1000199 
=====================================================================

1. Summary:

An update for kernel is now available for Red Hat Enterprise Linux 7.

Red Hat Product Security has rated this update as having a security impact
of Important. A Common Vulnerability Scoring System (CVSS) base score,
which gives a detailed severity rating, is available for each vulnerability
from the CVE link(s) in the References section.

2. Relevant releases/architectures:

Red Hat Enterprise Linux Client (v. 7) - noarch, x86_64
Red Hat Enterprise Linux Client Optional (v. 7) - x86_64
Red Hat Enterprise Linux ComputeNode (v. 7) - noarch, x86_64
Red Hat Enterprise Linux ComputeNode Optional (v. 7) - x86_64
Red Hat Enterprise Linux Server (v. 7) - noarch, ppc64, ppc64le, s390x, x86_64
Red Hat Enterprise Linux Server Optional (v. 7) - ppc64, ppc64le, x86_64
Red Hat Enterprise Linux Workstation (v. 7) - noarch, x86_64
Red Hat Enterprise Linux Workstation Optional (v. 7) - x86_64
Red Hat Enterprise Linux for ARM and IBM Power LE (POWER9) Server (v. 7) - noarch, ppc64le, s390x
Red Hat Enterprise Linux for ARM and IBM Power LE (POWER9) Server Optional (v. 7) - noarch, ppc64le

3. Description:

The kernel packages contain the Linux kernel, the core of any Linux
operating system.

Security Fix(es):

* Kernel: KVM: error in exception handling leads to wrong debug stack value
(CVE-2018-1087)

* Kernel: error in exception handling leads to DoS (CVE-2018-8897)

* Kernel: ipsec: xfrm: use-after-free leading to potential privilege
escalation (CVE-2017-16939)

* kernel: Out-of-bounds write via userland offsets in ebt_entry struct in
netfilter/ebtables.c (CVE-2018-1068)

* kernel: ptrace() incorrect error handling leads to corruption and DoS
(CVE-2018-1000199)

* kernel: guest kernel crash during core dump on POWER9 host
(CVE-2018-1091)

For more details about the security issue(s), including the impact, a CVSS
score, and other related information, refer to the CVE page(s) listed in
the References section.

Red Hat would like to thank Andy Lutomirski for reporting CVE-2018-1087 and
CVE-2018-1000199 and Nick Peterson (Everdox Tech LLC) and Andy Lutomirski
for reporting CVE-2018-8897.

Bug Fix(es):

These updated kernel packages include also numerous bug fixes. Space
precludes documenting all of these bug fixes in this advisory. See the bug
fix descriptions in the related Knowledge Article:
https://access.redhat.com/articles/3431641

4. Solution:

For details on how to apply this update, which includes the changes
described in this advisory, refer to:

https://access.redhat.com/articles/11258

The system must be rebooted for this update to take effect.

5. Bugs fixed (https://bugzilla.redhat.com/):

1517220 - CVE-2017-16939 Kernel: ipsec: xfrm: use-after-free leading to potential privilege escalation
1552048 - CVE-2018-1068 kernel: Out-of-bounds write via userland offsets in ebt_entry struct in netfilter/ebtables.c
1558149 - CVE-2018-1091 kernel: guest kernel crash during core dump on POWER9 host
1566837 - CVE-2018-1087 Kernel: KVM: error in exception handling leads to wrong debug stack value
1567074 - CVE-2018-8897 Kernel: error in exception handling leads to DoS
1568477 - CVE-2018-1000199 kernel: ptrace() incorrect error handling leads to corruption and DoS

6. Package List:

Red Hat Enterprise Linux Client (v. 7):

Source:
kernel-3.10.0-862.2.3.el7.src.rpm

noarch:
kernel-abi-whitelists-3.10.0-862.2.3.el7.noarch.rpm
kernel-doc-3.10.0-862.2.3.el7.noarch.rpm

x86_64:
kernel-3.10.0-862.2.3.el7.x86_64.rpm
kernel-debug-3.10.0-862.2.3.el7.x86_64.rpm
kernel-debug-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
kernel-debug-devel-3.10.0-862.2.3.el7.x86_64.rpm
kernel-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
kernel-debuginfo-common-x86_64-3.10.0-862.2.3.el7.x86_64.rpm
kernel-devel-3.10.0-862.2.3.el7.x86_64.rpm
kernel-headers-3.10.0-862.2.3.el7.x86_64.rpm
kernel-tools-3.10.0-862.2.3.el7.x86_64.rpm
kernel-tools-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
kernel-tools-libs-3.10.0-862.2.3.el7.x86_64.rpm
perf-3.10.0-862.2.3.el7.x86_64.rpm
perf-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
python-perf-3.10.0-862.2.3.el7.x86_64.rpm
python-perf-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm

Red Hat Enterprise Linux Client Optional (v. 7):

x86_64:
kernel-debug-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
kernel-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
kernel-debuginfo-common-x86_64-3.10.0-862.2.3.el7.x86_64.rpm
kernel-tools-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
kernel-tools-libs-devel-3.10.0-862.2.3.el7.x86_64.rpm
perf-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
python-perf-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm

Red Hat Enterprise Linux ComputeNode (v. 7):

Source:
kernel-3.10.0-862.2.3.el7.src.rpm

noarch:
kernel-abi-whitelists-3.10.0-862.2.3.el7.noarch.rpm
kernel-doc-3.10.0-862.2.3.el7.noarch.rpm

x86_64:
kernel-3.10.0-862.2.3.el7.x86_64.rpm
kernel-debug-3.10.0-862.2.3.el7.x86_64.rpm
kernel-debug-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
kernel-debug-devel-3.10.0-862.2.3.el7.x86_64.rpm
kernel-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
kernel-debuginfo-common-x86_64-3.10.0-862.2.3.el7.x86_64.rpm
kernel-devel-3.10.0-862.2.3.el7.x86_64.rpm
kernel-headers-3.10.0-862.2.3.el7.x86_64.rpm
kernel-tools-3.10.0-862.2.3.el7.x86_64.rpm
kernel-tools-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
kernel-tools-libs-3.10.0-862.2.3.el7.x86_64.rpm
perf-3.10.0-862.2.3.el7.x86_64.rpm
perf-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
python-perf-3.10.0-862.2.3.el7.x86_64.rpm
python-perf-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm

Red Hat Enterprise Linux ComputeNode Optional (v. 7):

x86_64:
kernel-debug-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
kernel-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
kernel-debuginfo-common-x86_64-3.10.0-862.2.3.el7.x86_64.rpm
kernel-tools-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
kernel-tools-libs-devel-3.10.0-862.2.3.el7.x86_64.rpm
perf-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
python-perf-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm

Red Hat Enterprise Linux Server (v. 7):

Source:
kernel-3.10.0-862.2.3.el7.src.rpm

noarch:
kernel-abi-whitelists-3.10.0-862.2.3.el7.noarch.rpm
kernel-doc-3.10.0-862.2.3.el7.noarch.rpm

ppc64:
kernel-3.10.0-862.2.3.el7.ppc64.rpm
kernel-bootwrapper-3.10.0-862.2.3.el7.ppc64.rpm
kernel-debug-3.10.0-862.2.3.el7.ppc64.rpm
kernel-debug-debuginfo-3.10.0-862.2.3.el7.ppc64.rpm
kernel-debug-devel-3.10.0-862.2.3.el7.ppc64.rpm
kernel-debuginfo-3.10.0-862.2.3.el7.ppc64.rpm
kernel-debuginfo-common-ppc64-3.10.0-862.2.3.el7.ppc64.rpm
kernel-devel-3.10.0-862.2.3.el7.ppc64.rpm
kernel-headers-3.10.0-862.2.3.el7.ppc64.rpm
kernel-tools-3.10.0-862.2.3.el7.ppc64.rpm
kernel-tools-debuginfo-3.10.0-862.2.3.el7.ppc64.rpm
kernel-tools-libs-3.10.0-862.2.3.el7.ppc64.rpm
perf-3.10.0-862.2.3.el7.ppc64.rpm
perf-debuginfo-3.10.0-862.2.3.el7.ppc64.rpm
python-perf-3.10.0-862.2.3.el7.ppc64.rpm
python-perf-debuginfo-3.10.0-862.2.3.el7.ppc64.rpm

ppc64le:
kernel-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-bootwrapper-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-debug-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-debug-debuginfo-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-debuginfo-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-debuginfo-common-ppc64le-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-devel-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-headers-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-tools-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-tools-debuginfo-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-tools-libs-3.10.0-862.2.3.el7.ppc64le.rpm
perf-3.10.0-862.2.3.el7.ppc64le.rpm
perf-debuginfo-3.10.0-862.2.3.el7.ppc64le.rpm
python-perf-3.10.0-862.2.3.el7.ppc64le.rpm
python-perf-debuginfo-3.10.0-862.2.3.el7.ppc64le.rpm

s390x:
kernel-3.10.0-862.2.3.el7.s390x.rpm
kernel-debug-3.10.0-862.2.3.el7.s390x.rpm
kernel-debug-debuginfo-3.10.0-862.2.3.el7.s390x.rpm
kernel-debug-devel-3.10.0-862.2.3.el7.s390x.rpm
kernel-debuginfo-3.10.0-862.2.3.el7.s390x.rpm
kernel-debuginfo-common-s390x-3.10.0-862.2.3.el7.s390x.rpm
kernel-devel-3.10.0-862.2.3.el7.s390x.rpm
kernel-headers-3.10.0-862.2.3.el7.s390x.rpm
kernel-kdump-3.10.0-862.2.3.el7.s390x.rpm
kernel-kdump-debuginfo-3.10.0-862.2.3.el7.s390x.rpm
kernel-kdump-devel-3.10.0-862.2.3.el7.s390x.rpm
perf-3.10.0-862.2.3.el7.s390x.rpm
perf-debuginfo-3.10.0-862.2.3.el7.s390x.rpm
python-perf-3.10.0-862.2.3.el7.s390x.rpm
python-perf-debuginfo-3.10.0-862.2.3.el7.s390x.rpm

x86_64:
kernel-3.10.0-862.2.3.el7.x86_64.rpm
kernel-debug-3.10.0-862.2.3.el7.x86_64.rpm
kernel-debug-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
kernel-debug-devel-3.10.0-862.2.3.el7.x86_64.rpm
kernel-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
kernel-debuginfo-common-x86_64-3.10.0-862.2.3.el7.x86_64.rpm
kernel-devel-3.10.0-862.2.3.el7.x86_64.rpm
kernel-headers-3.10.0-862.2.3.el7.x86_64.rpm
kernel-tools-3.10.0-862.2.3.el7.x86_64.rpm
kernel-tools-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
kernel-tools-libs-3.10.0-862.2.3.el7.x86_64.rpm
perf-3.10.0-862.2.3.el7.x86_64.rpm
perf-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
python-perf-3.10.0-862.2.3.el7.x86_64.rpm
python-perf-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm

