kernel-2.6.32-754.25.1.el6
エラータID: AXSA:2019-4425:06
リリース日:
2019/12/27 Friday - 18:13
題名:
kernel-2.6.32-754.25.1.el6
影響のあるチャネル:
Asianux Server 4 for x86_64
Asianux Server 4 for x86
Severity:
High
Description:
以下項目について対処しました。
[Security Fix]
- KVM ハイパーバイザーの Coalesced MMIO への書き込み操作の実装には、境
界外アクセス可能な問題があるため、/dev/kvm デバイスにアクセスできる一
般ユーザ、またはプロセスはこれを利用することにより、サービス拒否 (ホス
トカーネルのクラッシュ) 状態や権限昇格を可能とする脆弱性が存在します。
(CVE-2019-14821)
一部CVEの翻訳文はJVNからの引用になります。
http://jvndb.jvn.jp/
解決策:
パッケージをアップデートしてください。
CVE:
CVE-2019-14821
An out-of-bounds access issue was found in the Linux kernel, all versions through 5.3, in the way Linux kernel's KVM hypervisor implements the Coalesced MMIO write operation. It operates on an MMIO ring buffer 'struct kvm_coalesced_mmio' object, wherein write indices 'ring->first' and 'ring->last' value could be supplied by a host user-space process. An unprivileged host user or process with access to '/dev/kvm' device could use this flaw to crash the host kernel, resulting in a denial of service or potentially escalating privileges on the system.
An out-of-bounds access issue was found in the Linux kernel, all versions through 5.3, in the way Linux kernel's KVM hypervisor implements the Coalesced MMIO write operation. It operates on an MMIO ring buffer 'struct kvm_coalesced_mmio' object, wherein write indices 'ring->first' and 'ring->last' value could be supplied by a host user-space process. An unprivileged host user or process with access to '/dev/kvm' device could use this flaw to crash the host kernel, resulting in a denial of service or potentially escalating privileges on the system.
追加情報:
N/A
ダウンロード:
SRPMS
- kernel-2.6.32-754.25.1.el6.src.rpm
MD5: 6d6657ecb2a2144f6db969690b7e0ec1
SHA-256: ce3c65c1e56b5c713619e16fb8efe23ac6bf1b8d1caa8fc42a46013136d85112
Size: 128.89 MB
Asianux Server 4 for x86
- kernel-abi-whitelists-2.6.32-754.25.1.el6.noarch.rpm
MD5: 2fef5fd4ac68e2439b4fb3205cf9d36e
SHA-256: 7546553fe8c2c2bded1cb359e2e7b2c8eb1f93dae8556c5f74c35acebbbe0f8d
Size: 3.84 MB - kernel-doc-2.6.32-754.25.1.el6.noarch.rpm
MD5: c0b14a0a60839ca45b89624c2f04b1bd
SHA-256: c60b529be1299ff2d8654936dc76558f81bef8b4fb0db59d9d8bf30c9786fd72
Size: 12.44 MB - kernel-firmware-2.6.32-754.25.1.el6.noarch.rpm
MD5: f5aa4ffd734fd4dfd84d4792627bad69
SHA-256: 299fa106d816ebe0cf165c2e758d74c127b0c1cb589dd0347aa9418c3bf082e3
Size: 28.91 MB - kernel-2.6.32-754.25.1.el6.i686.rpm
MD5: 30fbd7f368d3e089ff817487c44e6bf4
SHA-256: 2cb1f21e28ffdc6a39d7a885793319a471b0332898b43827ddb7df2541906fa2
