[LU-8495] kernel update [SLES11 SP4 3.0.101-80] Created: 10/Aug/16  Updated: 12/Sep/16  Resolved: 22/Aug/16

Status: Resolved
Project: Lustre
Component/s: None
Affects Version/s: None
Fix Version/s: Lustre 2.9.0

Type: Bug Priority: Minor
Reporter: Bob Glossman (Inactive) Assignee: Bob Glossman (Inactive)
Resolution: Fixed Votes: 0
Labels: None

Issue Links:
Related
Severity: 3
Rank (Obsolete): 9223372036854775807

 Description   

The SUSE Linux Enterprise 11 SP4 kernel was updated to receive various security and bugfixes.

The following security bugs were fixed:

  • CVE-2016-5829: Multiple heap-based buffer overflows in the hiddev_ioctl_usage function in drivers/hid/usbhid/hiddev.c in the Linux kernel allowed local users to cause a denial of service or possibly have unspecified other impact via a crafted (1) HIDIOCGUSAGES or (2) HIDIOCSUSAGES ioctl call (bnc#986572).
  • CVE-2016-4997: The compat IPT_SO_SET_REPLACE setsockopt implementation in the netfilter subsystem in the Linux kernel allowed local users to gain privileges or cause a denial of service (memory corruption) by leveraging in-container root access to provide a crafted offset value that triggers an unintended decrement (bnc#986362).
  • CVE-2016-4470: The key_reject_and_link function in security/keys/key.c in the Linux kernel did not ensure that a certain data structure is initialized, which allowed local users to cause a denial of service (system crash) via vectors involving a crafted keyctl request2 command (bnc#984755).

The following non-security bugs were fixed:

  • RDMA/cxgb4: Configure 0B MRs to match HW implementation (bsc#909589).
  • RDMA/cxgb4: Do not hang threads forever waiting on WR replies (bsc#909589).
  • RDMA/cxgb4: Fix locking issue in process_mpa_request (bsc#909589).
  • RDMA/cxgb4: Handle NET_XMIT return codes (bsc#909589).
  • RDMA/cxgb4: Increase epd buff size for debug interface (bsc#909589).
  • RDMA/cxgb4: Limit MRs to less than 8GB for T4/T5 devices (bsc#909589).
  • RDMA/cxgb4: Serialize CQ event upcalls with CQ destruction (bsc#909589).
  • RDMA/cxgb4: Wake up waiters after flushing the qp (bsc#909589).
  • bridge: superfluous skb->nfct check in br_nf_dev_queue_xmit (bsc#982544).
  • iucv: call skb_linearize() when needed (bnc#979915, LTC#141240).
  • kabi: prevent spurious modversion changes after bsc#982544 fix (bsc#982544).
  • mm/swap.c: flush lru pvecs on compound page arrival (bnc#983721).
  • mm: Fix DIF failures on ext3 filesystems (bsc#971030).
  • net/qlge: Avoids recursive EEH error (bsc#954847).
  • netfilter: bridge: Use __in6_dev_get rather than in6_dev_get in br_validate_ipv6 (bsc#982544).
  • netfilter: bridge: do not leak skb in error paths (bsc#982544).
  • netfilter: bridge: forward IPv6 fragmented packets (bsc#982544).
  • qeth: delete napi struct when removing a qeth device (bnc#979915, LTC#143590).
  • s390/mm: fix asce_bits handling with dynamic pagetable levels (bnc#979915, LTC#141456).
  • s390/pci: fix use after free in dma_init (bnc#979915, LTC#141626).
  • s390: fix test_fp_ctl inline assembly contraints (bnc#979915, LTC#143138).
  • sched/cputime: Fix clock_nanosleep()/clock_gettime() inconsistency (bnc#988498).
  • sched/cputime: Fix cpu_timer_sample_group() double accounting (bnc#988498).
  • sched: Provide update_curr callbacks for stop/idle scheduling classes (bnc#988498).
  • x86/mm/pat, /dev/mem: Remove superfluous error message (bsc#974620).


 Comments   
Comment by Gerrit Updater [ 10/Aug/16 ]

Bob Glossman (bob.glossman@intel.com) uploaded a new patch: http://review.whamcloud.com/21866
Subject: LU-8495 kernel: kernel update [SLES11 SP4 3.0.101-80]
Project: fs/lustre-release
Branch: master
Current Patch Set: 1
Commit: 17cf4b827952c3e2dbb23e1f8d83ff78ef624b40

Comment by Gerrit Updater [ 22/Aug/16 ]

Oleg Drokin (oleg.drokin@intel.com) merged in patch http://review.whamcloud.com/21866/
Subject: LU-8495 kernel: kernel update [SLES11 SP4 3.0.101-80]
Project: fs/lustre-release
Branch: master
Current Patch Set:
Commit: a2a38a33b48af911dfe190e4a7dedf8fcfd196bd

Comment by Peter Jones [ 22/Aug/16 ]

Landed for 2.9

Generated at Sat Feb 10 02:18:03 UTC 2024 using Jira 9.4.14#940014-sha1:734e6822bbf0d45eff9af51f82432957f73aa32c.