Skip to Content.
Sympa Menu

perfsonar-user - [perfsonar-user] RedHat CVE and New CentOS 6 Kernel

Subject: perfSONAR User Q&A and Other Discussion

List archive

[perfsonar-user] RedHat CVE and New CentOS 6 Kernel


Chronological Thread 
  • From: Andrew Lake <>
  • To: ,
  • Subject: [perfsonar-user] RedHat CVE and New CentOS 6 Kernel
  • Date: Thu, 28 Sep 2017 07:24:56 -0700
  • Ironport-phdr: 9a23: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

All;

A new kernel has been released for CentOS6. The CVE with details can be found below:


A 'yum update' may give you a new non-web100 kernel and therefore break access to NDT/NPAD. Consult our FAQ for more info: http://www.perfsonar.net/about/faq/#Q25

Our read of the CVE does not find any issue of concern specific to the toolkit. Its possible the host may be vulnerable to some types of DoS attacks in some particular cases. If you are in doubt about your kernel, feel free to review the CVE,  upgrade to the latest version, and forgo NDT/NPAD support for the time being.  We are in the process of building and testing a new kernel, and will alert you when we have our web100 patched version available. We'll try to have it ready as soon as possible.

NOTE: The perfSONAR project will not be applying the web100 patch to any kernels released after October 17, 2017. This patch is only for CentOS 6 as the web100 patch is not compatible with the kernel released for CentOS 7.

Thank you for your patience,
The perfSONAR Team



On September 27, 2017 at 12:44:34 PM, Johnny Hughes () wrote:


CentOS Errata and Security Advisory 2017:2795 Important

Upstream details at : https://access.redhat.com/errata/RHSA-2017:2795

The following updated files have been uploaded and are currently
syncing to the mirrors: ( sha256sum Filename )

i386:
0ece8515a2a820dd68805f034238d315dc9bf7a3bd8979ab908914fff523535f kernel-2.6.32-696.10.3.el6.i686.rpm
6c0a44700f042cfbd024f7b22852a63626cd2023582b7e9033d473159cf9fe30 kernel-abi-whitelists-2.6.32-696.10.3.el6.noarch.rpm
0ee646bb30bc95b465839b76203c4371aea05c36f9fdc1a12ff5f59d716333e5 kernel-debug-2.6.32-696.10.3.el6.i686.rpm
6257147fd5d9d5e36f6e2c50e992c72d661a07ccfd8ffc6b02ecc81cdbdbb9e5 kernel-debug-devel-2.6.32-696.10.3.el6.i686.rpm
9a9ea42cdd6b6ce5b7f62a4972f2aeaf2f990eff124aa88fbb559a423525e959 kernel-devel-2.6.32-696.10.3.el6.i686.rpm
55f6c6bd63dabafd17488a612514c98ae9b37ee61d0be089be6363d80c3b45db kernel-doc-2.6.32-696.10.3.el6.noarch.rpm
eb543c671ef9785795e3472c146c194a1b0cfbee829b0c7463f457b71f13dee2 kernel-firmware-2.6.32-696.10.3.el6.noarch.rpm
5454beb01c3d7cc4e6ccf7831ac0eb191ea2e44aaa53690c413fe44462c902b3 kernel-headers-2.6.32-696.10.3.el6.i686.rpm
9dfdf0318330bd2e6a082f0c2ffc0a52f4854ebd20da227462b03648294b7ace perf-2.6.32-696.10.3.el6.i686.rpm
083e8d2bfc51b686b8c7f263ce80f8df7ac02fb6f761d4881db2cf66b4651bd6 python-perf-2.6.32-696.10.3.el6.i686.rpm

x86_64:
06e870bb5d57fefe461086e03173b75b2fa3d26b0662c0ed218272be4f62d870 kernel-2.6.32-696.10.3.el6.x86_64.rpm
6c0a44700f042cfbd024f7b22852a63626cd2023582b7e9033d473159cf9fe30 kernel-abi-whitelists-2.6.32-696.10.3.el6.noarch.rpm
0f372b21085376d6ebe881c445d0d4852e0df7c53a57def067cc3e202e62d254 kernel-debug-2.6.32-696.10.3.el6.x86_64.rpm
6257147fd5d9d5e36f6e2c50e992c72d661a07ccfd8ffc6b02ecc81cdbdbb9e5 kernel-debug-devel-2.6.32-696.10.3.el6.i686.rpm
2ac733e53bb15e042ac8391fea5b47808bbb3608037b8fc914131a1802aa3ac3 kernel-debug-devel-2.6.32-696.10.3.el6.x86_64.rpm
d476497f262a01b016efde27d7cdc831c79bdbe1e0deb335e5d1f71f30b324e2 kernel-devel-2.6.32-696.10.3.el6.x86_64.rpm
55f6c6bd63dabafd17488a612514c98ae9b37ee61d0be089be6363d80c3b45db kernel-doc-2.6.32-696.10.3.el6.noarch.rpm
eb543c671ef9785795e3472c146c194a1b0cfbee829b0c7463f457b71f13dee2 kernel-firmware-2.6.32-696.10.3.el6.noarch.rpm
303b8df4e585d9954b566329a16f2abab68783d82ebe619b5beb08fbb7b97f3d kernel-headers-2.6.32-696.10.3.el6.x86_64.rpm
5dcd16fdfe201473d29a27074942fa1d385edf1f0e8c36cfaaec0c42e0da073d perf-2.6.32-696.10.3.el6.x86_64.rpm
6b60c2094c7628db2dfe430250829584e5e5ae958eeebef91b06effe3791de94 python-perf-2.6.32-696.10.3.el6.x86_64.rpm

Source:
6a35901d0c441f3bcfb438598e8658e497c406fab60c784a80b77c47d109c8e0 kernel-2.6.32-696.10.3.el6.src.rpm



--
Johnny Hughes
CentOS Project { http://www.centos.org/ }
irc: hughesjr, #
Twitter: @JohnnyCentOS

_______________________________________________
CentOS-announce mailing list

https://lists.centos.org/mailman/listinfo/centos-announce



Archive powered by MHonArc 2.6.19.

Top of Page