[LU-10037] kernel update [RHEL6.9 2.6.32-696.10.3.el6] Created: 27/Sep/17  Updated: 07/Oct/17  Resolved: 07/Oct/17

Status: Resolved
Project: Lustre
Component/s: None
Affects Version/s: None
Fix Version/s: None

Type: Bug Priority: Minor
Reporter: Bob Glossman (Inactive) Assignee: Bob Glossman (Inactive)
Resolution: Won't Fix Votes: 0
Labels: None

Issue Links:
Related
is related to LU-9979 kernel update [RHEL6.9 2.6.32-696.10.... Resolved
is related to LU-10088 kernel update [RHEL6.9 2.6.32-696.13.... Resolved
Severity: 3
Rank (Obsolete): 9223372036854775807

 Description   

Security Fix(es):

A flaw was found in the way the Linux kernel loaded ELF executables. Provided that an application was built as Position Independent Executable (PIE), the loader could allow part of that application's data segment to map over the memory area reserved for its stack, potentially resulting in memory corruption. An unprivileged local user with access to SUID (or otherwise privileged) PIE binary could use this flaw to escalate their privileges on the system. (CVE-2017-1000253, Important)

Bugs fixed (https://bugzilla.redhat.com/):

BZ - 1492212 - CVE-2017-1000253 kernel: load_elf_ binary() does not take account of the need to allocate sufficient space for the entire binary



 Comments   
Comment by Gerrit Updater [ 28/Sep/17 ]

Bob Glossman (bob.glossman@intel.com) uploaded a new patch: https://review.whamcloud.com/29247
Subject: LU-10037 kernel: kernel update RHEL6.9 [2.6.32-696.10.3.el6]
Project: fs/lustre-release
Branch: master
Current Patch Set: 1
Commit: b11069421799683308e2de48cca1727baf30194a

Comment by Gerrit Updater [ 28/Sep/17 ]

Bob Glossman (bob.glossman@intel.com) uploaded a new patch: https://review.whamcloud.com/29248
Subject: LU-10037 kernel: kernel update RHEL6.9 [2.6.32-696.10.3.el6]
Project: fs/lustre-release
Branch: b2_10
Current Patch Set: 1
Commit: 092b3c2ef157f645421e851aa5ad166199829de3

Comment by Gerrit Updater [ 29/Sep/17 ]

John L. Hammond (john.hammond@intel.com) merged in patch https://review.whamcloud.com/29248/
Subject: LU-10037 kernel: kernel update RHEL6.9 [2.6.32-696.10.3.el6]
Project: fs/lustre-release
Branch: b2_10
Current Patch Set:
Commit: c24484c74dc833b22d742f80c305c4ad380146b5

Comment by Bob Glossman (Inactive) [ 07/Oct/17 ]

replaced by LU-10088, a later version update

Generated at Sat Feb 10 02:31:29 UTC 2024 using Jira 9.4.14#940014-sha1:734e6822bbf0d45eff9af51f82432957f73aa32c.