Red Hat Enterprise Linux for ARM and IBM Power LE (POWER9) Server (v. 7):

noarch:
kernel-abi-whitelists-3.10.0-862.2.3.el7.noarch.rpm
kernel-doc-3.10.0-862.2.3.el7.noarch.rpm

ppc64le:
kernel-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-bootwrapper-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-debug-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-debug-debuginfo-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-debuginfo-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-debuginfo-common-ppc64le-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-devel-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-headers-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-tools-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-tools-debuginfo-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-tools-libs-3.10.0-862.2.3.el7.ppc64le.rpm
perf-3.10.0-862.2.3.el7.ppc64le.rpm
perf-debuginfo-3.10.0-862.2.3.el7.ppc64le.rpm
python-perf-3.10.0-862.2.3.el7.ppc64le.rpm
python-perf-debuginfo-3.10.0-862.2.3.el7.ppc64le.rpm

s390x:
kernel-3.10.0-862.2.3.el7.s390x.rpm
kernel-debug-3.10.0-862.2.3.el7.s390x.rpm
kernel-debug-debuginfo-3.10.0-862.2.3.el7.s390x.rpm
kernel-debug-devel-3.10.0-862.2.3.el7.s390x.rpm
kernel-debuginfo-3.10.0-862.2.3.el7.s390x.rpm
kernel-debuginfo-common-s390x-3.10.0-862.2.3.el7.s390x.rpm
kernel-devel-3.10.0-862.2.3.el7.s390x.rpm
kernel-headers-3.10.0-862.2.3.el7.s390x.rpm
kernel-kdump-3.10.0-862.2.3.el7.s390x.rpm
kernel-kdump-debuginfo-3.10.0-862.2.3.el7.s390x.rpm
kernel-kdump-devel-3.10.0-862.2.3.el7.s390x.rpm
perf-3.10.0-862.2.3.el7.s390x.rpm
perf-debuginfo-3.10.0-862.2.3.el7.s390x.rpm
python-perf-3.10.0-862.2.3.el7.s390x.rpm
python-perf-debuginfo-3.10.0-862.2.3.el7.s390x.rpm

Red Hat Enterprise Linux Server Optional (v. 7):

ppc64:
kernel-debug-debuginfo-3.10.0-862.2.3.el7.ppc64.rpm
kernel-debuginfo-3.10.0-862.2.3.el7.ppc64.rpm
kernel-debuginfo-common-ppc64-3.10.0-862.2.3.el7.ppc64.rpm
kernel-tools-debuginfo-3.10.0-862.2.3.el7.ppc64.rpm
kernel-tools-libs-devel-3.10.0-862.2.3.el7.ppc64.rpm
perf-debuginfo-3.10.0-862.2.3.el7.ppc64.rpm
python-perf-debuginfo-3.10.0-862.2.3.el7.ppc64.rpm

ppc64le:
kernel-debug-debuginfo-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-debug-devel-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-debuginfo-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-debuginfo-common-ppc64le-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-tools-debuginfo-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-tools-libs-devel-3.10.0-862.2.3.el7.ppc64le.rpm
perf-debuginfo-3.10.0-862.2.3.el7.ppc64le.rpm
python-perf-debuginfo-3.10.0-862.2.3.el7.ppc64le.rpm

x86_64:
kernel-debug-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
kernel-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
kernel-debuginfo-common-x86_64-3.10.0-862.2.3.el7.x86_64.rpm
kernel-tools-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
kernel-tools-libs-devel-3.10.0-862.2.3.el7.x86_64.rpm
perf-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
python-perf-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm

Red Hat Enterprise Linux for ARM and IBM Power LE (POWER9) Server Optional (v. 7):

noarch:
kernel-doc-3.10.0-862.2.3.el7.noarch.rpm

ppc64le:
kernel-debug-debuginfo-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-debug-devel-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-debuginfo-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-debuginfo-common-ppc64le-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-tools-debuginfo-3.10.0-862.2.3.el7.ppc64le.rpm
kernel-tools-libs-devel-3.10.0-862.2.3.el7.ppc64le.rpm
perf-debuginfo-3.10.0-862.2.3.el7.ppc64le.rpm
python-perf-debuginfo-3.10.0-862.2.3.el7.ppc64le.rpm

Red Hat Enterprise Linux Workstation (v. 7):

Source:
kernel-3.10.0-862.2.3.el7.src.rpm

noarch:
kernel-abi-whitelists-3.10.0-862.2.3.el7.noarch.rpm
kernel-doc-3.10.0-862.2.3.el7.noarch.rpm

x86_64:
kernel-3.10.0-862.2.3.el7.x86_64.rpm
kernel-debug-3.10.0-862.2.3.el7.x86_64.rpm
kernel-debug-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
kernel-debug-devel-3.10.0-862.2.3.el7.x86_64.rpm
kernel-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
kernel-debuginfo-common-x86_64-3.10.0-862.2.3.el7.x86_64.rpm
kernel-devel-3.10.0-862.2.3.el7.x86_64.rpm
kernel-headers-3.10.0-862.2.3.el7.x86_64.rpm
kernel-tools-3.10.0-862.2.3.el7.x86_64.rpm
kernel-tools-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
kernel-tools-libs-3.10.0-862.2.3.el7.x86_64.rpm
perf-3.10.0-862.2.3.el7.x86_64.rpm
perf-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
python-perf-3.10.0-862.2.3.el7.x86_64.rpm
python-perf-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm

Red Hat Enterprise Linux Workstation Optional (v. 7):

x86_64:
kernel-debug-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
kernel-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
kernel-debuginfo-common-x86_64-3.10.0-862.2.3.el7.x86_64.rpm
kernel-tools-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
kernel-tools-libs-devel-3.10.0-862.2.3.el7.x86_64.rpm
perf-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm
python-perf-debuginfo-3.10.0-862.2.3.el7.x86_64.rpm

These packages are GPG signed by Red Hat for security.  Our key and
details on how to verify the signature are available from
https://access.redhat.com/security/team/key/

7. References:

https://access.redhat.com/security/cve/CVE-2017-16939
https://access.redhat.com/security/cve/CVE-2018-1068
https://access.redhat.com/security/cve/CVE-2018-1087
https://access.redhat.com/security/cve/CVE-2018-1091
https://access.redhat.com/security/cve/CVE-2018-8897
https://access.redhat.com/security/cve/CVE-2018-1000199
https://access.redhat.com/security/updates/classification/#important
https://access.redhat.com/articles/3431641

8. Contact:

The Red Hat security contact is <secalert@redhat.com>. More contact
details at https://access.redhat.com/security/team/contact/

Copyright 2018 Red Hat, Inc.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1

iD8DBQFa8evCXlSAg2UNWIIRArfVAJkBoBiLSeqFIz+baibVTReRFZDjygCff6YB
NvzATG53DXsBLux92Ow7M4o=
=Sknh
-----END PGP SIGNATURE-----

--
RHSA-announce mailing list
RHSA-announce@redhat.com
https://www.redhat.com/mailman/listinfo/rhsa-announce
    

- 漏洞信息 (F147646)

Red Hat Security Advisory 2018-1523-01 (PacketStormID:F147646)
2018-05-15 00:00:00
Red Hat  
advisory,denial of service,kernel,vulnerability,code execution
linux,redhat
CVE-2018-1087,CVE-2018-1088,CVE-2018-1111,CVE-2018-8897
[点击下载]

Red Hat Security Advisory 2018-1523-01 - The redhat-virtualization-host packages provide the Red Hat Virtualization Host. These packages include redhat-release-virtualization-host, ovirt-node, and rhev-hypervisor. Red Hat Virtualization Hosts are installed using a special build of Red Hat Enterprise Linux with only the packages required to host virtual machines. RHVH features a Cockpit user interface for monitoring the host's resources and performing administrative tasks. Includes GlusterFS fixes for CVE-2018-1088, dhcp fixes for CVE-2018-1111, kernel fixes for CVE-2018-1087, and kernel fixes for CVE-2018-8897. Issues addressed include code execution and denial of service vulnerabilities.

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

=====================================================================
                   Red Hat Security Advisory

Synopsis:          Important: redhat-virtualization-host bug fix and enhancement update
Advisory ID:       RHSA-2018:1524-01
Product:           Red Hat Virtualization
Advisory URL:      https://access.redhat.com/errata/RHSA-2018:1524
Issue date:        2018-05-15
CVE Names:         CVE-2018-1087 CVE-2018-1088 CVE-2018-1111 
                   CVE-2018-8897 
=====================================================================

1. Summary:

Updated redhat-virtualization-host packages that fix several bugs and add
various enhancements are now available.

2. Relevant releases/architectures:

RHEL 7-based RHEV-H for RHEV 4 (build requirements) - noarch, x86_64
Red Hat Virtualization 4 Hypervisor for RHEL 7 - noarch

3. Description:

The redhat-virtualization-host packages provide the Red Hat Virtualization
Host. These packages include redhat-release-virtualization-host,
ovirt-node, and rhev-hypervisor. Red Hat Virtualization Hosts (RHVH) are
installed using a special build of Red Hat Enterprise Linux with only the
packages required to host virtual machines. RHVH features a Cockpit user
interface for monitoring the host's resources and performing administrative
tasks.