Size: 30.10 MB - kernel-debug-2.6.32-754.25.1.el6.i686.rpm
MD5: 4da8bdfb118e63fdc2e732964b5bf5cb
SHA-256: c66921045384d0de6b4920570fb3c3e4d55211fbd07075849e6a19dacb67f20e
Size: 30.89 MB - kernel-debug-devel-2.6.32-754.25.1.el6.i686.rpm
MD5: cd852a48ea7725ff0312bf7ae442f45e
SHA-256: f8b338b8fdd35388ecb68ee66da6c06a7631a75963bf4842cd41890f15d6f303
Size: 10.83 MB - kernel-devel-2.6.32-754.25.1.el6.i686.rpm
MD5: ea4d601c0b969265a2873f3d516b31e8
SHA-256: 5798fae368f40a549848246359ebe0d1c6eab4d2744c52247d8319b79a3c8e82
Size: 10.79 MB - kernel-headers-2.6.32-754.25.1.el6.i686.rpm
MD5: b87938d43e3f969dff4439fa2205b808
SHA-256: 2a9ee90786099c77c4cafa4b68e252946dd2fe766b3b5da9becac3603d11f330
Size: 4.56 MB - perf-2.6.32-754.25.1.el6.i686.rpm
MD5: 3a1dcc5f0cd88587f6a1bba284fc6315
SHA-256: 02c01185f4e2145504caac3b9286dd317deb6b7b4b9a2821c5b0d307d5a855f8
Size: 4.79 MB
Asianux Server 4 for x86_64
- kernel-2.6.32-754.25.1.el6.x86_64.rpm
MD5: d1ada94fd6221074b5b3842119b086fc
SHA-256: cd2065beecb4a60c3d23c17f7c453b618b9a34a9d4bb87afd555231da0f7862e
Size: 32.40 MB - kernel-abi-whitelists-2.6.32-754.25.1.el6.noarch.rpm
MD5: 2f4f26207935406890b6b3ae6629fc0a
SHA-256: 1927b84024ef3d5471d6fb9fd82d7729e4e75f4619c38e63312d3692f7fe6b88
Size: 3.84 MB - kernel-debug-2.6.32-754.25.1.el6.x86_64.rpm
MD5: 5f63a92fc6e2e04d426c43e972102843
SHA-256: a8a3d84b8f9f314b7ec7b1fe10dfec04e736418717a3950f1782ffbfe1cc3266
Size: 33.28 MB - kernel-debug-devel-2.6.32-754.25.1.el6.x86_64.rpm
MD5: 87a11aeac472a93316274ab52a0c5658
SHA-256: c2ffed6b97dad0874300689472b126a38b73e1a2ddc2fb8b3618d4d0c2f57fc7
Size: 10.88 MB - kernel-devel-2.6.32-754.25.1.el6.x86_64.rpm
MD5: 4ed943e996a33ea22c9c2b5c1b90629a
SHA-256: c9fe5bcfece3ab3f8dd6cbe8093c0b500fb1e104c0955d29a9642e047d0c0d43
Size: 10.84 MB - kernel-doc-2.6.32-754.25.1.el6.noarch.rpm
MD5: 29a4f69c9cb81917950deb30ba465e9b
SHA-256: 145b71710e3d6b70040a12d29dc43798d67955a6f5c4b274ad4fb7a5a733ea37
Size: 12.44 MB - kernel-firmware-2.6.32-754.25.1.el6.noarch.rpm
MD5: fc2bd902fcb0a78d0a4dd560e35ab0b4
SHA-256: 4eac06ddac3325c54cd21aabe55670c25699227784e90d4e8f42042eda037382
Size: 28.91 MB - kernel-headers-2.6.32-754.25.1.el6.x86_64.rpm
MD5: 17757fb3686c493eedd9e529ad4515a6
SHA-256: f5f31aeb3c43c9554b9a40734b6398b740cfc8a9c90f1e8d5c9c0b8f73ec48f2
Size: 4.56 MB - perf-2.6.32-754.25.1.el6.x86_64.rpm
MD5: 4759b4fc9f03dfebe4163a57bb54e8e7
SHA-256: 0bd4089116bf3e5e30f084c9651d14ae51e376a95418d18010b413e6c506e4c9
Size: 4.76 MB