You are here
Home > Preporuke > Sigurnosni nedostaci jezgre operacijskog sustava

Sigurnosni nedostaci jezgre operacijskog sustava

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LFE

——————————————————————————–
Fedora Update Notification
FEDORA-2019-7aecfe1c4b
2019-08-06 01:18:14.744951
——————————————————————————–

Name : kernel-tools
Product : Fedora 30
Version : 5.2.5
Release : 200.fc30
URL : http://www.kernel.org/
Summary : Assortment of tools for the Linux kernel
Description :
This package contains the tools/ directory from the kernel source
and the supporting documentation.

——————————————————————————–
Update Information:

The 5.2.5 stable kernel update contains a number of important fixes across the
tree. This should also fix the black screen issue that several i915 users were
hitting with 5.2.4. —- The 5.2.4 kernel rebase contains new features and
hardware support, and a number of important fixes across the tree.
——————————————————————————–
ChangeLog:

* Wed Jul 31 2019 Justin M. Forbes <jforbes@fedoraproject.org> – 5.2.5-200
– Linux v5.2.5
* Mon Jul 29 2019 Justin M. Forbes <jforbes@fedoraproject.org> – 5.2.4-200
– Linux v5.2.4
* Wed Jun 19 2019 Jeremy Cline <jcline@redhat.com> – 5.1.12-300
– Linux v5.1.12
* Mon Jun 3 2019 Jeremy Cline <jcline@redhat.com> – 5.1.6-300
– Linux v5.1.6
* Mon May 6 2019 Jeremy Cline <jcline@redhat.com> – 5.1.4-300
– Linux v5.1.4
* Sat May 4 2019 Laura Abbott <labbott@redhat.com> – 5.0.12-300
– Linux v5.0.12
——————————————————————————–
References:

[ 1 ] Bug #1733874 – CVE-2019-10207 kernel: null-pointer dereference in hci_uart_set_flow_control
https://bugzilla.redhat.com/show_bug.cgi?id=1733874
[ 2 ] Bug #1735630 – CVE-2019-13648 kernel: denial of service in arch/powerpc/kernel/signal_32.c and arch/powerpc/kernel/signal_64.c via sigreturn() system call
https://bugzilla.redhat.com/show_bug.cgi?id=1735630
——————————————————————————–

This update can be installed with the “dnf” update program. Use
su -c ‘dnf upgrade –advisory FEDORA-2019-7aecfe1c4b’ at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list — package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org

——————————————————————————–
Fedora Update Notification
FEDORA-2019-7aecfe1c4b
2019-08-06 01:18:14.744951
——————————————————————————–

Name : kernel-headers
Product : Fedora 30
Version : 5.2.5
Release : 200.fc30
URL : http://www.kernel.org/
Summary : Header files for the Linux kernel for use by glibc
Description :
Kernel-headers includes the C header files that specify the interface
between the Linux kernel and userspace libraries and programs. The
header files define structures and constants that are needed for
building most standard programs and are also needed for rebuilding the
glibc package.

——————————————————————————–
Update Information:

The 5.2.5 stable kernel update contains a number of important fixes across the
tree. This should also fix the black screen issue that several i915 users were
hitting with 5.2.4. —- The 5.2.4 kernel rebase contains new features and
hardware support, and a number of important fixes across the tree.
——————————————————————————–
ChangeLog:

* Wed Jul 31 2019 Justin M. Forbes <jforbes@fedoraproject.org> – 5.2.5-200
– Linux v5.2.5
* Mon Jul 29 2019 Justin M. Forbes <jforbes@fedoraproject.org> – 5.2.4-200
– Linux v5.2.4
* Fri Jul 26 2019 Jeremy Cline <jcline@redhat.com> – 5.1.20-300
– Linux v5.1.20
* Mon Jul 22 2019 Jeremy Cline <jcline@redhat.com> – 5.1.19-300
– Linux v5.1.19
* Mon Jul 15 2019 Jeremy Cline <jcline@redhat.com> – 5.1.18-300
– Linux v5.1.18
* Wed Jul 10 2019 Jeremy Cline <jcline@redhat.com> – 5.1.17-300
– Linux v5.1.17
* Wed Jul 3 2019 Jeremy Cline <jcline@redhat.com> – 5.1.16-300
– Linux v5.1.16
* Tue Jun 25 2019 Jeremy Cline <jcline@redhat.com> – 5.1.15-300
– Linux v5.1.15
* Mon Jun 24 2019 Jeremy Cline <jcline@redhat.com> – 5.1.14-300
– Linux v5.1.14
* Wed Jun 19 2019 Jeremy Cline <jcline@redhat.com> – 5.1.12-300
– Linux v5.1.12
* Mon Jun 17 2019 Jeremy Cline <jcline@redhat.com> – 5.1.11-300
– Linux v5.1.11
* Mon Jun 17 2019 Jeremy Cline <jcline@redhat.com> – 5.1.10-300
– Linux v5.1.10
* Tue Jun 11 2019 Jeremy Cline <jcline@redhat.com> – 5.1.9-300
– Linux v5.1.9
* Sun Jun 9 2019 Jeremy Cline <jcline@redhat.com> – 5.1.8-300
– Linux v5.1.8
* Tue Jun 4 2019 Jeremy Cline <jcline@redhat.com> – 5.1.7-300
– Linux v5.1.7
* Sat May 25 2019 Jeremy Cline <jcline@redhat.com> – 5.1.5-300
– Linux v5.1.5
* Wed May 22 2019 Jeremy Cline <jcline@redhat.com> – 5.1.4-300
– Linux v5.1.4
* Wed May 15 2019 Justin M. Forbes <jforbes@fedoraproject.org> – 5.0.16-300
– Linux v5.0.16
——————————————————————————–
References:

[ 1 ] Bug #1733874 – CVE-2019-10207 kernel: null-pointer dereference in hci_uart_set_flow_control
https://bugzilla.redhat.com/show_bug.cgi?id=1733874
[ 2 ] Bug #1735630 – CVE-2019-13648 kernel: denial of service in arch/powerpc/kernel/signal_32.c and arch/powerpc/kernel/signal_64.c via sigreturn() system call
https://bugzilla.redhat.com/show_bug.cgi?id=1735630
——————————————————————————–

This update can be installed with the “dnf” update program. Use
su -c ‘dnf upgrade –advisory FEDORA-2019-7aecfe1c4b’ at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list — package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org

——————————————————————————–
Fedora Update Notification
FEDORA-2019-7aecfe1c4b
2019-08-06 01:18:14.744951
——————————————————————————–

Name : kernel
Product : Fedora 30
Version : 5.2.5
Release : 200.fc30
URL : https://www.kernel.org/
Summary : The Linux kernel
Description :
The kernel meta package

——————————————————————————–
Update Information:

The 5.2.5 stable kernel update contains a number of important fixes across the
tree. This should also fix the black screen issue that several i915 users were
hitting with 5.2.4. —- The 5.2.4 kernel rebase contains new features and
hardware support, and a number of important fixes across the tree.
——————————————————————————–
ChangeLog:

* Wed Jul 31 2019 Justin M. Forbes <jforbes@fedoraproject.org> – 5.2.5-200
– Linux v5.2.5
– Fix CVE-2019-10207 (rhbz 1733874 1734242)
* Tue Jul 30 2019 Justin M. Forbes <jforbes@fedoraproject.org>
– Fix for screen freezes with i915
* Mon Jul 29 2019 Justin M. Forbes <jforbes@fedoraproject.org> – 5.2.4-200
– Linux v5.2.4 Rebase
* Fri Jul 26 2019 Jeremy Cline <jcline@redhat.com> – 5.1.20-300
– Linux v5.1.20
* Mon Jul 22 2019 Laura Abbott <labbott@redhat.com>
– Bring in DMA fix (rhbz 1732045)
* Mon Jul 22 2019 Jeremy Cline <jcline@redhat.com> – 5.1.19-300
– Linux v5.1.19
– Fix Xen Security Advisory 300 (rhbz 1731862 1731864)
– Fix a null pointer dereference in the 8250_lpss serial driver (rhbz 1731784)
* Thu Jul 18 2019 Jeremy Cline <jcline@redhat.com>
– Fix CVE-2019-13631 (rhbz 1731000 1731001)
* Mon Jul 15 2019 Jeremy Cline <jcline@redhat.com> – 5.1.18-300
– Linux v5.1.18
* Wed Jul 10 2019 Jeremy Cline <jcline@redhat.com> – 5.1.17-300
– Linux v5.1.17
* Mon Jul 8 2019 Jeremy Cline <jcline@redhat.com>
– Fix a firmware crash in Intel 7000 and 8000 devices (rhbz 1716334)
* Thu Jul 4 2019 Peter Robinson <pbrobinson@fedoraproject.org>
– Fixes for load avg and display on Raspberry Pi
* Wed Jul 3 2019 Jeremy Cline <jcline@redhat.com> – 5.1.16-300
– Linux v5.1.16
– Fix an issue with deleting singular conntrack entries (rhbz 1724357)
* Tue Jun 25 2019 Jeremy Cline <jcline@redhat.com> – 5.1.15-300
– Linux v5.1.15
– Fixes CVE-2019-12817 (rhbz 1720616 1723697)
* Mon Jun 24 2019 Hans de Goede <hdegoede@redhat.com>
– Extend GPD MicroPC LCD panel quirk to also apply to newer BIOS versions
* Mon Jun 24 2019 Jeremy Cline <jcline@redhat.com> – 5.1.14-300
– Linux v5.1.14
* Wed Jun 19 2019 Jeremy Cline <jcline@redhat.com> – 5.1.12-300
– Linux v5.1.12
* Mon Jun 17 2019 Jeremy Cline <jcline@redhat.com> – 5.1.11-300
– Linux v5.1.11
– Fixes CVE-2019-11477 (rhbz 1719123 1721254)
– Fixes CVE-2019-11479 (rhbz 1719129 1721255)
– Fixes CVE-2019-11478 (rhbz 1719128 1721256)
* Mon Jun 17 2019 Jeremy Cline <jcline@redhat.com> – 5.1.10-300
– Linux v5.1.10
* Fri Jun 14 2019 Hans de Goede <hdegoede@redhat.com>
– Fix the LCD panel an Asus EeePC 1025C not lighting up (rhbz#1697069)
– Fix the LCD panel on the GPD MicroPC not working
* Thu Jun 13 2019 Justin M. Forbes <jforbes@fedoraproject.org>
– Fix CVE-2019-10126 (rhbz 1716992 1720122)
* Tue Jun 11 2019 Jeremy Cline <jcline@redhat.com> – 5.1.9-300
– Linux v5.1.9
– Fix UDP checkshums for SIP packets (rhbz 1716289)
* Sun Jun 9 2019 Jeremy Cline <jcline@redhat.com> – 5.1.8-300
– Linux v5.1.8
* Fri Jun 7 2019 Justin M. Forbes <jforbes@fedoraproject.org>
– Fix CVE-2019-12614 (rhbz 1718176 1718185)
* Thu Jun 6 2019 Jeremy Cline <jcline@redhat.com>
– Fix incorrect permission denied with lock down off (rhbz 1658675)
– Fix an issue with the IPv6 neighbor table (rhbz 1708717)
* Wed Jun 5 2019 Justin M. Forbes <jforbes@fedoraproject.org>
– Fix CVE-2019-12456 (rhbz 1717182 1717183)
* Tue Jun 4 2019 Jeremy Cline <jcline@redhat.com> – 5.1.7-300
– Linux v5.1.7