Includes GlusterFS fixes for CVE-2018-1088, dhcp fixes for CVE-2018-1111,
kernel fixes for CVE-2018-1087, and kernel fixes for CVE-2018-8897.

A list of bugs fixed in this update is available in the Technical Notes
book:
https://access.redhat.com/documentation/en-us/red_hat_virtualization/4.2/ht
ml/technical_notes/

4. Solution:

Before applying this update, make sure all previously released errata
relevant to your system have been applied.

For details on how to apply this update, refer to:

https://access.redhat.com/articles/2974891

5. Bugs fixed (https://bugzilla.redhat.com/):

1357247 - rhvh 4: reboot after install shows "4m[terminated]" and takes long to reboot
1374007 - [RFE] RHV-H does not default to LVM Thin Provisioning
1420068 - [RFE] RHV-H should meet NIST 800-53 partitioning requirements by default
1422676 - [Test Only] Test Ansible playbook for registration
1429485 - [RFE] Imgbased layers should be named with '%{name}-%{version}-%{release}' instead of %{name}-%{version}
1433394 - kdump could fill up /var filesystem while writing to /var/crash
1443965 - Libvirt is disabled on RHVH host
1454536 - HostedEngine setup fails if RHV-H timezone < UTC set during installation
1474268 - RHVH host displays "upgrade available" information on the engine after registering until an update is released
1489567 - Host Software tab does not show exact RHVH version anymore
1501161 - The version displays as "4.1" for subscribed product with RHVH 4.2
1502920 - File missing after upgrade of RHVH node from version RHVH-4.1-20170925.0 to latest.
1503148 - [RFE] translate between basic ntp configurations and chrony configurations
1516123 - tuned-adm timeout while adding the host in manager and the deployment will fail/take time to complete
1534855 - RHVH brand is missing on cockpit login screen.
1535791 - Upgrading node brings back previous hosted-engine configuration
1542833 - oVirt Node upgrade fails if SELINUX is disabled
1547864 - There is error report when upgrade to rhvh-4.1-20180218.0 / rhvh-4.2-20180218.0
1549630 - NGN upgrade should fail if it finds a badly placed local storage domain
1554186 - RHVH 4.2.2 version info is incorrect
1555243 - Consume updated cockpit-storaged packages
1555254 - "systemctl status lldpad.service" failed
1558721 - CVE-2018-1088 glusterfs: Privilege escalation via gluster_shared_storage when snapshot scheduling is enabled
1561258 - grub2-mkconfig on node produce incorrect grub2.cfg if a local VG is present
1563530 - Include wrong kernel in redhat-virtualization-host-4.1-20180403.1
1565497 - Imgbase check FAILED in redhat-virtualization-host-4.2-20180409.1
1566837 - CVE-2018-1087 Kernel: KVM: error in exception handling leads to wrong debug stack value
1567074 - CVE-2018-8897 Kernel: error in exception handling leads to DoS
1567974 - CVE-2018-1111 dhcp: Command injection vulnerability in the DHCP client NetworkManager integration script
1571134 - RHVH 4.2.3 version info is incorrect

6. Package List:

Red Hat Virtualization 4 Hypervisor for RHEL 7:

Source:
redhat-virtualization-host-4.2-20180508.0.el7_5.src.rpm

noarch:
redhat-virtualization-host-image-update-4.2-20180508.0.el7_5.noarch.rpm

RHEL 7-based RHEV-H for RHEV 4 (build requirements):

Source:
imgbased-1.0.16-0.1.el7ev.src.rpm
ovirt-node-ng-4.2.0-0.20170814.0.el7.src.rpm
redhat-release-virtualization-host-4.2-3.0.el7.src.rpm

noarch:
imgbased-1.0.16-0.1.el7ev.noarch.rpm
ovirt-node-ng-nodectl-4.2.0-0.20170814.0.el7.noarch.rpm
python-imgbased-1.0.16-0.1.el7ev.noarch.rpm
redhat-virtualization-host-image-update-placeholder-4.2-3.0.el7.noarch.rpm

x86_64:
redhat-release-virtualization-host-4.2-3.0.el7.x86_64.rpm

These packages are GPG signed by Red Hat for security.  Our key and
details on how to verify the signature are available from
https://access.redhat.com/security/team/key/

7. References:

https://access.redhat.com/security/cve/CVE-2018-1087
https://access.redhat.com/security/cve/CVE-2018-1088
https://access.redhat.com/security/cve/CVE-2018-1111
https://access.redhat.com/security/cve/CVE-2018-8897
https://access.redhat.com/security/updates/classification/#important

8. Contact:

The Red Hat security contact is <secalert@redhat.com>. More contact
details at https://access.redhat.com/security/team/contact/

Copyright 2018 Red Hat, Inc.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=CE0W
-----END PGP SIGNATURE-----

--
RHSA-announce mailing list
RHSA-announce@redhat.com
https://www.redhat.com/mailman/listinfo/rhsa-announce
    

- 漏洞信息 (F148486)

Red Hat Security Advisory 2018-2164-01 (PacketStormID:F148486)
2018-07-11 00:00:00
Red Hat  
advisory,denial of service,kernel,vulnerability
linux,redhat
CVE-2018-10675,CVE-2018-10872,CVE-2018-3639,CVE-2018-3665
[点击下载]

Red Hat Security Advisory 2018-2164-01 - The kernel packages contain the Linux kernel, the core of any Linux operating system. Issues addressed include bypass, denial of service, information leakage, and use-after-free vulnerabilities.

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

====================================================================                   
Red Hat Security Advisory

Synopsis:          Important: kernel security and bug fix update
Advisory ID:       RHSA-2018:2164-01
Product:           Red Hat Enterprise Linux
Advisory URL:      https://access.redhat.com/errata/RHSA-2018:2164
Issue date:        2018-07-10
CVE Names:         CVE-2018-3639 CVE-2018-3665 CVE-2018-10675
                   CVE-2018-10872
====================================================================
1. Summary:

An update for kernel is now available for Red Hat Enterprise Linux 6.

Red Hat Product Security has rated this update as having a security impact
of Important. A Common Vulnerability Scoring System (CVSS) base score,
which gives a detailed severity rating, is available for each vulnerability
from the CVE link(s) in the References section.

2. Relevant releases/architectures:

Red Hat Enterprise Linux Desktop (v. 6) - i386, noarch, x86_64
Red Hat Enterprise Linux Desktop Optional (v. 6) - i386, x86_64
Red Hat Enterprise Linux HPC Node (v. 6) - noarch, x86_64
Red Hat Enterprise Linux HPC Node Optional (v. 6) - x86_64
Red Hat Enterprise Linux Server (v. 6) - i386, noarch, ppc64, s390x, x86_64
Red Hat Enterprise Linux Server Optional (v. 6) - i386, ppc64, s390x, x86_64
Red Hat Enterprise Linux Workstation (v. 6) - i386, noarch, x86_64
Red Hat Enterprise Linux Workstation Optional (v. 6) - i386, x86_64

3. Description:

The kernel packages contain the Linux kernel, the core of any Linux
operating system.

Security Fix(es):

* An industry-wide issue was found in the way many modern microprocessor
designs have implemented speculative execution of Load & Store instructions
(a commonly used performance optimization). It relies on the presence of a
precisely-defined instruction sequence in the privileged code as well as
the fact that memory read from address to which a recent memory write has
occurred may see an older value and subsequently cause an update into the
microprocessor's data cache even for speculatively executed instructions
that never actually commit (retire). As a result, an unprivileged attacker
could use this flaw to read privileged memory by conducting targeted cache
side-channel attacks. (CVE-2018-3639, x86 AMD)

* kernel: Use-after-free vulnerability in mm/mempolicy.c:do_get_mempolicy
function allows local denial of service or other unspecified impact
(CVE-2018-10675)

* Kernel: FPU state information leakage via lazy FPU restore
(CVE-2018-3665)

* kernel: error in exception handling leads to DoS (CVE-2018-8897
regression) (CVE-2018-10872)

For more details about the security issue(s), including the impact, a CVSS
score, and other related information, refer to the CVE page(s) listed in
the References section.

Red Hat would like to thank Ken Johnson (Microsoft Security Response
Center) and Jann Horn (Google Project Zero) for reporting CVE-2018-3639 and
Julian Stecklina (Amazon.de), Thomas Prescher (cyberus-technology.de), and
Zdenek Sojka (sysgo.com) for reporting CVE-2018-3665.

Bug Fix(es):

* Previously, microcode updates on 32 and 64-bit AMD and Intel
architectures were not synchronized. As a consequence, it was not possible
to apply the microcode updates. This fix adds the synchronization to the
microcode updates so that processors of the stated architectures receive
updates at the same time. As a result, microcode updates are now
synchronized. (BZ#1574592)

4. Solution:

For details on how to apply this update, which includes the changes
described in this advisory, refer to:

https://access.redhat.com/articles/11258

The system must be rebooted for this update to take effect.

