[LU-9174] kernel update [RHEL7.3 3.10.0-514.10.2.el7] Created: 02/Mar/17  Updated: 12/Apr/17  Resolved: 14/Mar/17

Status: Resolved
Project: Lustre
Component/s: None
Affects Version/s: None
Fix Version/s: Lustre 2.10.0

Type: Bug Priority: Minor
Reporter: Bob Glossman (Inactive) Assignee: Bob Glossman (Inactive)
Resolution: Fixed Votes: 0
Labels: None

Issue Links:
Related
is related to LU-9143 kernel update [RHEL7.3 3.10.0-514.6.2... Resolved
is related to LU-9323 kernel update [RHEL7.3 3.10.0-514.16.... Resolved
Severity: 3
Rank (Obsolete): 9223372036854775807

 Description   

Security Fix(es):

  • Linux kernel built with the Kernel-based Virtual Machine (CONFIG_KVM) support
    is vulnerable to a null pointer dereference flaw. It could occur on x86
    platform, when emulating an undefined instruction. An attacker could use this
    flaw to crash the host kernel resulting in DoS. (CVE-2016-8630, Important)
  • A race condition issue leading to a use-after-free flaw was found in the way
    the raw packet sockets implementation in the Linux kernel networking subsystem
    handled synchronization while creating the TPACKET_V3 ring buffer. A local user
    able to open a raw packet socket (requires the CAP_NET_RAW capability) could use
    this flaw to elevate their privileges on the system. (CVE-2016-8655, Important)
  • A flaw was discovered in the Linux kernel's implementation of VFIO. An
    attacker issuing an ioctl can create a situation where memory is corrupted and
    modify memory outside of the expected area. This may overwrite kernel memory and
    subvert kernel execution. (CVE-2016-9083, Important)
  • The use of a kzalloc with an integer multiplication allowed an integer
    overflow condition to be reached in vfio_pci_intrs.c. This combined with
    CVE-2016-9083 may allow an attacker to craft an attack and use unallocated
    memory, potentially crashing the machine. (CVE-2016-9084, Moderate)

To see the complete list of bug fixes and enhancements, refer to
the following KnowledgeBase article: https://access.redhat.com/articles/2940041.

Bugs fixed (https://bugzilla.redhat.com/):

1389258 - CVE-2016-9083 kernel: State machine confusion bug in vfio driver leading to memory corruption
1389259 - CVE-2016-9084 kernel: Integer overflow when using kzalloc in vfio driver
1393350 - CVE-2016-8630 kernel: kvm: x86: NULL pointer dereference during instruction decode
1400019 - CVE-2016-8655 kernel: Race condition in packet_set_ring leads to use after free



 Comments   
Comment by Gerrit Updater [ 03/Mar/17 ]

Bob Glossman (bob.glossman@intel.com) uploaded a new patch: https://review.whamcloud.com/25747
Subject: LU-9174 kernel: kernel update RHEL7.3 [3.10.0-514.10.2.el7]
Project: fs/lustre-release
Branch: master
Current Patch Set: 1
Commit: 7520fc56aba86e183ff8e107b7f9155773d2503e

Comment by Gerrit Updater [ 14/Mar/17 ]

Oleg Drokin (oleg.drokin@intel.com) merged in patch https://review.whamcloud.com/25747/
Subject: LU-9174 kernel: kernel update RHEL7.3 [3.10.0-514.10.2.el7]
Project: fs/lustre-release
Branch: master
Current Patch Set:
Commit: f8ac16100986b32cbae7b13baf69a30ac598ae7e

Comment by Peter Jones [ 14/Mar/17 ]

Landed for 2.10

Generated at Sat Feb 10 02:23:53 UTC 2024 using Jira 9.4.14#940014-sha1:734e6822bbf0d45eff9af51f82432957f73aa32c.