– Fix CVE-2019-12455 (rhbz 1716990 1717003)
– Fix CVE-2019-12454 (rhbz 1716996 1717003)
* Mon Jun 3 2019 Justin M. Forbes <jforbes@fedoraproject.org>
– Fix CVE-2019-12378 (rhbz 1715459 1715460)
– Fix CVE-2019-3846 (rhbz 1713059 1715475)
– Fix CVE-2019-12380 (rhbz 1715494 1715495)
– Fix CVE-2019-12381 (rhbz 1715501 1715502)
– Fix CVE-2019-12382 (rhbz 1715554 1715556)
– Fix CVE-2019-12379 (rhbz 1715491 1715706)
* Fri May 31 2019 Laura Abbott <labbott@redhat.com> – 5.1.6-300
– Linux v5.1.6
* Sat May 25 2019 Jeremy Cline <jcline@redhat.com> – 5.1.5-300
– Linux v5.1.5
* Fri May 24 2019 Jeremy Cline <jcline@redhat.com> – 5.1.4-301
– Fix fstrim discarding too many blocks
* Wed May 22 2019 Jeremy Cline <jcline@redhat.com> – 5.1.4-300
– Linux v5.1.4
– Fix an issue with Bluetooth 2.0 and earlier devices (rhbz 1711468)
* Mon May 20 2019 Laura Abbott <labbott@redhat.com> – 5.0.17-300
– Linux v5.0.17
* Tue May 14 2019 Justin M. Forbes <jforbes@fedoraproject.org> – 5.0.16-300
– Linux v5.0.16
– Fixes CVE-2018-12126 (rhbz 1646781 1709976)
– Fixes CVE-2018-12127 (rhbz 1667782 1709978)
– Fixes CVE-2018-12130 (rhbz 1646784 1709989 1709996)
– Fixes CVE-2019-11091 (rhbz 1705312 1709983)
* Mon May 13 2019 Laura Abbott <labbott@redhat.com> – 5.0.15-300
– Linux v5.0.15
– Fixes CVE-2019-11884 (rhbz 1709837 1709838)
* Thu May 9 2019 Laura Abbott <labbott@redhat.com> – 5.0.14-300
– Linux v5.0.14
* Mon May 6 2019 Laura Abbott <labbott@redhat.com> – 5.0.13-300
– Linux v5.0.13
* Sat May 4 2019 Laura Abbott <labbott@redhat.com> – 5.0.12-300
– Linux v5.0.12
* Thu May 2 2019 Laura Abbott <labbott@redhat.com> – 5.0.11-300
– Linux v5.0.11
* Tue Apr 30 2019 Laura Abbott <labbott@redhat.com> – 5.0.10-300
– Linux v5.0.10
* Tue Apr 30 2019 Hans de Goede <hdegoede@redhat.com>
– Fix wifi on various ideapad models not working (rhbz#1703338)
* Thu Apr 25 2019 Justin M. Forbes <jforbes@fedoraproject.org>
– Fix CVE-2019-3900 (rhbz 1698757 1702940)
——————————————————————————–
References:

[ 1 ] Bug #1733874 – CVE-2019-10207 kernel: null-pointer dereference in hci_uart_set_flow_control
https://bugzilla.redhat.com/show_bug.cgi?id=1733874
[ 2 ] Bug #1735630 – CVE-2019-13648 kernel: denial of service in arch/powerpc/kernel/signal_32.c and arch/powerpc/kernel/signal_64.c via sigreturn() system call
https://bugzilla.redhat.com/show_bug.cgi?id=1735630
——————————————————————————–

This update can be installed with the “dnf” update program. Use
su -c ‘dnf upgrade –advisory FEDORA-2019-7aecfe1c4b’ at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list — package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org

AutorZvonimir Bosnjak
Cert idNCERT-REF-2019-08-0001-ADV
CveCERT-CVE-DUMMY
ID izvornikaCERT-ORIGID-DUMMY
ProizvodCERT-DUMMY-PRODUCT
IzvorAdobe
Top
More in Preporuke
Sigurnosni nedostaci programskog paketa gvfs

Otkriveni su sigurnosni nedostaci u programskom paketu gvfs za operacijski sustav Fedora. Otkriveni nedostaci potencijalnim napadačima omogućuju izazivanje DoS stanja...

Close