5. Bugs fixed (https://bugzilla.redhat.com/):

1566890 - CVE-2018-3639 hw: cpu: speculative store bypass
1575065 - CVE-2018-10675 kernel: Use-after-free vulnerability in mm/mempolicy.c:do_get_mempolicy function allows local denial-of-service or other unspecified impact
1585011 - CVE-2018-3665 Kernel: FPU state information leakage via lazy FPU restore
1596094 - CVE-2018-10872 kernel: error in exception handling leads to DoS (CVE-2018-8897 regression)

6. Package List:

Red Hat Enterprise Linux Desktop (v. 6):

Source:
kernel-2.6.32-754.2.1.el6.src.rpm

i386:
kernel-2.6.32-754.2.1.el6.i686.rpm
kernel-debug-2.6.32-754.2.1.el6.i686.rpm
kernel-debug-debuginfo-2.6.32-754.2.1.el6.i686.rpm
kernel-debug-devel-2.6.32-754.2.1.el6.i686.rpm
kernel-debuginfo-2.6.32-754.2.1.el6.i686.rpm
kernel-debuginfo-common-i686-2.6.32-754.2.1.el6.i686.rpm
kernel-devel-2.6.32-754.2.1.el6.i686.rpm
kernel-headers-2.6.32-754.2.1.el6.i686.rpm
perf-2.6.32-754.2.1.el6.i686.rpm
perf-debuginfo-2.6.32-754.2.1.el6.i686.rpm
python-perf-debuginfo-2.6.32-754.2.1.el6.i686.rpm

noarch:
kernel-abi-whitelists-2.6.32-754.2.1.el6.noarch.rpm
kernel-doc-2.6.32-754.2.1.el6.noarch.rpm
kernel-firmware-2.6.32-754.2.1.el6.noarch.rpm

x86_64:
kernel-2.6.32-754.2.1.el6.x86_64.rpm
kernel-debug-2.6.32-754.2.1.el6.x86_64.rpm
kernel-debug-debuginfo-2.6.32-754.2.1.el6.i686.rpm
kernel-debug-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm
kernel-debug-devel-2.6.32-754.2.1.el6.i686.rpm
kernel-debug-devel-2.6.32-754.2.1.el6.x86_64.rpm
kernel-debuginfo-2.6.32-754.2.1.el6.i686.rpm
kernel-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm
kernel-debuginfo-common-i686-2.6.32-754.2.1.el6.i686.rpm
kernel-debuginfo-common-x86_64-2.6.32-754.2.1.el6.x86_64.rpm
kernel-devel-2.6.32-754.2.1.el6.x86_64.rpm
kernel-headers-2.6.32-754.2.1.el6.x86_64.rpm
perf-2.6.32-754.2.1.el6.x86_64.rpm
perf-debuginfo-2.6.32-754.2.1.el6.i686.rpm
perf-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm
python-perf-debuginfo-2.6.32-754.2.1.el6.i686.rpm
python-perf-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm

Red Hat Enterprise Linux Desktop Optional (v. 6):

i386:
kernel-debug-debuginfo-2.6.32-754.2.1.el6.i686.rpm
kernel-debuginfo-2.6.32-754.2.1.el6.i686.rpm
kernel-debuginfo-common-i686-2.6.32-754.2.1.el6.i686.rpm
perf-debuginfo-2.6.32-754.2.1.el6.i686.rpm
python-perf-2.6.32-754.2.1.el6.i686.rpm
python-perf-debuginfo-2.6.32-754.2.1.el6.i686.rpm

x86_64:
kernel-debug-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm
kernel-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm
kernel-debuginfo-common-x86_64-2.6.32-754.2.1.el6.x86_64.rpm
perf-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm
python-perf-2.6.32-754.2.1.el6.x86_64.rpm
python-perf-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm

Red Hat Enterprise Linux HPC Node (v. 6):

Source:
kernel-2.6.32-754.2.1.el6.src.rpm

noarch:
kernel-abi-whitelists-2.6.32-754.2.1.el6.noarch.rpm
kernel-doc-2.6.32-754.2.1.el6.noarch.rpm
kernel-firmware-2.6.32-754.2.1.el6.noarch.rpm

x86_64:
kernel-2.6.32-754.2.1.el6.x86_64.rpm
kernel-debug-2.6.32-754.2.1.el6.x86_64.rpm
kernel-debug-debuginfo-2.6.32-754.2.1.el6.i686.rpm
kernel-debug-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm
kernel-debug-devel-2.6.32-754.2.1.el6.i686.rpm
kernel-debug-devel-2.6.32-754.2.1.el6.x86_64.rpm
kernel-debuginfo-2.6.32-754.2.1.el6.i686.rpm
kernel-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm
kernel-debuginfo-common-i686-2.6.32-754.2.1.el6.i686.rpm
kernel-debuginfo-common-x86_64-2.6.32-754.2.1.el6.x86_64.rpm
kernel-devel-2.6.32-754.2.1.el6.x86_64.rpm
kernel-headers-2.6.32-754.2.1.el6.x86_64.rpm
perf-2.6.32-754.2.1.el6.x86_64.rpm
perf-debuginfo-2.6.32-754.2.1.el6.i686.rpm
perf-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm
python-perf-debuginfo-2.6.32-754.2.1.el6.i686.rpm
python-perf-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm

Red Hat Enterprise Linux HPC Node Optional (v. 6):

x86_64:
kernel-debug-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm
kernel-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm
kernel-debuginfo-common-x86_64-2.6.32-754.2.1.el6.x86_64.rpm
perf-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm
python-perf-2.6.32-754.2.1.el6.x86_64.rpm
python-perf-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm

Red Hat Enterprise Linux Server (v. 6):

Source:
kernel-2.6.32-754.2.1.el6.src.rpm

i386:
kernel-2.6.32-754.2.1.el6.i686.rpm
kernel-debug-2.6.32-754.2.1.el6.i686.rpm
kernel-debug-debuginfo-2.6.32-754.2.1.el6.i686.rpm
kernel-debug-devel-2.6.32-754.2.1.el6.i686.rpm
kernel-debuginfo-2.6.32-754.2.1.el6.i686.rpm
kernel-debuginfo-common-i686-2.6.32-754.2.1.el6.i686.rpm
kernel-devel-2.6.32-754.2.1.el6.i686.rpm
kernel-headers-2.6.32-754.2.1.el6.i686.rpm
perf-2.6.32-754.2.1.el6.i686.rpm
perf-debuginfo-2.6.32-754.2.1.el6.i686.rpm
python-perf-debuginfo-2.6.32-754.2.1.el6.i686.rpm

noarch:
kernel-abi-whitelists-2.6.32-754.2.1.el6.noarch.rpm
kernel-doc-2.6.32-754.2.1.el6.noarch.rpm
kernel-firmware-2.6.32-754.2.1.el6.noarch.rpm

ppc64:
kernel-2.6.32-754.2.1.el6.ppc64.rpm
kernel-bootwrapper-2.6.32-754.2.1.el6.ppc64.rpm
kernel-debug-2.6.32-754.2.1.el6.ppc64.rpm
kernel-debug-debuginfo-2.6.32-754.2.1.el6.ppc64.rpm
kernel-debug-devel-2.6.32-754.2.1.el6.ppc64.rpm
kernel-debuginfo-2.6.32-754.2.1.el6.ppc64.rpm
kernel-debuginfo-common-ppc64-2.6.32-754.2.1.el6.ppc64.rpm
kernel-devel-2.6.32-754.2.1.el6.ppc64.rpm
kernel-headers-2.6.32-754.2.1.el6.ppc64.rpm
perf-2.6.32-754.2.1.el6.ppc64.rpm
perf-debuginfo-2.6.32-754.2.1.el6.ppc64.rpm
python-perf-debuginfo-2.6.32-754.2.1.el6.ppc64.rpm

s390x:
kernel-2.6.32-754.2.1.el6.s390x.rpm
kernel-debug-2.6.32-754.2.1.el6.s390x.rpm
kernel-debug-debuginfo-2.6.32-754.2.1.el6.s390x.rpm
kernel-debug-devel-2.6.32-754.2.1.el6.s390x.rpm
kernel-debuginfo-2.6.32-754.2.1.el6.s390x.rpm
kernel-debuginfo-common-s390x-2.6.32-754.2.1.el6.s390x.rpm
kernel-devel-2.6.32-754.2.1.el6.s390x.rpm
kernel-headers-2.6.32-754.2.1.el6.s390x.rpm
kernel-kdump-2.6.32-754.2.1.el6.s390x.rpm
kernel-kdump-debuginfo-2.6.32-754.2.1.el6.s390x.rpm
kernel-kdump-devel-2.6.32-754.2.1.el6.s390x.rpm
perf-2.6.32-754.2.1.el6.s390x.rpm
perf-debuginfo-2.6.32-754.2.1.el6.s390x.rpm
python-perf-debuginfo-2.6.32-754.2.1.el6.s390x.rpm

x86_64:
kernel-2.6.32-754.2.1.el6.x86_64.rpm
kernel-debug-2.6.32-754.2.1.el6.x86_64.rpm
kernel-debug-debuginfo-2.6.32-754.2.1.el6.i686.rpm
kernel-debug-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm
kernel-debug-devel-2.6.32-754.2.1.el6.i686.rpm
kernel-debug-devel-2.6.32-754.2.1.el6.x86_64.rpm
kernel-debuginfo-2.6.32-754.2.1.el6.i686.rpm
kernel-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm
kernel-debuginfo-common-i686-2.6.32-754.2.1.el6.i686.rpm
kernel-debuginfo-common-x86_64-2.6.32-754.2.1.el6.x86_64.rpm
kernel-devel-2.6.32-754.2.1.el6.x86_64.rpm
kernel-headers-2.6.32-754.2.1.el6.x86_64.rpm
perf-2.6.32-754.2.1.el6.x86_64.rpm
perf-debuginfo-2.6.32-754.2.1.el6.i686.rpm
perf-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm
python-perf-debuginfo-2.6.32-754.2.1.el6.i686.rpm
python-perf-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm

Red Hat Enterprise Linux Server Optional (v. 6):

i386:
kernel-debug-debuginfo-2.6.32-754.2.1.el6.i686.rpm
kernel-debuginfo-2.6.32-754.2.1.el6.i686.rpm
kernel-debuginfo-common-i686-2.6.32-754.2.1.el6.i686.rpm
perf-debuginfo-2.6.32-754.2.1.el6.i686.rpm
python-perf-2.6.32-754.2.1.el6.i686.rpm
python-perf-debuginfo-2.6.32-754.2.1.el6.i686.rpm

ppc64:
kernel-debug-debuginfo-2.6.32-754.2.1.el6.ppc64.rpm
kernel-debuginfo-2.6.32-754.2.1.el6.ppc64.rpm
kernel-debuginfo-common-ppc64-2.6.32-754.2.1.el6.ppc64.rpm
perf-debuginfo-2.6.32-754.2.1.el6.ppc64.rpm
python-perf-2.6.32-754.2.1.el6.ppc64.rpm
python-perf-debuginfo-2.6.32-754.2.1.el6.ppc64.rpm

s390x:
kernel-debug-debuginfo-2.6.32-754.2.1.el6.s390x.rpm
kernel-debuginfo-2.6.32-754.2.1.el6.s390x.rpm
kernel-debuginfo-common-s390x-2.6.32-754.2.1.el6.s390x.rpm
kernel-kdump-debuginfo-2.6.32-754.2.1.el6.s390x.rpm
perf-debuginfo-2.6.32-754.2.1.el6.s390x.rpm
python-perf-2.6.32-754.2.1.el6.s390x.rpm
python-perf-debuginfo-2.6.32-754.2.1.el6.s390x.rpm

x86_64:
kernel-debug-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm
kernel-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm
kernel-debuginfo-common-x86_64-2.6.32-754.2.1.el6.x86_64.rpm
perf-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm
python-perf-2.6.32-754.2.1.el6.x86_64.rpm
python-perf-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm

Red Hat Enterprise Linux Workstation (v. 6):

Source:
kernel-2.6.32-754.2.1.el6.src.rpm

i386:
kernel-2.6.32-754.2.1.el6.i686.rpm
kernel-debug-2.6.32-754.2.1.el6.i686.rpm
kernel-debug-debuginfo-2.6.32-754.2.1.el6.i686.rpm
kernel-debug-devel-2.6.32-754.2.1.el6.i686.rpm
kernel-debuginfo-2.6.32-754.2.1.el6.i686.rpm
kernel-debuginfo-common-i686-2.6.32-754.2.1.el6.i686.rpm
kernel-devel-2.6.32-754.2.1.el6.i686.rpm
kernel-headers-2.6.32-754.2.1.el6.i686.rpm
perf-2.6.32-754.2.1.el6.i686.rpm
perf-debuginfo-2.6.32-754.2.1.el6.i686.rpm
python-perf-debuginfo-2.6.32-754.2.1.el6.i686.rpm

noarch:
kernel-abi-whitelists-2.6.32-754.2.1.el6.noarch.rpm
kernel-doc-2.6.32-754.2.1.el6.noarch.rpm
kernel-firmware-2.6.32-754.2.1.el6.noarch.rpm

x86_64:
kernel-2.6.32-754.2.1.el6.x86_64.rpm
kernel-debug-2.6.32-754.2.1.el6.x86_64.rpm
kernel-debug-debuginfo-2.6.32-754.2.1.el6.i686.rpm
kernel-debug-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm
kernel-debug-devel-2.6.32-754.2.1.el6.i686.rpm
kernel-debug-devel-2.6.32-754.2.1.el6.x86_64.rpm
kernel-debuginfo-2.6.32-754.2.1.el6.i686.rpm
kernel-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm
kernel-debuginfo-common-i686-2.6.32-754.2.1.el6.i686.rpm
kernel-debuginfo-common-x86_64-2.6.32-754.2.1.el6.x86_64.rpm
kernel-devel-2.6.32-754.2.1.el6.x86_64.rpm
kernel-headers-2.6.32-754.2.1.el6.x86_64.rpm
perf-2.6.32-754.2.1.el6.x86_64.rpm
perf-debuginfo-2.6.32-754.2.1.el6.i686.rpm
perf-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm
python-perf-debuginfo-2.6.32-754.2.1.el6.i686.rpm
python-perf-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm

Red Hat Enterprise Linux Workstation Optional (v. 6):

i386:
kernel-debug-debuginfo-2.6.32-754.2.1.el6.i686.rpm
kernel-debuginfo-2.6.32-754.2.1.el6.i686.rpm
kernel-debuginfo-common-i686-2.6.32-754.2.1.el6.i686.rpm
perf-debuginfo-2.6.32-754.2.1.el6.i686.rpm
python-perf-2.6.32-754.2.1.el6.i686.rpm
python-perf-debuginfo-2.6.32-754.2.1.el6.i686.rpm

x86_64:
kernel-debug-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm
kernel-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm
kernel-debuginfo-common-x86_64-2.6.32-754.2.1.el6.x86_64.rpm
perf-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm
python-perf-2.6.32-754.2.1.el6.x86_64.rpm
python-perf-debuginfo-2.6.32-754.2.1.el6.x86_64.rpm

These packages are GPG signed by Red Hat for security.  Our key and
details on how to verify the signature are available from
https://access.redhat.com/security/team/key/

7. References:

https://access.redhat.com/security/cve/CVE-2018-3639
https://access.redhat.com/security/cve/CVE-2018-3665
https://access.redhat.com/security/cve/CVE-2018-10675
https://access.redhat.com/security/cve/CVE-2018-10872
https://access.redhat.com/security/updates/classification/#important

8. Contact:

The Red Hat security contact is <secalert@redhat.com>. More contact
details at https://access.redhat.com/security/team/contact/

Copyright 2018 Red Hat, Inc.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1

iQIVAwUBW0TykdzjgjWX9erEAQj7nQ/8DBiN11jNNGxND1Io2xuiZ+/RqzFz4IXv
VMTrhukotRz5vbQWziRcHl0DVUttBBbwzdoNUu4RH4rxHv0J0GTLYusgyWlyDJP8
D229CT7o6lK4RjPryXFsu/4YsIzu8Vz35KB8SpW6gUkXibANrCWDEHEqc9+6mQ6g
VFe0wAu1Tw3PKre0zK+XL/uxkvjk8ZeDINe8WVUDloBOnxFMnZZjEcZsIO9JfjBr
krlU1QTQcPeKsrv6gofNXBOeQn0JZS1BVDy0JiNoOihJqPPBLA5RkyZzWouy6FDt
xVTN7BEuILTUszfcygXA17OdNUzJm/L6a4rFXno4+eN5u5Ucx46/abXhWhRzcwvV
+7IuGNs83aTZufXNbWDtiGFkIyKE5NyX7U7SOoxz42AxesSxJ6SKJFD4iBu/0YrU
h9BvuHkkVNu+NsYT6rajqwz5ytkEbCJAX7xvNnu7Wi18tWKEWklqAFYSqVnpopO2
8xSW2+OTSkAQ9uiGAz9aTLLca2Zi/I8kjAcNyv4tASUcvodNzUE/OuERC5hvOZ6X
6j/POh7W7xA3cAg216EEj4X12BIwArqt8hjZ6hO5cd7ZfnWof7BVEjLnqtyJjhzi
Xap6Pf/NG4/iSO1kEFLo3Uw9sQVoPRU4Hg1KXJJy+XboBQ3/K9ctCU5qvTRApmmM
OjBeir/Q654=I9wq
-----END PGP SIGNATURE-----

--
RHSA-announce mailing list
RHSA-announce@redhat.com
https://www.redhat.com/mailman/listinfo/rhsa-announce
    

- 漏洞信息 (F148483)

Red Hat Security Advisory 2018-2166-01 (PacketStormID:F148483)
2018-07-10 00:00:00
Red Hat  
advisory,remote,code execution
linux,redhat
CVE-2018-10874,CVE-2018-10875
[点击下载]

Red Hat Security Advisory 2018-2166-01 - Ansible is a simple model-driven configuration management, multi-node deployment, and remote-task execution system. Ansible works over SSH and does not require any software or daemons to be installed on remote nodes. Extension modules can be written in any language and are transferred to managed machines automatically. Issues addressed include a code execution vulnerability.

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

=====================================================================
                   Red Hat Security Advisory

Synopsis:          Moderate: ansible security and bug fix update
Advisory ID:       RHSA-2018:2166-01
Product:           Red Hat Ansible Engine
Advisory URL:      https://access.redhat.com/errata/RHSA-2018:2166
Issue date:        2018-07-10
CVE Names:         CVE-2018-10874 CVE-2018-10875 
=====================================================================

1. Summary:

An update for ansible is now available for Ansible Engine 2.6.

Red Hat Product Security has rated this update as having a security impact
of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which
gives a detailed severity rating, is available for each vulnerability from
the CVE link(s) in the References section.

2. Relevant releases/architectures:

Red Hat Ansible Engine 2.6 for RHEL 7 Server - noarch

3. Description:

Ansible is a simple model-driven configuration management, multi-node
deployment, and remote-task execution system. Ansible works over SSH and
does not require any software or daemons to be installed on remote nodes.
Extension modules can be written in any language and are transferred to
managed machines automatically.

The following packages have been upgraded to a newer upstream version:
ansible (2.6.1)

Security fix(es):

* ansible: Inventory variables are loaded from current working directory
when running ad-hoc command that can lead to code execution
(CVE-2018-10874)

* ansible: ansible.cfg is being read from current working directory
allowing possible code execution (CVE-2018-10875)

For more details about the security issue(s), including the impact, a CVSS
score, and other related information, refer to the CVE page(s) listed in
the References section.

This issue was discovered by Brian Coca (Red Hat), and Michael Scherer
(OSAS).

Bug Fix(es):

* Fix junos_config confirm commit timeout issue
(https://github.com/ansible/ansible/pull/41527)

* file module - The touch subcommand had its diff output broken during the
2.6.x development cycle.  The patch to fix that broke check mode. This is
now fixed (https://github.com/ansible/ansible/issues/42111)

* inventory manager - This fixes required options being populated before
the inventory config file is read, so the required options may be set in
the config file.

