<!-- 
RSS generated by JIRA (9.4.14#940014-sha1:734e6822bbf0d45eff9af51f82432957f73aa32c) at Sat Feb 10 01:57:53 UTC 2024

It is possible to restrict the fields that are returned in this document by specifying the 'field' parameter in your request.
For example, to request only the issue key and summary append 'field=key&field=summary' to the URL of your request.
-->
<rss version="0.92" >
<channel>
    <title>Whamcloud Community JIRA</title>
    <link>https://jira.whamcloud.com</link>
    <description>This file is an XML representation of an issue</description>
    <language>en-us</language>    <build-info>
        <version>9.4.14</version>
        <build-number>940014</build-number>
        <build-date>05-12-2023</build-date>
    </build-info>


<item>
            <title>[LU-6171] Kernel update [RHEL7 3.10.0-123.20.1.el7]</title>
                <link>https://jira.whamcloud.com/browse/LU-6171</link>
                <project id="10000" key="LU">Lustre</project>
                    <description>&lt;ul&gt;
	&lt;li&gt;A flaw was found in the way the Linux kernel&apos;s SCTP implementation&lt;br/&gt;
validated INIT chunks when performing Address Configuration Change&lt;br/&gt;
(ASCONF). A remote attacker could use this flaw to crash the system by&lt;br/&gt;
sending a specially crafted SCTP packet to trigger a NULL pointer&lt;br/&gt;
dereference on the system. (CVE-2014-7841, Important)&lt;/li&gt;
&lt;/ul&gt;


&lt;ul&gt;
	&lt;li&gt;A race condition flaw was found in the way the Linux kernel&apos;s mmap(2),&lt;br/&gt;
madvise(2), and fallocate(2) system calls interacted with each other while&lt;br/&gt;
operating on virtual memory file system files. A local user could use this&lt;br/&gt;
flaw to cause a denial of service. (CVE-2014-4171, Moderate)&lt;/li&gt;
&lt;/ul&gt;


&lt;ul&gt;
	&lt;li&gt;A NULL pointer dereference flaw was found in the way the Linux kernel&apos;s&lt;br/&gt;
Common Internet File System (CIFS) implementation handled mounting of file&lt;br/&gt;
system shares. A remote attacker could use this flaw to crash a client&lt;br/&gt;
system that would mount a file system share from a malicious server.&lt;br/&gt;
(CVE-2014-7145, Moderate)&lt;/li&gt;
&lt;/ul&gt;


&lt;ul&gt;
	&lt;li&gt;A flaw was found in the way the Linux kernel&apos;s splice() system call&lt;br/&gt;
validated its parameters. On certain file systems, a local, unprivileged&lt;br/&gt;
user could use this flaw to write past the maximum file size, and thus&lt;br/&gt;
crash the system. (CVE-2014-7822, Moderate)&lt;/li&gt;
&lt;/ul&gt;


&lt;ul&gt;
	&lt;li&gt;It was found that the parse_rock_ridge_inode_internal() function of the&lt;br/&gt;
Linux kernel&apos;s ISOFS implementation did not correctly check relocated&lt;br/&gt;
directories when processing Rock Ridge child link (CL) tags. An attacker&lt;br/&gt;
with physical access to the system could use a specially crafted ISO image&lt;br/&gt;
to crash the system or, potentially, escalate their privileges on the&lt;br/&gt;
system. (CVE-2014-5471, CVE-2014-5472, Low)&lt;/li&gt;
&lt;/ul&gt;


&lt;p&gt;This update also fixes the following bugs:&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;Previously, a kernel panic could occur if a process reading from a locked&lt;br/&gt;
NFS file was killed and the lock was not released properly before the read&lt;br/&gt;
operations finished. Consequently, the system crashed. The code handling&lt;br/&gt;
file locks has been fixed, and instead of halting, the system now emits a&lt;br/&gt;
warning about the unreleased lock. (BZ#1172266)&lt;/li&gt;
&lt;/ul&gt;


