Difference between revisions of "News/updates"
< News
(028stab120.1 to -stable) |
(042stab113.17 to -stable and -testing) |
||
Line 22: | Line 22: | ||
<startFeed /> | <startFeed /> | ||
<!-- *DO NOT REMOVE THIS LINE* new news should go here --> | <!-- *DO NOT REMOVE THIS LINE* new news should go here --> | ||
+ | |||
+ | == Kernel RHEL6 stable 042stab113.17 == | ||
+ | |||
+ | * Crash in restore_one_vfsmount() on restoring shared non-master mounts. (PSBM-42471) | ||
+ | * Introduced FADV_DEACTIVATE flag in fadvise() to be able to move file pages from the active to the inactive list. (PSBM-42664) | ||
+ | * Race between keyctl_read() and keyctl_revoke() could crash the host. (PSBM-43799, CVE-2015-7550) | ||
+ | * Under certain circumstances, backup/restore via CBT interface could hang the host. (PSBM-43936) | ||
+ | * Second-level quota in simfs containers was broken in 042stab113.x kernels. (OVZ-6655) | ||
+ | |||
+ | {{Download link|kernel/rhel6/042stab113.17}} | ||
+ | |||
+ | --[[User:Sergey Bronnikov|SergeyB]] ([[User talk:Sergey Bronnikov|talk]]) 06:37, 14 March 2016 (EDT) | ||
+ | |||
+ | == Kernel RHEL6 testing 042stab113.17 == | ||
+ | |||
+ | * Crash in restore_one_vfsmount() on restoring shared non-master mounts. (PSBM-42471) | ||
+ | * Introduced FADV_DEACTIVATE flag in fadvise() to be able to move file pages from the active to the inactive list. (PSBM-42664) | ||
+ | * Race between keyctl_read() and keyctl_revoke() could crash the host. (PSBM-43799, CVE-2015-7550) | ||
+ | * Under certain circumstances, backup/restore via CBT interface could hang the host. (PSBM-43936) | ||
+ | * Second-level quota in simfs containers was broken in 042stab113.x kernels. (OVZ-6655) | ||
+ | |||
+ | {{Download link|kernel/rhel6-testing/042stab113.17}} | ||
+ | |||
+ | --[[User:Sergey Bronnikov|SergeyB]] ([[User talk:Sergey Bronnikov|talk]]) 06:37, 14 March 2016 (EDT) | ||
== Kernel RHEL5 stable 028stab120.1 == | == Kernel RHEL5 stable 028stab120.1 == | ||
Line 31: | Line 55: | ||
--[[User:Sergey Bronnikov|SergeyB]] ([[User talk:Sergey Bronnikov|talk]]) 07:30, 2 February 2016 (EST) | --[[User:Sergey Bronnikov|SergeyB]] ([[User talk:Sergey Bronnikov|talk]]) 07:30, 2 February 2016 (EST) | ||
+ | |||
== Kernel RHEL5 testing 028stab120.1 == | == Kernel RHEL5 testing 028stab120.1 == | ||
Revision as of 10:37, 14 March 2016
Contents
Kernel RHEL6 stable 042stab113.17
- Crash in restore_one_vfsmount() on restoring shared non-master mounts. (PSBM-42471)
- Introduced FADV_DEACTIVATE flag in fadvise() to be able to move file pages from the active to the inactive list. (PSBM-42664)
- Race between keyctl_read() and keyctl_revoke() could crash the host. (PSBM-43799, CVE-2015-7550)
- Under certain circumstances, backup/restore via CBT interface could hang the host. (PSBM-43936)
- Second-level quota in simfs containers was broken in 042stab113.x kernels. (OVZ-6655)
--SergeyB (talk) 06:37, 14 March 2016 (EDT)
Kernel RHEL6 testing 042stab113.17
- Crash in restore_one_vfsmount() on restoring shared non-master mounts. (PSBM-42471)
- Introduced FADV_DEACTIVATE flag in fadvise() to be able to move file pages from the active to the inactive list. (PSBM-42664)
- Race between keyctl_read() and keyctl_revoke() could crash the host. (PSBM-43799, CVE-2015-7550)
- Under certain circumstances, backup/restore via CBT interface could hang the host. (PSBM-43936)
- Second-level quota in simfs containers was broken in 042stab113.x kernels. (OVZ-6655)
--SergeyB (talk) 06:37, 14 March 2016 (EDT)
Kernel RHEL5 stable 028stab120.1
- Rebase to RHEL5 kernel 2.6.32-408.el5
- A flaw was found in the way the Linux kernel's networking implementation handled UDP packets with incorrect checksum values. A remote attacker could potentially use this flaw to trigger an infinite loop in the kernel, resulting in a denial of service on the system, or cause a denial of service in applications using the edge triggered epoll functionality (CVE-2015-5364, CVE-2015-5366)
--SergeyB (talk) 07:30, 2 February 2016 (EST)
Kernel RHEL5 testing 028stab120.1
- Rebase to RHEL5 kernel 2.6.32-408.el5
- A flaw was found in the way the Linux kernel's networking implementation handled UDP packets with incorrect checksum values. A remote attacker could potentially use this flaw to trigger an infinite loop in the kernel, resulting in a denial of service on the system, or cause a denial of service in applications using the edge triggered epoll functionality (CVE-2015-5364, CVE-2015-5366)
--SergeyB (talk) 04:30, 25 January 2016 (EST)
Kernel RHEL5 stable 028stab119.6
- Improved accounting for network-related memory objects (PCLIN-32553)
- Introduced a per-container limit for the number of mounts (PCLIN-32554)
- Introduced a per-container limit for IPv4 network interface aliases (PCLIN-32555)
--SergeyB (talk) 09:25, 3 January 2016 (EST)