* nsupdate - allow hmac-sha384
https://github.com/ansible/ansible/pull/42209

* win_domain - fixes typo in one of the AD cmdlets
https://github.com/ansible/ansible/issues/41536

* win_group_membership - uses the internal Ansible SID conversion logic and
uses that when comparing group membership instead of the name
https://github.com/ansible/ansible/issues/40649

4. Solution:

For details on how to apply this update, which includes the changes
described in this advisory, refer to:

https://access.redhat.com/articles/11258

5. Bugs fixed (https://bugzilla.redhat.com/):

1596528 - CVE-2018-10874 ansible: Inventory variables are loaded from current working directory when running ad-hoc command that can lead to code execution
1596533 - CVE-2018-10875 ansible: ansible.cfg is being read from current working directory allowing possible code execution

6. Package List:

Red Hat Ansible Engine 2.6 for RHEL 7 Server:

Source:
ansible-2.6.1-1.el7ae.src.rpm

noarch:
ansible-2.6.1-1.el7ae.noarch.rpm

These packages are GPG signed by Red Hat for security.  Our key and
details on how to verify the signature are available from
https://access.redhat.com/security/team/key/

7. References:

https://access.redhat.com/security/cve/CVE-2018-10874
https://access.redhat.com/security/cve/CVE-2018-10875
https://access.redhat.com/security/updates/classification/#moderate

8. Contact:

The Red Hat security contact is <secalert@redhat.com>. More contact
details at https://access.redhat.com/security/team/contact/

Copyright 2018 Red Hat, Inc.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=yytG
-----END PGP SIGNATURE-----

--
RHSA-announce mailing list
RHSA-announce@redhat.com
https://www.redhat.com/mailman/listinfo/rhsa-announce
    

- 漏洞信息 (F148474)

Red Hat Security Advisory 2018-2150-01 (PacketStormID:F148474)
2018-07-10 00:00:00
Red Hat  
advisory,remote,code execution
linux,redhat
CVE-2018-10874,CVE-2018-10875
[点击下载]

Red Hat Security Advisory 2018-2150-01 - Ansible is a simple model-driven configuration management, multi-node deployment, and remote-task execution system. Ansible works over SSH and does not require any software or daemons to be installed on remote nodes. Extension modules can be written in any language and are transferred to managed machines automatically. Issues addressed include a code execution vulnerability.

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

=====================================================================
                   Red Hat Security Advisory

Synopsis:          Moderate: ansible security and bug fix update
Advisory ID:       RHSA-2018:2150-01
Product:           Red Hat Ansible Engine
Advisory URL:      https://access.redhat.com/errata/RHSA-2018:2150
Issue date:        2018-07-10
CVE Names:         CVE-2018-10874 CVE-2018-10875 
=====================================================================

1. Summary:

An update for ansible is now available for Ansible Engine 2.5.

Red Hat Product Security has rated this update as having a security impact
of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which
gives a detailed severity rating, is available for each vulnerability from
the CVE link(s) in the References section.

2. Relevant releases/architectures:

Red Hat Ansible Engine 2.5 for RHEL 7 Server - noarch

3. Description:

Ansible is a simple model-driven configuration management, multi-node
deployment, and remote-task execution system. Ansible works over SSH and
does not require any software or daemons to be installed on remote nodes.
Extension modules can be written in any language and are transferred to
managed machines automatically.

The following packages have been upgraded to a newer upstream version:
ansible (2.5.6)

Security fix(es):

* ansible: Inventory variables are loaded from current working directory
when running ad-hoc command that can lead to code execution
(CVE-2018-10874)

* ansible: ansible.cfg is being read from current working directory
allowing possible code execution (CVE-2018-10875)

For more details about the security issue(s), including the impact, a CVSS
score, and other related information, refer to the CVE page(s) listed in
the References section.

This issue was discovered by Brian Coca (Red Hat), and Michael Scherer
(OSAS).

Bug Fix(es):

* Restore module_utils.basic.BOOLEANS variable for backwards compatibility
with the module API in older ansible releases.

* lineinfile - add warning when using an empty regexp
(https://github.com/ansible/ansible/issues/29443)

* apt - fix apt-mark on debian6
(https://github.com/ansible/ansible/pull/41530)

* copy module - fixed recursive copy with relative paths
(https://github.com/ansible/ansible/pull/40166)

* correct debug display for all cases
https://github.com/ansible/ansible/pull/41331

* eos_l2_interface - fix eapi
(https://github.com/ansible/ansible/pull/42270)

* group_by - support implicit localhost
(https://github.com/ansible/ansible/pull/41860)

* influxdb_query - fixed the use of the common return 'results' caused an
unexpected fault. The return is renamed to 'query_results'

* junos_config - fix confirm commit timeout issue
(https://github.com/ansible/ansible/pull/41527)

* lineinfile - fix insertbefore when used with BOF to not insert duplicate
lines (https://github.com/ansible/ansible/issues/38219)

* nsupdate - allow hmac-sha384
https://github.com/ansible/ansible/pull/42209

* nxos_linkagg - fix issue (https://github.com/ansible/ansible/pull/41550).

* nxos_vxlan_vtep_vni - fix issue
(https://github.com/ansible/ansible/pull/42240)

* uses correct conn info for reset_connection 
https://github.com/ansible/ansible/issues/27520

* correct service facts systemd detection of state
https://github.com/ansible/ansible/issues/40809

* correctly check hostvars for vars term
https://github.com/ansible/ansible/pull/41819

* vyos_vlan - fix aggregate configuration issues
(https://github.com/ansible/ansible/pull/41638)

* win_domain - fixes typo in one of the AD cmdlets
https://github.com/ansible/ansible/issues/41536

* win_iis_webapppool - redirect some module output to null so Ansible can
read the output JSON https://github.com/ansible/ansible/issues/40874

* win_updates - Fixed issue where running win_updates on async fails
without any error

* winrm - ensure pexpect is set to not echo the input on a failure and have
a manual sanity check afterwards
https://github.com/ansible/ansible/issues/41865

4. Solution:

For details on how to apply this update, which includes the changes
described in this advisory, refer to:

https://access.redhat.com/articles/11258

5. Bugs fixed (https://bugzilla.redhat.com/):

1596528 - CVE-2018-10874 ansible: Inventory variables are loaded from current working directory when running ad-hoc command that can lead to code execution
1596533 - CVE-2018-10875 ansible: ansible.cfg is being read from current working directory allowing possible code execution

6. Package List:

Red Hat Ansible Engine 2.5 for RHEL 7 Server:

Source:
ansible-2.5.6-1.el7ae.src.rpm

noarch:
ansible-2.5.6-1.el7ae.noarch.rpm
ansible-doc-2.5.6-1.el7ae.noarch.rpm

These packages are GPG signed by Red Hat for security.  Our key and
details on how to verify the signature are available from
https://access.redhat.com/security/team/key/

7. References:

https://access.redhat.com/security/cve/CVE-2018-10874
https://access.redhat.com/security/cve/CVE-2018-10875
https://access.redhat.com/security/updates/classification/#moderate

8. Contact:

The Red Hat security contact is <secalert@redhat.com>. More contact
details at https://access.redhat.com/security/team/contact/

Copyright 2018 Red Hat, Inc.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=B7ZB
-----END PGP SIGNATURE-----

--
RHSA-announce mailing list
RHSA-announce@redhat.com
https://www.redhat.com/mailman/listinfo/rhsa-announce
    

- 漏洞信息 (F148476)

Red Hat Security Advisory 2018-2152-01 (PacketStormID:F148476)
2018-07-10 00:00:00
Red Hat  
advisory,remote,code execution
linux,redhat
CVE-2018-10874,CVE-2018-10875
[点击下载]

Red Hat Security Advisory 2018-2152-01 - Ansible is a simple model-driven configuration management, multi-node deployment, and remote-task execution system. Ansible works over SSH and does not require any software or daemons to be installed on remote nodes. Extension modules can be written in any language and are transferred to managed machines automatically. Issues addressed include a code execution vulnerability.

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

=====================================================================
                   Red Hat Security Advisory

Synopsis:          Moderate: ansible security update
Advisory ID:       RHSA-2018:2152-01
Product:           Red Hat Ansible Engine
Advisory URL:      https://access.redhat.com/errata/RHSA-2018:2152
Issue date:        2018-07-10
CVE Names:         CVE-2018-10874 CVE-2018-10875 
=====================================================================

1. Summary:

An update for ansible is now available for Ansible Engine 2.4.

Red Hat Product Security has rated this update as having a security impact
of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which
gives a detailed severity rating, is available for each vulnerability from
the CVE link(s) in the References section.

2. Relevant releases/architectures:

Red Hat Ansible Engine 2.4 for RHEL 7 Server - noarch

3. Description:

Ansible is a simple model-driven configuration management, multi-node
deployment, and remote-task execution system. Ansible works over SSH and
does not require any software or daemons to be installed on remote nodes.
Extension modules can be written in any language and are transferred to
managed machines automatically.

The following packages have been upgraded to a newer upstream version:
ansible (2.4.6)

Security fix(es):

* ansible: Inventory variables are loaded from current working directory
when running ad-hoc command that can lead to code execution
(CVE-2018-10874)

* ansible: ansible.cfg is being read from current working directory
allowing possible code execution (CVE-2018-10875)

For more details about the security issue(s), including the impact, a CVSS
score, and other related information, refer to the CVE page(s) listed in
the References section.

This issue was discovered by Brian Coca (Red Hat), and Michael Scherer
(OSAS).

4. Solution:

For details on how to apply this update, which includes the changes
described in this advisory, refer to:

https://access.redhat.com/articles/11258

5. Bugs fixed (https://bugzilla.redhat.com/):

1596528 - CVE-2018-10874 ansible: Inventory variables are loaded from current working directory when running ad-hoc command that can lead to code execution
1596533 - CVE-2018-10875 ansible: ansible.cfg is being read from current working directory allowing possible code execution

6. Package List:

Red Hat Ansible Engine 2.4 for RHEL 7 Server:

Source:
ansible-2.4.6.0-1.el7ae.src.rpm

noarch:
ansible-2.4.6.0-1.el7ae.noarch.rpm
ansible-doc-2.4.6.0-1.el7ae.noarch.rpm

These packages are GPG signed by Red Hat for security.  Our key and
details on how to verify the signature are available from
https://access.redhat.com/security/team/key/

7. References:

https://access.redhat.com/security/cve/CVE-2018-10874
https://access.redhat.com/security/cve/CVE-2018-10875
https://access.redhat.com/security/updates/classification/#moderate

8. Contact:

The Red Hat security contact is <secalert@redhat.com>. More contact
details at https://access.redhat.com/security/team/contact/

Copyright 2018 Red Hat, Inc.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=EFb4
-----END PGP SIGNATURE-----

--
RHSA-announce mailing list
RHSA-announce@redhat.com
https://www.redhat.com/mailman/listinfo/rhsa-announce
    

- 漏洞信息 (F148475)

Red Hat Security Advisory 2018-2151-01 (PacketStormID:F148475)
2018-07-10 00:00:00
Red Hat  
advisory,remote,code execution
linux,redhat
CVE-2018-10874,CVE-2018-10875
[点击下载]

Red Hat Security Advisory 2018-2151-01 - Ansible is a simple model-driven configuration management, multi-node deployment, and remote-task execution system. Ansible works over SSH and does not require any software or daemons to be installed on remote nodes. Extension modules can be written in any language and are transferred to managed machines automatically. Issues addressed include a code execution vulnerability.

