<!-- 
RSS generated by JIRA (9.4.14#940014-sha1:734e6822bbf0d45eff9af51f82432957f73aa32c) at Sat Feb 10 02:25:10 UTC 2024

It is possible to restrict the fields that are returned in this document by specifying the 'field' parameter in your request.
For example, to request only the issue key and summary append 'field=key&field=summary' to the URL of your request.
-->
<rss version="0.92" >
<channel>
    <title>Whamcloud Community JIRA</title>
    <link>https://jira.whamcloud.com</link>
    <description>This file is an XML representation of an issue</description>
    <language>en-us</language>    <build-info>
        <version>9.4.14</version>
        <build-number>940014</build-number>
        <build-date>05-12-2023</build-date>
    </build-info>


<item>
            <title>[LU-9323] kernel update [RHEL7.3 3.10.0-514.16.1.el7]</title>
                <link>https://jira.whamcloud.com/browse/LU-9323</link>
                <project id="10000" key="LU">Lustre</project>
                    <description>&lt;p&gt;Security Fix(es):&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;A race condition flaw was found in the N_HLDC Linux kernel driver when&lt;br/&gt;
accessing n_hdlc.tbuf list that can lead to double free. A local, unprivileged&lt;br/&gt;
user able to set the HDLC line discipline on the tty device could use this flaw&lt;br/&gt;
to increase their privileges on the system. (CVE-2017-2636, Important)&lt;/li&gt;
&lt;/ul&gt;


&lt;ul&gt;
	&lt;li&gt;A flaw was found in the Linux kernel key management subsystem in which a local&lt;br/&gt;
attacker could crash the kernel or corrupt the stack and additional memory&lt;br/&gt;
(denial of service) by supplying a specially crafted RSA key. This flaw panics&lt;br/&gt;
the machine during the verification of the RSA key. (CVE-2016-8650, Moderate)&lt;/li&gt;
&lt;/ul&gt;


