Oracle Linux 6149 Published by

The following updates has been released for Oracle Linux:

ELBA-2017-3643 Oracle Linux 6 Unbreakable Enterprise kernel bug fix update
ELBA-2017-3643 Oracle Linux 7 Unbreakable Enterprise kernel bug fix update
ELSA-2017-3247 Critical: Oracle Linux 6 firefox security update
ELSA-2017-3247 Critical: Oracle Linux 7 firefox security update
New Ksplice updates for UEKR4 4.1.12 on OL6 and OL7 (ELBA-2017-3643)



ELBA-2017-3643 Oracle Linux 6 Unbreakable Enterprise kernel bug fix update

Oracle Linux Bug Fix Advisory ELBA-2017-3643

http://linux.oracle.com/errata/ELBA-2017-3643.html

The following updated rpms for Oracle Linux 6 have been uploaded to the
Unbreakable Linux Network:

x86_64:
kernel-uek-4.1.12-103.9.6.el6uek.x86_64.rpm
kernel-uek-doc-4.1.12-103.9.6.el6uek.noarch.rpm
kernel-uek-firmware-4.1.12-103.9.6.el6uek.noarch.rpm
kernel-uek-devel-4.1.12-103.9.6.el6uek.x86_64.rpm
kernel-uek-debug-4.1.12-103.9.6.el6uek.x86_64.rpm
kernel-uek-debug-devel-4.1.12-103.9.6.el6uek.x86_64.rpm


SRPMS:
http://oss.oracle.com/ol6/SRPMS-updates/kernel-uek-4.1.12-103.9.6.el6uek.src.rpm



Description of changes:

[4.1.12-103.9.6.el6uek]
- scsi: Don't abort scsi_scan due to unexpected response (John Sobecki)
[Orabug: 27119628]
- ocfs2: code clean up for direct io (Ryan Ding)

[4.1.12-103.9.5.el6uek]
- xscore: add dma address check (Zhu Yanjun) [Orabug: 27076919]
- KVM: nVMX: Fix loss of L2's NMI blocking state (Wanpeng Li) [Orabug:
27062498]
- KVM: nVMX: track NMI blocking state separately for each VMCS (Paolo
Bonzini) [Orabug: 27062498]
- KVM: VMX: require virtual NMI support (Paolo Bonzini) [Orabug: 27062498]
- KVM: nVMX: Fix the NMI IDT-vectoring handling (Wanpeng Li) [Orabug:
27062498]
- uek-rpm: disable CONFIG_NUMA_BALANCING_DEFAULT_ENABLED (Fred Herard)
[Orabug: 26798697]

ELBA-2017-3643 Oracle Linux 7 Unbreakable Enterprise kernel bug fix update

Oracle Linux Bug Fix Advisory ELBA-2017-3643

http://linux.oracle.com/errata/ELBA-2017-3643.html

The following updated rpms for Oracle Linux 7 have been uploaded to the
Unbreakable Linux Network:

x86_64:
kernel-uek-doc-4.1.12-103.9.6.el7uek.noarch.rpm
kernel-uek-firmware-4.1.12-103.9.6.el7uek.noarch.rpm
kernel-uek-4.1.12-103.9.6.el7uek.x86_64.rpm
kernel-uek-devel-4.1.12-103.9.6.el7uek.x86_64.rpm
kernel-uek-debug-4.1.12-103.9.6.el7uek.x86_64.rpm
kernel-uek-debug-devel-4.1.12-103.9.6.el7uek.x86_64.rpm


SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates/kernel-uek-4.1.12-103.9.6.el7uek.src.rpm



Description of changes:

[4.1.12-103.9.6.el7uek]
- scsi: Don't abort scsi_scan due to unexpected response (John Sobecki)
[Orabug: 27119628]
- ocfs2: code clean up for direct io (Ryan Ding)

[4.1.12-103.9.5.el7uek]
- xscore: add dma address check (Zhu Yanjun) [Orabug: 27076919]
- KVM: nVMX: Fix loss of L2's NMI blocking state (Wanpeng Li) [Orabug:
27062498]
- KVM: nVMX: track NMI blocking state separately for each VMCS (Paolo
Bonzini) [Orabug: 27062498]
- KVM: VMX: require virtual NMI support (Paolo Bonzini) [Orabug: 27062498]
- KVM: nVMX: Fix the NMI IDT-vectoring handling (Wanpeng Li) [Orabug:
27062498]
- uek-rpm: disable CONFIG_NUMA_BALANCING_DEFAULT_ENABLED (Fred Herard)
[Orabug: 26798697]

ELSA-2017-3247 Critical: Oracle Linux 6 firefox security update

Oracle Linux Security Advisory ELSA-2017-3247

http://linux.oracle.com/errata/ELSA-2017-3247.html

The following updated rpms for Oracle Linux 6 have been uploaded to the
Unbreakable Linux Network:

i386:
firefox-52.5.0-1.0.1.el6_9.i686.rpm

x86_64:
firefox-52.5.0-1.0.1.el6_9.i686.rpm
firefox-52.5.0-1.0.1.el6_9.x86_64.rpm


SRPMS:
http://oss.oracle.com/ol6/SRPMS-updates/firefox-52.5.0-1.0.1.el6_9.src.rpm



Description of changes:

[52.5.0-1.0.1]
- Add firefox-oracle-default-prefs.js and remove the corresponding Red
Hat one
- Force requirement of newer gdk-pixbuf2 to ensure a proper update (Todd
Vierling) [orabug 19847484]

[52.5.0-1]
- Update to 52.5.0 ESR

ELSA-2017-3247 Critical: Oracle Linux 7 firefox security update

Oracle Linux Security Advisory ELSA-2017-3247

http://linux.oracle.com/errata/ELSA-2017-3247.html

The following updated rpms for Oracle Linux 7 have been uploaded to the
Unbreakable Linux Network:

x86_64:
firefox-52.5.0-1.0.1.el7_4.i686.rpm
firefox-52.5.0-1.0.1.el7_4.x86_64.rpm


SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates/firefox-52.5.0-1.0.1.el7_4.src.rpm



Description of changes:

[52.5.0-1.0.1]
- Add firefox-oracle-default-prefs.js and remove the corresponding Red
Hat file

[52.5.0-1]
- Update to 52.5.0 ESR


New Ksplice updates for UEKR4 4.1.12 on OL6 and OL7 (ELBA-2017-3643)

Synopsis: ELBA-2017-3643 can now be patched using Ksplice

Users with Oracle Linux Premier Support can now use Ksplice to patch
against the latest Oracle Linux Bug Fix Advisory, ELBA-2017-3643.

INSTALLING THE UPDATES

We recommend that all users of Ksplice Uptrack running UEKR4 4.1.12 on
OL6 and OL7 install these updates.

On systems that have "autoinstall = yes" in /etc/uptrack/uptrack.conf,
these updates will be installed automatically and you do not need to
take any action.

Alternatively, you can install these updates by running:

# /usr/sbin/uptrack-upgrade -y


DESCRIPTION

* Invalid memory access when unmapping DMA address in Xsigo fabric driver.

A missing check when unmapping DMA address in Xsigo fabric driver could
lead to an invalid memory access. A local attacker could use this flaw
to cause a denial-of-service.

Orabug: 27074085


* Unexpected stop of SCSI scan while discovering LUNs.

A logic error when discovering SCSI LUNs could early abort scanning if
one of the LUN doesn't respond.

Orabug: 27119628

SUPPORT

Ksplice support is available at ksplice-support_ww@oracle.com.