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

=====================================================================
                   Red Hat Security Advisory

Synopsis:          Moderate: ansible security and bug fix update
Advisory ID:       RHSA-2018:2151-01
Product:           Red Hat Ansible Engine
Advisory URL:      https://access.redhat.com/errata/RHSA-2018:2151
Issue date:        2018-07-10
CVE Names:         CVE-2018-10874 CVE-2018-10875 
=====================================================================

1. Summary:

An update for ansible is now available for Ansible Engine 2.

Red Hat Product Security has rated this update as having a security impact
of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which
gives a detailed severity rating, is available for each vulnerability from
the CVE link(s) in the References section.

2. Relevant releases/architectures:

Red Hat Ansible Engine 2 for RHEL 7 - noarch

3. Description:

Ansible is a simple model-driven configuration management, multi-node
deployment, and remote-task execution system. Ansible works over SSH and
does not require any software or daemons to be installed on remote nodes.
Extension modules can be written in any language and are transferred to
managed machines automatically.

The following packages have been upgraded to a newer upstream version:
ansible (2.6.1)

Security fix(es):

* ansible: Inventory variables are loaded from current working directory
when running ad-hoc command that can lead to code execution
(CVE-2018-10874)

* ansible: ansible.cfg is being read from current working directory
allowing possible code execution (CVE-2018-10875)

For more details about the security issue(s), including the impact, a CVSS
score, and other related information, refer to the CVE page(s) listed in
the References section.

This issue was discovered by Brian Coca (Red Hat), and Michael Scherer
(OSAS).

Bug Fix(es):

* Fix junos_config confirm commit timeout issue
(https://github.com/ansible/ansible/pull/41527)

* file module - The touch subcommand had its diff output broken during the
2.6.x development cycle.  The patch to fix that broke check mode. This is
now fixed (https://github.com/ansible/ansible/issues/42111)

* inventory manager - This fixes required options being populated before
the inventory config file is read, so the required options may be set in
the config file.

* nsupdate - allow hmac-sha384
https://github.com/ansible/ansible/pull/42209

* win_domain - fixes typo in one of the AD cmdlets
https://github.com/ansible/ansible/issues/41536

* win_group_membership - uses the internal Ansible SID conversion logic and
uses that when comparing group membership instead of the name
https://github.com/ansible/ansible/issues/40649

4. Solution:

For details on how to apply this update, which includes the changes
described in this advisory, refer to:

https://access.redhat.com/articles/11258

5. Bugs fixed (https://bugzilla.redhat.com/):

1596528 - CVE-2018-10874 ansible: Inventory variables are loaded from current working directory when running ad-hoc command that can lead to code execution
1596533 - CVE-2018-10875 ansible: ansible.cfg is being read from current working directory allowing possible code execution

6. Package List:

Red Hat Ansible Engine 2 for RHEL 7:

Source:
ansible-2.6.1-1.el7ae.src.rpm

noarch:
ansible-2.6.1-1.el7ae.noarch.rpm

These packages are GPG signed by Red Hat for security.  Our key and
details on how to verify the signature are available from
https://access.redhat.com/security/team/key/

7. References:

https://access.redhat.com/security/cve/CVE-2018-10874
https://access.redhat.com/security/cve/CVE-2018-10875
https://access.redhat.com/security/updates/classification/#moderate

8. Contact:

The Red Hat security contact is <secalert@redhat.com>. More contact
details at https://access.redhat.com/security/team/contact/

Copyright 2018 Red Hat, Inc.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=SGDn
-----END PGP SIGNATURE-----

--
RHSA-announce mailing list
RHSA-announce@redhat.com
https://www.redhat.com/mailman/listinfo/rhsa-announce
    

- 漏洞信息

Linux Kernel CVE-2018-1087 Local Privilege Escalation Vulnerability
Input Validation Error 104127
No Yes
2018-05-08 12:00:00 2018-05-08 12:00:00
Andy Lutomirski

