[SECURITY] Fedora Core 6 Test Update: kernel-2.6.22.1-29.fc6

Chuck Ebbert cebbert at redhat.com
Thu Jul 26 15:39:34 UTC 2007


---------------------------------------------------------------------
Fedora Test Update Notification
FEDORA-2007-648
2007-07-26
---------------------------------------------------------------------

Product     : Fedora Core 6
Name        : kernel
Version     : 2.6.22.1
Release     : 29.fc6
Summary     : The Linux kernel (the core of the Linux operating system)
Description :
The kernel package contains the Linux kernel (vmlinuz), the core of any
Linux operating system.  The kernel handles the basic functions
of the operating system:  memory allocation, process allocation, device
input and output, etc.

---------------------------------------------------------------------
Update Information:

Rebase kernel to 2.6.22.1:
http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.22
http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.22.1

Includes the CFS scheduler from upstream kernel 2.6.23.

CVE-2007-3642:
The decode_choice function in
net/netfilter/bf_conntrack_h323_asn1.c in the Linux kernel
before 2.6.22 allows remote attackers to cause a denial of
service (crash) via an encoded, out-of-range index value for
a choice field, which triggers a NULL pointer dereference.

---------------------------------------------------------------------
* Mon Jul 23 2007 Chuck Ebbert <cebbert at redhat.com>
- set CONFIG_DEBUG_SHIRQ only in -debug kernels
* Mon Jul 23 2007 Chuck Ebbert <cebbert at redhat.com>
- set CONFIG_USB_DEVICE_CLASS (should fix #249211)
* Mon Jul 23 2007 Jarod Wilson <jwilson at redhat.com>
- Re-enable aes-i586 and twofish-i586 for i686 kernels (#249158)
* Fri Jul 20 2007 Chuck Ebbert <cebbert at redhat.com>
- SDHCI: clear the error interrupt bit
- ftdi_sio: fix oops
* Fri Jul 20 2007 Chuck Ebbert <cebbert at redhat.com>
- utrace update
- CFS scheduler update
* Thu Jul 19 2007 Chuck Ebbert <cebbert at redhat.com>
- restore the libata COMBINED_MODE hacks
- set CONFIG_NF_CONNTRACK_PROC_COMPAT
- restore the old firewire stack
- new utrace backport
* Tue Jul 17 2007 Chuck Ebbert <cebbert at redhat.com>
- disable the nohz and highres kernel options
  by default -- enable with 'nohz=yes highres=yes'
* Tue Jul 17 2007 Chuck Ebbert <cebbert at redhat.com>
- gfs2: update to the latest
- sched: fix show_task()/show_tasks() output
- sched: fix newly idle load balance in case of SMT
- sched: fix the all pinned logic in load_balance_newidle()
- fix leaks of struct seq_operations
- fix leaks of ref to user struct
- pata_atiixp: add SB700 PCI ID
- ata_piix: fix pio/mwdma programming
- sdhci: add ene controller id
- sdhci: Fix "Unexpected interrupt" handling
* Mon Jul 16 2007 Chuck Ebbert <cebbert at redhat.com>
- bluetooth: hangup tty before releasing rfcomm
- driver core: get driver properly during release
- net scheduler: fix deadlock
- input: rfkill driver screws up the CPU flags
- acpi-cpufreq: make register write work properly again
* Mon Jul 16 2007 Chuck Ebbert <cebbert at redhat.com>
- add proper caching of last_ctl to the 'unbreak SMART' fix
* Mon Jul 16 2007 Dave Jones <davej at redhat.com>
- Unbreak SMART on libata.
* Mon Jul 16 2007 Dave Jones <davej at redhat.com>
- Disable warnings that trigger due to disabled USB suspend.
* Thu Jul 12 2007 Dave Jones <davej at redhat.com>
- Some systems have a HPET which is not incrementing, which leads
  to a complete hang.  Detect it during HPET setup.
* Thu Jul 12 2007 Dave Jones <davej at redhat.com>
- Replace the pcspkr private PIT lock by the global PIT lock to
  serialize the PIT access all over the place.
* Thu Jul 12 2007 Chuck Ebbert <cebbert at redhat.com>
- ata: update noncq list
- idr: multiple bugfixes
- tcp: sack fix leak msgs
- vbe: always save ddc data
* Thu Jul 12 2007 Jarod Wilson <jwilson at redhat.com>
- Fix up some uname -r issues in certain kernel version
  cases (due to new versioning scheme)
* Wed Jul 11 2007 Chuck Ebbert <cebbert at redhat.com>
- jbd: fix transaction dropping (kernel oops)
* Wed Jul 11 2007 Dave Jones <davej at redhat.com>
- NFS: Add the mount option "nosharecache"
* Wed Jul 11 2007 Chuck Ebbert <cebbert at redhat.com>
- 2.6.22.1
* Wed Jul 11 2007 Dave Jones <davej at redhat.com>
- Revert mkinitrd requires: bump to what's in FC6.
* Wed Jul 11 2007 Dave Jones <davej at redhat.com>
- Remove the x86-64 tickless patches, they aren't ready.
* Tue Jul 10 2007 Dave Jones <davej at redhat.com>
- Fix issue with PIE randomization (#246623).
* Tue Jul 10 2007 Chuck Ebbert <cebbert at redhat.com>
- sky2: re-enable lost interrupt workarounds
- aacraid: ioctl handler needs permission check
* Mon Jul  9 2007 Dave Jones <davej at redhat.com>
- Disable forced HPET on ESB2 too
* Mon Jul  9 2007 Chuck Ebbert <cebbert at redhat.com>
- changed default TCP/IPV4 congestion control to CUBIC
* Mon Jul  9 2007 Dave Jones <davej at redhat.com>
- Rebase to 2.6.22

