CESA-2019:2473 -- centos 6 kernel,python-perf,perfID: oval:org.secpod.oval:def:205248 | Date: (C)2019-08-20 (M)2024-02-19 |
Class: PATCH | Family: unix |
The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix: * Kernel: page cache side channel attacks * kernel: Salsa20 encryption algorithm does not correctly handle zero-length inputs allowing local attackers to cause denial-of-service * kernel: Unprivileged users able to inspect kernel stacks of arbitrary tasks * kernel: hw: Spectre SWAPGS gadget vulnerability For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section. Bug Fix: * OOPS with Null Pointer exception in v4l2_ctrl_query_menu when second arg of function is NULL * Another RHEL 6 hang in congestion_wait * kernel crash after running user space script * RHEL-6.10: Don"t report the use of retpoline on Skylake as vulnerable * Bad pagetable: 000f *pdpt = 0000000000000000 *pde = 0000000000000000 RHEL 6 32bit * fs/binfmt_misc.c: do not allow offset overflow [6.10.z] * Wrong spectre backport causing linux headers to break compilation of 3rd party packages
Product: |
kernel |
python-perf |
perf |