&lt;ul&gt;
	&lt;li&gt;A flaw was found in the Linux kernel&apos;s implementation of setsockopt for the&lt;br/&gt;
SO_
{SND|RCV}BUFFORCE setsockopt() system call. Users with non-namespace&lt;br/&gt;
CAP_NET_ADMIN are able to trigger this call and create a situation in which the&lt;br/&gt;
sockets sendbuff data size could be negative. This could adversely affect memory&lt;br/&gt;
allocations and create situations where the system could crash or cause memory&lt;br/&gt;
corruption. (CVE-2016-9793, Moderate)&lt;br/&gt;
&lt;br/&gt;
* A flaw was found in the Linux kernel&apos;s handling of clearing SELinux attributes&lt;br/&gt;
on /proc/pid/attr files. An empty (null) write to this file can crash the system&lt;br/&gt;
by causing the system to attempt to access unmapped kernel memory.&lt;br/&gt;
(CVE-2017-2618, Moderate)&lt;br/&gt;
&lt;br/&gt;
Bugs fixed (&lt;a href=&quot;https://bugzilla.redhat.com/):&quot; class=&quot;external-link&quot; target=&quot;_blank&quot; rel=&quot;nofollow noopener&quot;&gt;https://bugzilla.redhat.com/):&lt;/a&gt;&lt;br/&gt;
&lt;br/&gt;
1395187 - CVE-2016-8650 kernel: Null pointer dereference via keyctl&lt;br/&gt;
1402013 - CVE-2016-9793 kernel: Signed overflow for SO_{SND|RCV}
&lt;p&gt;BUFFORCE&lt;br/&gt;
1419916 - CVE-2017-2618 kernel: Off-by-one error in selinux_setprocattr (/proc/self/attr/fscreate)&lt;br/&gt;
1428319 - CVE-2017-2636 kernel: Race condition access to n_hdlc.tbuf causes double free in n_hdlc_release()&lt;/p&gt;&lt;/li&gt;
&lt;/ul&gt;
</description>
                <environment></environment>
        <key id="45437">LU-9323</key>
            <summary>kernel update [RHEL7.3 3.10.0-514.16.1.el7]</summary>
                <type id="1" iconUrl="https://jira.whamcloud.com/secure/viewavatar?size=xsmall&amp;avatarId=11303&amp;avatarType=issuetype">Bug</type>
                                            <priority id="4" iconUrl="https://jira.whamcloud.com/images/icons/priorities/minor.svg">Minor</priority>
                        <status id="5" iconUrl="https://jira.whamcloud.com/images/icons/statuses/resolved.png" description="A resolution has been taken, and it is awaiting verification by reporter. From here issues are either reopened, or are closed.">Resolved</status>
                    <statusCategory id="3" key="done" colorName="success"/>
                                    <resolution id="1">Fixed</resolution>
                                        <assignee username="bogl">Bob Glossman</assignee>
                                    <reporter username="bogl">Bob Glossman</reporter>
                        <labels>
                    </labels>
                <created>Wed, 12 Apr 2017 14:26:51 +0000</created>
                <updated>Thu, 25 May 2017 14:43:09 +0000</updated>
                            <resolved>Wed, 26 Apr 2017 11:17:57 +0000</resolved>
                                                    <fixVersion>Lustre 2.10.0</fixVersion>
                                        <due></due>
                            <votes>0</votes>
                                    <watches>2</watches>
                                                                            <comments>
                            <comment id="191855" author="gerrit" created="Thu, 13 Apr 2017 14:28:52 +0000"  >&lt;p&gt;Bob Glossman (bob.glossman@intel.com) uploaded a new patch: &lt;a href=&quot;https://review.whamcloud.com/26590&quot; class=&quot;external-link&quot; target=&quot;_blank&quot; rel=&quot;nofollow noopener&quot;&gt;https://review.whamcloud.com/26590&lt;/a&gt;&lt;br/&gt;
Subject: &lt;a href=&quot;https://jira.whamcloud.com/browse/LU-9323&quot; title=&quot;kernel update [RHEL7.3 3.10.0-514.16.1.el7]&quot; class=&quot;issue-link&quot; data-issue-key=&quot;LU-9323&quot;&gt;&lt;del&gt;LU-9323&lt;/del&gt;&lt;/a&gt; kernel: kernel update RHEL7.3 &lt;span class=&quot;error&quot;&gt;&amp;#91;3.10.0-514.16.1.el7&amp;#93;&lt;/span&gt;&lt;br/&gt;
Project: fs/lustre-release&lt;br/&gt;
Branch: master&lt;br/&gt;
Current Patch Set: 1&lt;br/&gt;
Commit: 08a515e63eb19f9006c7cb399d4185dab34c94e8&lt;/p&gt;</comment>
                            <comment id="193522" author="gerrit" created="Wed, 26 Apr 2017 03:40:12 +0000"  >&lt;p&gt;Oleg Drokin (oleg.drokin@intel.com) merged in patch &lt;a href=&quot;https://review.whamcloud.com/26590/&quot; class=&quot;external-link&quot; target=&quot;_blank&quot; rel=&quot;nofollow noopener&quot;&gt;https://review.whamcloud.com/26590/&lt;/a&gt;&lt;br/&gt;
Subject: &lt;a href=&quot;https://jira.whamcloud.com/browse/LU-9323&quot; title=&quot;kernel update [RHEL7.3 3.10.0-514.16.1.el7]&quot; class=&quot;issue-link&quot; data-issue-key=&quot;LU-9323&quot;&gt;&lt;del&gt;LU-9323&lt;/del&gt;&lt;/a&gt; kernel: kernel update RHEL7.3 &lt;span class=&quot;error&quot;&gt;&amp;#91;3.10.0-514.16.1.el7&amp;#93;&lt;/span&gt;&lt;br/&gt;
Project: fs/lustre-release&lt;br/&gt;
Branch: master&lt;br/&gt;
Current Patch Set: &lt;br/&gt;
Commit: 997b8df1b7ead3ec1df4b36fb82f14fe6464185f&lt;/p&gt;</comment>
                            <comment id="193563" author="pjones" created="Wed, 26 Apr 2017 11:17:57 +0000"  >&lt;p&gt;Landed for 2.10&lt;/p&gt;</comment>
                    </comments>
                <issuelinks>
                            <issuelinktype id="10011">
                    <name>Related</name>
                                            <outwardlinks description="is related to ">
                                        <issuelink>
            <issuekey id="44255">LU-9174</issuekey>
        </issuelink>
                            </outwardlinks>
                                                                <inwardlinks description="is related to">
                                        <issuelink>
            <issuekey id="46305">LU-9561</issuekey>
        </issuelink>
                            </inwardlinks>
                                    </issuelinktype>
                    </issuelinks>
                <attachments>
                    </attachments>
                <subtasks>
                    </subtasks>
                <customfields>
                                                                                                                                                                                            <customfield id="customfield_10890" key="com.atlassian.jira.plugins.jira-development-integration-plugin:devsummary">
                        <customfieldname>Development</customfieldname>
                        <customfieldvalues>
                            
                        </customfieldvalues>
                    </customfield>
                                                                                                                                                                                                                                                                                                                                                        <customfield id="customfield_10390" key="com.pyxis.greenhopper.jira:gh-lexo-rank">
                        <customfieldname>Rank</customfieldname>
                        <customfieldvalues>
                            <customfieldvalue>1|hzz9wn:</customfieldvalue>

                        </customfieldvalues>
                    </customfield>
                                                                <customfield id="customfield_10090" key="com.pyxis.greenhopper.jira:gh-global-rank">
                        <customfieldname>Rank (Obsolete)</customfieldname>
                        <customfieldvalues>
                            <customfieldvalue>9223372036854775807</customfieldvalue>
                        </customfieldvalues>
                    </customfield>
                                                                                            <customfield id="customfield_10060" key="com.atlassian.jira.plugin.system.customfieldtypes:select">
                        <customfieldname>Severity</customfieldname>
                        <customfieldvalues>
                                <customfieldvalue key="10022"><![CDATA[3]]></customfieldvalue>

                        </customfieldvalues>
                    </customfield>
                                                                                                                                                                                                                                                                                                                                                        </customfields>
    </item>
</channel>
</rss>