- 受影响的程序版本

Redhat Virtualization Host 4
Redhat Enterprise Linux Workstation 7
Redhat Enterprise Linux Server - Update Services for SAP Solutions 7.4
Redhat Enterprise Linux Server - Update Services for SAP Solutions 7.3
Redhat Enterprise Linux Server - Update Services for SAP Solutions 7.2
Redhat Enterprise Linux Server - TUS 7.4
Redhat Enterprise Linux Server - TUS 7.3
Redhat Enterprise Linux Server - TUS 7.2
Redhat Enterprise Linux Server - Extended Update Support 7.4
Redhat Enterprise Linux Server - Extended Update Support 7.3
Redhat Enterprise Linux Server - AUS 7.4
Redhat Enterprise Linux Server - AUS 7.3
Redhat Enterprise Linux Server - AUS 7.2
Redhat Enterprise Linux Server 7
Redhat Enterprise Linux for Scientific Computing 7
Redhat Enterprise Linux for Real Time 7
Redhat Enterprise Linux for Power, little endian - Extended Update Supp 7.4
Redhat Enterprise Linux for Power, little endian - Extended Update Supp 7.3
Redhat Enterprise Linux for Power, little endian 7
Redhat Enterprise Linux for Power, big endian - Extended Update Support 7.4
Redhat Enterprise Linux for Power, big endian - Extended Update Support 7.3
Redhat Enterprise Linux for Power, big endian 7
Redhat Enterprise Linux for Power little endian - Extended Update Suppo 7.5
Redhat Enterprise Linux for Power big endian - Extended Update Support 7.5
Redhat Enterprise Linux for Power 9 7
Redhat Enterprise Linux for IBM z Systems - Extended Update Support 7.5
Redhat Enterprise Linux for IBM z Systems - Extended Update Support 7.4
Redhat Enterprise Linux for IBM z Systems - Extended Update Support 7.3
Redhat Enterprise Linux for IBM z Systems 7
Redhat Enterprise Linux for ARM 64 7
Redhat Enterprise Linux EUS Compute Node 7.5
Redhat Enterprise Linux EUS Compute Node 7.4
Redhat Enterprise Linux EUS Compute Node 7.3
Redhat Enterprise Linux Desktop 7
Linux kernel 4.14.13
+ EnGarde Secure Linux 1.0.1
+ Immunix Immunix OS 7+
+ MandrakeSoft Single Network Firewall 7.2
+ Mandriva Linux Mandrake 8.1
+ Mandriva Linux Mandrake 8.0 ppc
+ Mandriva Linux Mandrake 8.0
+ SuSE Linux 7.0
+ SuSE Linux 6.4
+ SuSE Linux 6.3
+ Trustix Secure Linux 1.5
Linux kernel 4.14.11
Linux kernel 4.14.10
Linux kernel 4.14.6
Linux kernel 4.14.5
Linux kernel 4.14.1
Linux kernel 4.13.11
Linux kernel 4.13.10
Linux kernel 4.13.8
Linux kernel 4.13.7
Linux kernel 4.13.6
Linux kernel 4.13.4
Linux kernel 4.13.3
Linux kernel 4.12.9
Linux kernel 4.12.3
Linux kernel 4.12.2
Linux kernel 4.11.9
Linux kernel 4.11.5
Linux kernel 4.11.4
Linux kernel 4.11.3
Linux kernel 4.11.2
Linux kernel 4.11.1
Linux kernel 4.11
Linux kernel 4.10.15
Linux kernel 4.10.13
Linux kernel 4.10.12
Linux kernel 4.10.10
Linux kernel 4.10.6
Linux kernel 4.10.4
Linux kernel 4.10
Linux kernel 4.1.47
Linux kernel 4.1.4
Linux kernel 4.1.1
Linux kernel 4.0.6
Linux kernel 3.19.3
Linux kernel 3.18.22
Linux kernel 3.18.17
Linux kernel 3.18.11
Linux kernel 3.18.8
Linux kernel 3.18.7
Linux kernel 3.18.3
Linux kernel 3.18.2
Linux kernel 3.18.1
Linux kernel 3.17.4
Linux kernel 3.17.2
Linux kernel 3.16.7
Linux kernel 3.16.2
Linux kernel 3.16.1
Linux kernel 3.15.10
Linux kernel 3.15.5
Linux kernel 3.15.2
Linux kernel 3.14.54
Linux kernel 3.14.45
Linux kernel 3.14.37
Linux kernel 3.14.4
Linux kernel 3.14.3
Linux kernel 3.14.2
Linux kernel 3.13.11
Linux kernel 3.13.9
Linux kernel 3.13.3
Linux kernel 3.13.1
Linux kernel 3.12.49
Linux kernel 3.12.48
Linux kernel 3.12.44
Linux kernel 3.12.40
Linux kernel 3.12.21
Linux kernel 3.12.18
Linux kernel 3.12.17
Linux kernel 3.12.16
Linux kernel 3.12.11
Linux kernel 3.12.7
Linux kernel 3.12.4
Linux kernel 3.12.3
Linux kernel 3.12.2
Linux kernel 3.11.3
Linux kernel 3.10.90
Linux kernel 3.10.81
Linux kernel 3.10.73
Linux kernel 3.10.45
Linux kernel 3.10.41
Linux kernel 3.10.38
Linux kernel 3.10.37
Linux kernel 3.10.36
Linux kernel 3.10.30
Linux kernel 3.10.27
Linux kernel 3.10.26
Linux kernel 3.10.23
Linux kernel 3.10.22
Linux kernel 3.10.21
Linux kernel 3.10.14
Linux kernel 3.10.10
Linux kernel 3.10.9
Linux kernel 3.10.7
Linux kernel 3.10
Linux kernel 3.8.9
Linux kernel 3.8.6
Linux kernel 3.8.5
Linux kernel 3.8.4
Linux kernel 3.8.2
Linux kernel 3.8.1
Linux kernel 3.7.10
Linux kernel 3.7.9
Linux kernel 3.7.8
Linux kernel 3.7.7
Linux kernel 3.7.5
Linux kernel 3.7.4
Linux kernel 3.7.3
Linux kernel 3.7.2
Linux kernel 3.7.1
Linux kernel 3.6.11
Linux kernel 3.6.10
Linux kernel 3.6.9
Linux kernel 3.6.8
Linux kernel 3.6.7
Linux kernel 3.6.6
Linux kernel 3.6.5
Linux kernel 3.6.4
Linux kernel 3.6.3
Linux kernel 3.6.2
Linux kernel 3.6.1
Linux kernel 3.5.7
Linux kernel 3.5.6
Linux kernel 3.5.5
Linux kernel 3.5.4
Linux kernel 3.5.3
Linux kernel 3.5.2
Linux kernel 3.5.1
Linux kernel 3.4.88
Linux kernel 3.4.87
Linux kernel 3.4.86
Linux kernel 3.4.80
Linux kernel 3.4.76
Linux kernel 3.4.73
Linux kernel 3.4.72
Linux kernel 3.4.71
Linux kernel 3.4.64
Linux kernel 3.4.58
Linux kernel 3.4.42
Linux kernel 3.4.36
Linux kernel 3.4.32
Linux kernel 3.4.31
Linux kernel 3.4.27
Linux kernel 3.4.26
Linux kernel 3.4.25
Linux kernel 3.4.21
Linux kernel 3.4.20
Linux kernel 3.4.19
Linux kernel 3.4.18
Linux kernel 3.4.17
Linux kernel 3.4.16
Linux kernel 3.4.15
Linux kernel 3.4.14
Linux kernel 3.4.13
Linux kernel 3.4.12
Linux kernel 3.4.11
Linux kernel 3.4.10
Linux kernel 3.4.9
Linux kernel 3.4.8
Linux kernel 3.4.7
Linux kernel 3.4.6
Linux kernel 3.4.5
Linux kernel 3.4.4
Linux kernel 3.4.3
Linux kernel 3.4.2
Linux kernel 3.4.1
Linux kernel 3.3.5
Linux kernel 3.3.4
Linux kernel 3.3.2
Linux kernel 3.2.82
Linux kernel 3.2.72
Linux kernel 3.2.62
Linux kernel 3.2.57
Linux kernel 3.2.56
Linux kernel 3.2.51
Linux kernel 3.2.24
Linux kernel 3.2.23
Linux kernel 3.2.13
Linux kernel 3.2.12
Linux kernel 3.2.9
Linux kernel 3.2.1
Linux kernel 3.1.8
Linux kernel 3.0.98
Linux kernel 3.0.75
Linux kernel 3.0.72
Linux kernel 3.0.69
Linux kernel 3.0.65
Linux kernel 3.0.60
Linux kernel 3.0.59
Linux kernel 3.0.58
Linux kernel 3.0.37
Linux kernel 3.0.34
Linux kernel 3.0.5
Linux kernel 3.0.4
Linux kernel 3.0.2
Linux kernel 3.0.1
Linux kernel 2.6.39
Linux kernel 2.6.38
Linux kernel 2.6.37
Linux kernel 2.6.36
Linux kernel 2.6.35
Linux kernel 2.6.34
Linux kernel 2.6.33
Linux kernel 2.6.32 .9
Linux kernel 2.6.32
Linux kernel 2.6.31
Linux kernel 2.6.29
Linux kernel 2.6.28
Linux kernel 2.6.27
Linux kernel 2.6.26
Linux kernel 2.6.25
Linux kernel 2.6.24
Linux kernel 2.6.23
Linux kernel 4.4.14
Linux kernel 4.4.1
Linux kernel 4.4.0-57
Linux kernel 4.15
Linux kernel 4.14.8
Linux kernel 4.14.7
+ EnGarde Secure Linux 1.0.1
+ Immunix Immunix OS 7+
+ MandrakeSoft Single Network Firewall 7.2
+ Mandriva Linux Mandrake 8.1
+ Mandriva Linux Mandrake 8.0 ppc
+ Mandriva Linux Mandrake 8.0
+ SuSE Linux 7.0
+ SuSE Linux 6.4
+ SuSE Linux 6.3
+ Trustix Secure Linux 1.5
Linux kernel 4.14.4
Linux kernel 4.14.3
Linux kernel 4.14.2
Linux kernel 4.14.15
Linux kernel 4.14.14
Linux kernel 4.14.0-rc1
Linux kernel 4.14-rc5
Linux kernel 4.14-rc1
Linux kernel 4.14
Linux kernel 4.13.5
Linux kernel 4.13.2
Linux kernel 4.13.1
Linux kernel 4.13
Linux kernel 4.12.10
Linux kernel 4.12.1
Linux kernel 4.12
Linux kernel 4.11.8
Linux kernel 4.11.7
Linux kernel 4.11
Linux kernel 4.10.9
Linux kernel 4.10.8
Linux kernel 4.10.7
Linux kernel 4.10.5
Linux kernel 4.10.3
Linux kernel 4.10.2
Linux kernel 4.10.11
Linux kernel 4.10.1
Linux kernel 4.1.15
Linux kernel 4.1
Linux kernel 4.0.5
Linux kernel 4.0
Linux kernel 3.8
Linux kernel 3.7.6
Linux kernel 3.7
Linux kernel 3.6
Linux kernel 3.5
Linux kernel 3.4.93
Linux kernel 3.4.81
Linux kernel 3.4.70
Linux kernel 3.4.67
Linux kernel 3.4.29
Linux kernel 3.4
Linux kernel 3.3
Linux kernel 3.2.81
Linux kernel 3.2.78
Linux kernel 3.2.65
Linux kernel 3.2.64
Linux kernel 3.2.63
Linux kernel 3.2.60
Linux kernel 3.2.55
Linux kernel 3.2.54
Linux kernel 3.2.53
Linux kernel 3.2.52
Linux kernel 3.2.50
Linux kernel 3.2.44
Linux kernel 3.2.42
Linux kernel 3.2.38
Linux kernel 3.2.2
Linux kernel 3.2
Linux kernel 3.19
Linux kernel 3.18.9
Linux kernel 3.18
Linux kernel 3.17.6
Linux kernel 3.17
Linux kernel 3.16.6
Linux kernel 3.16.36
Linux kernel 3.16
Linux kernel 3.15
Linux kernel 3.14.73
Linux kernel 3.14.7
Linux kernel 3.14.5
Linux kernel 3.14-4
Linux kernel 3.14-1
Linux kernel 3.14
Linux kernel 3.13.7
Linux kernel 3.13.6
Linux kernel 3.13.5
Linux kernel 3.13.4
Linux kernel 3.13.0
Linux kernel 3.13
Linux kernel 3.12.22
Linux kernel 3.12.15
Linux kernel 3.12.14
Linux kernel 3.12.12
Linux kernel 3.12.1
Linux kernel 3.12
Linux kernel 3.11.9
Linux kernel 3.11.6
Linux kernel 3.11
Linux kernel 3.10.5
Linux kernel 3.10.43
Linux kernel 3.10.31
Linux kernel 3.10.20
Linux kernel 3.10.17
Linux kernel 3.10
Linux kernel 3.1
Linux kernel 3.0.66
Linux kernel 3.0.62
Linux kernel 3.0.18
Linux kernel 3.0
Linux kernel 2.6.38.6
Linux kernel 2.6.38.4
Linux kernel 2.6.38.3
Linux kernel 2.6.38.2
Linux kernel 2.6.37.2
Linux kernel 2.6.32.8
Linux kernel 2.6.32.7
Linux kernel 2.6.32.62
Linux kernel 2.6.32.61
Linux kernel 2.6.32.60
Linux kernel 2.6.32.6
Linux kernel 2.6.32.5
Linux kernel 2.6.32.3
Linux kernel 2.6.32.28
Linux kernel 2.6.32.15
Linux kernel 2.6.32.14
Linux kernel 2.6.32.13
Linux kernel 2.6.32.12
Linux kernel 2.6.32.11
Linux kernel 2.6.32.10
Linux kernel 2.6.32.1
Linux kernel 2.6.31.6
Linux kernel 2.6.31.4
Linux kernel 2.6.31.1
Linux kernel 2.6.30.5
Linux kernel 2.6.30.4
Linux kernel 2.6.30.3
Linux kernel 2.6.28.4
Linux kernel 2.6.28.10
Linux kernel 2.6.27.54
Linux kernel 2.6.27.51
Linux kernel 2.6.27.49
Linux kernel 2.6.27.26
Linux kernel 2.6.26.1
Linux kernel 2.6.25.4
Linux kernel 2.6.25.3
Linux kernel 2.6.25.2
Linux kernel 2.6.25.1
Linux kernel 2.6.24.6
Linux kernel 2.6.24.4
Linux kernel 2.6.24.3
Linux kernel 2.6.23.14
Linux kernel 2.6.23.10
Linux kernel 2.6.23.1
,Linux kernel 4.16-rc7

- 不受影响的程序版本

Linux kernel 4.16-rc7

- 漏洞讨论

Linux Kernel is prone to a local privilege-escalation vulnerability.

An attackers may exploit this issue to gain elevated privileges.

- 漏洞利用

Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: vuldb@securityfocus.com.

- 解决方案

Updates are available. Please see the references or vendor advisory for more information.

- 相关参考

 

 

关于SCAP中文社区

SCAP中文社区是国内第一个以SCAP为主题的中文开放社区。了解更多信息,请查阅[关于本站]

版权声明

CVE/CWE/OVAL均为MITRE公司的注册商标,它们的官方数据源均保存在MITRE公司的相关网站