Login
Newsletter
Werbung

Sicherheit: Ausführen beliebiger Kommandos in Linux
Aktuelle Meldungen Distributionen
Name: Ausführen beliebiger Kommandos in Linux
ID: FEDORA-2019-9d3fe6fd5b
Distribution: Fedora
Plattformen: Fedora 30
Datum: Fr, 26. Juli 2019, 08:05
Referenzen: https://bugzilla.redhat.com/show_bug.cgi?id=1731862
https://bugzilla.redhat.com/show_bug.cgi?id=1731784
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-13631
Applikationen: Linux

Originalnachricht

-------------------------------------------------------------------------------
-
Fedora Update Notification
FEDORA-2019-9d3fe6fd5b
2019-07-26 00:59:17.199213
-------------------------------------------------------------------------------
-

Name : kernel
Product : Fedora 30
Version : 5.1.19
Release : 300.fc30
URL : https://www.kernel.org/
Summary : The Linux kernel
Description :
The kernel meta package

-------------------------------------------------------------------------------
-
Update Information:

Update to v5.1.19
-------------------------------------------------------------------------------
-
ChangeLog:

* Mon Jul 22 2019 Jeremy Cline <jcline@redhat.com> - 5.1.19-300
- Linux v5.1.19
- Fix Xen Security Advisory 300 (rhbz 1731862 1731864)
- Fix a null pointer dereference in the 8250_lpss serial driver (rhbz 1731784)
* Thu Jul 18 2019 Jeremy Cline <jcline@redhat.com>
- Fix CVE-2019-13631 (rhbz 1731000 1731001)
* Mon Jul 15 2019 Jeremy Cline <jcline@redhat.com> - 5.1.18-300
- Linux v5.1.18
* Wed Jul 10 2019 Jeremy Cline <jcline@redhat.com> - 5.1.17-300
- Linux v5.1.17
* Mon Jul 8 2019 Jeremy Cline <jcline@redhat.com>
- Fix a firmware crash in Intel 7000 and 8000 devices (rhbz 1716334)
* Thu Jul 4 2019 Peter Robinson <pbrobinson@fedoraproject.org>
- Fixes for load avg and display on Raspberry Pi
* Wed Jul 3 2019 Jeremy Cline <jcline@redhat.com> - 5.1.16-300
- Linux v5.1.16
- Fix an issue with deleting singular conntrack entries (rhbz 1724357)
* Tue Jun 25 2019 Jeremy Cline <jcline@redhat.com> - 5.1.15-300
- Linux v5.1.15
- Fixes CVE-2019-12817 (rhbz 1720616 1723697)
* Mon Jun 24 2019 Hans de Goede <hdegoede@redhat.com>
- Extend GPD MicroPC LCD panel quirk to also apply to newer BIOS versions
* Mon Jun 24 2019 Jeremy Cline <jcline@redhat.com> - 5.1.14-300
- Linux v5.1.14
* Wed Jun 19 2019 Jeremy Cline <jcline@redhat.com> - 5.1.12-300
- Linux v5.1.12
* Mon Jun 17 2019 Jeremy Cline <jcline@redhat.com> - 5.1.11-300
- Linux v5.1.11
- Fixes CVE-2019-11477 (rhbz 1719123 1721254)
- Fixes CVE-2019-11479 (rhbz 1719129 1721255)
- Fixes CVE-2019-11478 (rhbz 1719128 1721256)
* Mon Jun 17 2019 Jeremy Cline <jcline@redhat.com> - 5.1.10-300
- Linux v5.1.10
* Fri Jun 14 2019 Hans de Goede <hdegoede@redhat.com>
- Fix the LCD panel an Asus EeePC 1025C not lighting up (rhbz#1697069)
- Fix the LCD panel on the GPD MicroPC not working
* Thu Jun 13 2019 Justin M. Forbes <jforbes@fedoraproject.org>
- Fix CVE-2019-10126 (rhbz 1716992 1720122)
* Tue Jun 11 2019 Jeremy Cline <jcline@redhat.com> - 5.1.9-300
- Linux v5.1.9
- Fix UDP checkshums for SIP packets (rhbz 1716289)
* Sun Jun 9 2019 Jeremy Cline <jcline@redhat.com> - 5.1.8-300
- Linux v5.1.8
* Fri Jun 7 2019 Justin M. Forbes <jforbes@fedoraproject.org>
- Fix CVE-2019-12614 (rhbz 1718176 1718185)
* Thu Jun 6 2019 Jeremy Cline <jcline@redhat.com>
