[LU-9694] kernel update [SLES11 SP4 3.0.101-104] Created: 20/Jun/17  Updated: 17/Jul/17  Resolved: 17/Jul/17

Status: Resolved
Project: Lustre
Component/s: None
Affects Version/s: None
Fix Version/s: None

Type: Bug Priority: Minor
Reporter: Bob Glossman (Inactive) Assignee: Bob Glossman (Inactive)
Resolution: Won't Fix Votes: 0
Labels: None

Issue Links:
Related
is related to LU-9503 kernel update [SLES11 SP4 3.0.101-100] Resolved
is related to LU-9712 kernel update [SLES11 SP4 3.0.101-107] Resolved
Severity: 3
Rank (Obsolete): 9223372036854775807

 Description   

The SUSE Linux Enterprise 11 SP4 kernel was updated to receive various security and bugfixes.

The following security bugs were fixed:

  • CVE-2017-1000364: The default stack guard page was too small and could be
    "jumped over" by userland programs using more than one page of stack in
    functions and so lead to memory corruption. This update extends the stack
    guard page to 1 MB (for 4k pages) and 16 MB (for 64k pages) to reduce this
    attack vector. This is not a kernel bugfix, but a hardening measure against
    this kind of userland attack.(bsc#1039348)

The following non-security bugs were fixed:

  • fnic now returns 'DID_IMM_RETRY' if rport is not ready (bsc#1035920).
  • fnic is now using rport->dd_data to check if rport is online instead of rport_lookup (bsc#1035920).
  • The rport check location in fnic_queuecommand_lck was corrected (bsc#1035920).
  • xfs: remove patches that caused regression (bsc#1043234).
  • mm: enlarge stack guard gap (bnc#1039348, CVE-2017-1000364, bnc#1042921).
  • PCI: Allow access to VPD attributes with size 0 (bsc#1018074).


 Comments   
Comment by Gerrit Updater [ 21/Jun/17 ]

Bob Glossman (bob.glossman@intel.com) uploaded a new patch: https://review.whamcloud.com/27763
Subject: LU-9694 kernel: kernel update [SLES11 SP4 3.0.101-104]
Project: fs/lustre-release
Branch: master
Current Patch Set: 1
Commit: b4aaa99d2a997d62b963ebea6c47d140f0a348fa

Comment by Bob Glossman (Inactive) [ 17/Jul/17 ]

This ticket is obsolete, Replaced by LU-9712

Generated at Sat Feb 10 02:28:25 UTC 2024 using Jira 9.4.14#940014-sha1:734e6822bbf0d45eff9af51f82432957f73aa32c.