Oval Definition:oval:org.mitre.oval:def:24485
Revision Date:2014-12-01Version:14
Title:RHSA-2014:0923: kernel security update (Important)
Description:The kernel packages contain the Linux kernel, the core of any Linuxoperating system.* It was found that the Linux kernel's ptrace subsystem allowed a tracedprocess' instruction pointer to be set to a non-canonical memory addresswithout forcing the non-sysret code path when returning to user space.A local, unprivileged user could use this flaw to crash the system or,potentially, escalate their privileges on the system. (CVE-2014-4699,Important)Note: The CVE-2014-4699 issue only affected systems using an Intel CPU.* A flaw was found in the way the pppol2tp_setsockopt() andpppol2tp_getsockopt() functions in the Linux kernel's PPP over L2TPimplementation handled requests with a non-SOL_PPPOL2TP socket optionlevel. A local, unprivileged user could use this flaw to escalate theirprivileges on the system. (CVE-2014-4943, Important)Red Hat would like to thank Andy Lutomirski for reporting CVE-2014-4699,and Sasha Levin for reporting CVE-2014-4943.All kernel users are advised to upgrade to these updated packages, whichcontain backported patches to correct these issues. The system must berebooted for this update to take effect.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CESA-2014:0923
CVE-2014-4699
CVE-2014-4943
RHSA-2014:0923-00
Platform(s):CentOS Linux 7
Red Hat Enterprise Linux 7
Product(s):kernel
Definition Synopsis
  • Red Hat Enterprise Linux 7 and CentOS Linux 7 release section
  • Operation system section
  • The operating system installed on the system is Red Hat Enterprise Linux 7
  • OR The operating system installed on the system is CentOS Linux 7.x
  • AND Packages match section
  • kernel is earlier than 0:3.10.0-123.4.4.el7
  • OR kernel-abi-whitelists is earlier than 0:3.10.0-123.4.4.el7
  • OR kernel-debug is earlier than 0:3.10.0-123.4.4.el7
  • OR kernel-debug-devel is earlier than 0:3.10.0-123.4.4.el7
  • OR kernel-devel is earlier than 0:3.10.0-123.4.4.el7
  • OR kernel-doc is earlier than 0:3.10.0-123.4.4.el7
  • OR kernel-headers is earlier than 0:3.10.0-123.4.4.el7
  • OR kernel-tools is earlier than 0:3.10.0-123.4.4.el7
  • OR kernel-tools-libs is earlier than 0:3.10.0-123.4.4.el7
  • OR kernel-tools-libs-devel is earlier than 0:3.10.0-123.4.4.el7
  • OR perf is earlier than 0:3.10.0-123.4.4.el7
  • OR python-perf is earlier than 0:3.10.0-123.4.4.el7
  • Red Hat Enterprise Linux 7 release section
  • The operating system installed on the system is Red Hat Enterprise Linux 7
  • AND Packages match section
  • kernel-debug-debuginfo is earlier than 0:3.10.0-123.4.4.el7
  • OR kernel-debuginfo is earlier than 0:3.10.0-123.4.4.el7
  • OR kernel-debuginfo-common-x86_64 is earlier than 0:3.10.0-123.4.4.el7
  • OR kernel-tools-debuginfo is earlier than 0:3.10.0-123.4.4.el7
  • OR perf-debuginfo is earlier than 0:3.10.0-123.4.4.el7
  • OR python-perf-debuginfo is earlier than 0:3.10.0-123.4.4.el7
  • BACK