Skip to Content.
Sympa Menu

perfsonar-user - [perfsonar-user] RedHat CVE and New CentOS 6 Kernel (affects only perfsonar-ps NetInstall 3.3-rc1)

Subject: perfSONAR User Q&A and Other Discussion

List archive

[perfsonar-user] RedHat CVE and New CentOS 6 Kernel (affects only perfsonar-ps NetInstall 3.3-rc1)


Chronological Thread 
  • From: Sowmya Balasubramanian <>
  • To: Performance Node Users <>, ,
  • Subject: [perfsonar-user] RedHat CVE and New CentOS 6 Kernel (affects only perfsonar-ps NetInstall 3.3-rc1)
  • Date: Wed, 06 Feb 2013 12:12:36 -0800

All,

This applies to only perfsonar-ps 3.3-rc1 NetInstall users.

A new RedHat CVE was released today:
https://rhn.redhat.com/errata/RHSA-2013-0223.html

If you are a NetInstall user, a 'yum update' may give you a new non-web100 kernel and therefore break access to NDT/NPAD. Consult our FAQ for more info: http://psps.perfsonar.net/toolkit/FAQs.html#Q30

Our read of the CVE does not find any issue of concern specific to the toolkit. Its possible the host may be vulnerable to some types of DoS attacks in some particular cases. If you are in doubt about your kernel, feel free to review the CVE, upgrade to the latest version, and forgo NDT/NPAD support for the time being.  We are in the process of building and testing a new kernel. We expect to release our web100 patched version as part of 3.3-rc2 release. 

Once again, please note that this affects only perfsonar-ps 3.3-rc1 NetInstall users.

Thanks,
Sowmya



  • [perfsonar-user] RedHat CVE and New CentOS 6 Kernel (affects only perfsonar-ps NetInstall 3.3-rc1), Sowmya Balasubramanian, 02/06/2013

Archive powered by MHonArc 2.6.16.

Top of Page