&lt;ul&gt;
	&lt;li&gt;A race condition in the command abort handling logic of the ipr device&lt;br/&gt;
driver could cause the kernel to panic when the driver received a response&lt;br/&gt;
to an abort command prior to receiving other responses to the aborted&lt;br/&gt;
command due to the support for multiple interrupts. With this update, the&lt;br/&gt;
abort handler waits for the aborted command&apos;s responses first before&lt;br/&gt;
completing an abort operation. (BZ#1162734)&lt;/li&gt;
&lt;/ul&gt;


&lt;ul&gt;
	&lt;li&gt;Previously, a race condition could occur when changing a Page Table Entry&lt;br/&gt;
(PTE) or a Page Middle Directory (PMD) to &quot;pte_numa&quot; or &quot;pmd_numa&quot;,&lt;br/&gt;
respectively, causing the kernel to crash. This update removes the BUG_ON()&lt;br/&gt;
macro from the __handle_mm_fault() function, preventing the kernel panic in&lt;br/&gt;
the aforementioned scenario. (BZ#1170662)&lt;/li&gt;
&lt;/ul&gt;


&lt;p&gt;Bugs fixed (&lt;a href=&quot;https://bugzilla.redhat.com/):&quot; class=&quot;external-link&quot; target=&quot;_blank&quot; rel=&quot;nofollow noopener&quot;&gt;https://bugzilla.redhat.com/):&lt;/a&gt;&lt;/p&gt;