- Fix incorrect permission denied with lock down off (rhbz 1658675)
- Fix an issue with the IPv6 neighbor table (rhbz 1708717)
* Wed Jun 5 2019 Justin M. Forbes <jforbes@fedoraproject.org>
- Fix CVE-2019-12456 (rhbz 1717182 1717183)
* Tue Jun 4 2019 Jeremy Cline <jcline@redhat.com> - 5.1.7-300
- Linux v5.1.7
- Fix CVE-2019-12455 (rhbz 1716990 1717003)
- Fix CVE-2019-12454 (rhbz 1716996 1717003)
* Mon Jun 3 2019 Justin M. Forbes <jforbes@fedoraproject.org>
- Fix CVE-2019-12378 (rhbz 1715459 1715460)
- Fix CVE-2019-3846 (rhbz 1713059 1715475)
- Fix CVE-2019-12380 (rhbz 1715494 1715495)
- Fix CVE-2019-12381 (rhbz 1715501 1715502)
- Fix CVE-2019-12382 (rhbz 1715554 1715556)
- Fix CVE-2019-12379 (rhbz 1715491 1715706)
* Fri May 31 2019 Laura Abbott <labbott@redhat.com> - 5.1.6-300
- Linux v5.1.6
* Sat May 25 2019 Jeremy Cline <jcline@redhat.com> - 5.1.5-300
- Linux v5.1.5
* Fri May 24 2019 Jeremy Cline <jcline@redhat.com> - 5.1.4-301
- Fix fstrim discarding too many blocks
* Wed May 22 2019 Jeremy Cline <jcline@redhat.com> - 5.1.4-300
- Linux v5.1.4
- Fix an issue with Bluetooth 2.0 and earlier devices (rhbz 1711468)
* Mon May 20 2019 Laura Abbott <labbott@redhat.com> - 5.0.17-300
- Linux v5.0.17
* Tue May 14 2019 Justin M. Forbes <jforbes@fedoraproject.org> -
5.0.16-300
- Linux v5.0.16
- Fixes CVE-2018-12126 (rhbz 1646781 1709976)
- Fixes CVE-2018-12127 (rhbz 1667782 1709978)
- Fixes CVE-2018-12130 (rhbz 1646784 1709989 1709996)
- Fixes CVE-2019-11091 (rhbz 1705312 1709983)
* Mon May 13 2019 Laura Abbott <labbott@redhat.com> - 5.0.15-300
- Linux v5.0.15
- Fixes CVE-2019-11884 (rhbz 1709837 1709838)
* Thu May 9 2019 Laura Abbott <labbott@redhat.com> - 5.0.14-300
- Linux v5.0.14
* Mon May 6 2019 Laura Abbott <labbott@redhat.com> - 5.0.13-300
- Linux v5.0.13
* Sat May 4 2019 Laura Abbott <labbott@redhat.com> - 5.0.12-300
- Linux v5.0.12
* Thu May 2 2019 Laura Abbott <labbott@redhat.com> - 5.0.11-300
- Linux v5.0.11
* Tue Apr 30 2019 Laura Abbott <labbott@redhat.com> - 5.0.10-300
- Linux v5.0.10
* Tue Apr 30 2019 Hans de Goede <hdegoede@redhat.com>
- Fix wifi on various ideapad models not working (rhbz#1703338)
* Thu Apr 25 2019 Justin M. Forbes <jforbes@fedoraproject.org>
- Fix CVE-2019-3900 (rhbz 1698757 1702940)
-------------------------------------------------------------------------------
-
References:

[ 1 ] Bug #1731862 - xen: no grant table and foreign mapping limits leading
to crash and DoS
https://bugzilla.redhat.com/show_bug.cgi?id=1731862
[ 2 ] Bug #1731784 - kernel: check null return when calling pci_ioremap_bar
https://bugzilla.redhat.com/show_bug.cgi?id=1731784
[ 3 ] Bug #1731000 - CVE-2019-13631 kernel: OOB writes in
parse_hid_report_descriptor in drivers/input/tablet/gtco.c
https://bugzilla.redhat.com/show_bug.cgi?id=1731000
-------------------------------------------------------------------------------
-

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2019-9d3fe6fd5b' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
-------------------------------------------------------------------------------
-
_______________________________________________
package-announce mailing list -- package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org
Pro-Linux
Pro-Linux @Facebook
Neue Nachrichten
Werbung