&lt;p&gt;1111180 - CVE-2014-4171 Kernel: mm/shmem: denial of service&lt;br/&gt;
1134099 - CVE-2014-5471 CVE-2014-5472 kernel: isofs: unbound recursion when processing relocated directories&lt;br/&gt;
1147522 - CVE-2014-7145 Kernel: cifs: NULL pointer dereference in SMB2_tcon&lt;br/&gt;
1163087 - CVE-2014-7841 kernel: net: sctp: NULL pointer dereference in af-&amp;gt;from_addr_param on malformed packet&lt;br/&gt;
1163792 - CVE-2014-7822 kernel: splice: lack of generic write checks&lt;/p&gt;</description>
                <environment></environment>
        <key id="28435">LU-6171</key>
            <summary>Kernel update [RHEL7 3.10.0-123.20.1.el7]</summary>
                <type id="1" iconUrl="https://jira.whamcloud.com/secure/viewavatar?size=xsmall&amp;avatarId=11303&amp;avatarType=issuetype">Bug</type>
                                            <priority id="2" iconUrl="https://jira.whamcloud.com/images/icons/priorities/critical.svg">Critical</priority>
                        <status id="5" iconUrl="https://jira.whamcloud.com/images/icons/statuses/resolved.png" description="A resolution has been taken, and it is awaiting verification by reporter. From here issues are either reopened, or are closed.">Resolved</status>
                    <statusCategory id="3" key="done" colorName="success"/>
                                    <resolution id="1">Fixed</resolution>
                                        <assignee username="bogl">Bob Glossman</assignee>
                                    <reporter username="bogl">Bob Glossman</reporter>
                        <labels>
                            <label>HB</label>
                    </labels>
                <created>Wed, 28 Jan 2015 20:08:02 +0000</created>
                <updated>Mon, 2 Feb 2015 18:50:25 +0000</updated>
                            <resolved>Mon, 2 Feb 2015 18:50:25 +0000</resolved>
                                                    <fixVersion>Lustre 2.7.0</fixVersion>
                                        <due></due>
                            <votes>0</votes>
                                    <watches>3</watches>
                                                                            <comments>
                            <comment id="105201" author="gerrit" created="Fri, 30 Jan 2015 15:49:03 +0000"  >&lt;p&gt;Bob Glossman (bob.glossman@intel.com) uploaded a new patch: &lt;a href=&quot;http://review.whamcloud.com/13570&quot; class=&quot;external-link&quot; target=&quot;_blank&quot; rel=&quot;nofollow noopener&quot;&gt;http://review.whamcloud.com/13570&lt;/a&gt;&lt;br/&gt;
Subject: &lt;a href=&quot;https://jira.whamcloud.com/browse/LU-6171&quot; title=&quot;Kernel update [RHEL7 3.10.0-123.20.1.el7]&quot; class=&quot;issue-link&quot; data-issue-key=&quot;LU-6171&quot;&gt;&lt;del&gt;LU-6171&lt;/del&gt;&lt;/a&gt; kernel: kernel update &lt;span class=&quot;error&quot;&gt;&amp;#91;RHEL7 3.10.0-123.20.1.el7&amp;#93;&lt;/span&gt;&lt;br/&gt;
Project: fs/lustre-release&lt;br/&gt;
Branch: master&lt;br/&gt;
Current Patch Set: 1&lt;br/&gt;
Commit: 4fcbee3a776a3a4dc29ae841cdc8bce4b5739e76&lt;/p&gt;</comment>
                            <comment id="105393" author="gerrit" created="Mon, 2 Feb 2015 18:36:14 +0000"  >&lt;p&gt;Oleg Drokin (oleg.drokin@intel.com) merged in patch &lt;a href=&quot;http://review.whamcloud.com/13570/&quot; class=&quot;external-link&quot; target=&quot;_blank&quot; rel=&quot;nofollow noopener&quot;&gt;http://review.whamcloud.com/13570/&lt;/a&gt;&lt;br/&gt;
Subject: &lt;a href=&quot;https://jira.whamcloud.com/browse/LU-6171&quot; title=&quot;Kernel update [RHEL7 3.10.0-123.20.1.el7]&quot; class=&quot;issue-link&quot; data-issue-key=&quot;LU-6171&quot;&gt;&lt;del&gt;LU-6171&lt;/del&gt;&lt;/a&gt; kernel: kernel update &lt;span class=&quot;error&quot;&gt;&amp;#91;RHEL7 3.10.0-123.20.1.el7&amp;#93;&lt;/span&gt;&lt;br/&gt;
Project: fs/lustre-release&lt;br/&gt;
Branch: master&lt;br/&gt;
Current Patch Set: &lt;br/&gt;
Commit: 2b8972b7e4c2f3add4873d28eacc147f4e52e4f2&lt;/p&gt;</comment>
                            <comment id="105399" author="jlevi" created="Mon, 2 Feb 2015 18:50:25 +0000"  >&lt;p&gt;Patch landed to Master.&lt;/p&gt;</comment>
                    </comments>
                    <attachments>
                    </attachments>
                <subtasks>
                    </subtasks>
                <customfields>
                                                                                                                                                                                            <customfield id="customfield_10890" key="com.atlassian.jira.plugins.jira-development-integration-plugin:devsummary">
                        <customfieldname>Development</customfieldname>
                        <customfieldvalues>
                            
                        </customfieldvalues>
                    </customfield>
                                                                                                                                                                                                                                                                                                                                                        <customfield id="customfield_10390" key="com.pyxis.greenhopper.jira:gh-lexo-rank">
                        <customfieldname>Rank</customfieldname>
                        <customfieldvalues>
                            <customfieldvalue>1|hzx53z:</customfieldvalue>

                        </customfieldvalues>
                    </customfield>
                                                                <customfield id="customfield_10090" key="com.pyxis.greenhopper.jira:gh-global-rank">
                        <customfieldname>Rank (Obsolete)</customfieldname>
                        <customfieldvalues>
                            <customfieldvalue>17267</customfieldvalue>
                        </customfieldvalues>
                    </customfield>
                                                                                            <customfield id="customfield_10060" key="com.atlassian.jira.plugin.system.customfieldtypes:select">
                        <customfieldname>Severity</customfieldname>
                        <customfieldvalues>
                                <customfieldvalue key="10022"><![CDATA[3]]></customfieldvalue>

                        </customfieldvalues>
                    </customfield>
                                                                                                                                                                                                                                                                                                                                                        </customfields>
    </item>
</channel>
</rss>