---------------------------------------------------------------------
This update can be downloaded from:
    http://download.fedora.redhat.com/pub/fedora/linux/core/updates/testing/6/

618f5f31895abd9fda3cabc520507f55c097bee6  SRPMS/kernel-2.6.22.1-29.fc6.src.rpm
618f5f31895abd9fda3cabc520507f55c097bee6  noarch/kernel-2.6.22.1-29.fc6.src.rpm
f441862e73d65e2a50cdc68d19ce95bff306740a  ppc/kernel-2.6.22.1-29.fc6.ppc.rpm
e8e7461019a8f73a90a84febc0bf027371306b38  ppc/kernel-smp-2.6.22.1-29.fc6.ppc.rpm
04f217888eae4537e92591a4ba7d14007872e62b  ppc/debug/kernel-debuginfo-common-2.6.22.1-29.fc6.ppc.rpm
7765d9da6d8ebf1a3c80c65181410b6565527e2e  ppc/debug/kernel-smp-debuginfo-2.6.22.1-29.fc6.ppc.rpm
8e6c5fe25421685a3cc17065bdbf190134581437  ppc/kernel-smp-devel-2.6.22.1-29.fc6.ppc.rpm
fe13717cb9c9668d9c42d6abc80f73eff151d046  ppc/kernel-devel-2.6.22.1-29.fc6.ppc.rpm
2c8881048190f3eb4057990d3ad5aa79f525cb9a  ppc/debug/kernel-debuginfo-2.6.22.1-29.fc6.ppc.rpm
be2c6c30988c87ea9ba2c0743e7a23187d5c2213  ppc/kernel-headers-2.6.22.1-29.fc6.ppc.rpm
8c4d8b64d5d95310c43586786433381a6ad3f060  ppc/kernel-doc-2.6.22.1-29.fc6.noarch.rpm
9e79f58f223e0cf18a580dad3760f88cd43c5137  x86_64/kernel-headers-2.6.22.1-29.fc6.x86_64.rpm
7b7b7922118055eaa521f443b07ad6b12dcf0d96  x86_64/debug/kernel-debug-debuginfo-2.6.22.1-29.fc6.x86_64.rpm
0bbc6ddf5b33be5813620688cfa513bd8a57692b  x86_64/debug/kernel-debuginfo-2.6.22.1-29.fc6.x86_64.rpm
55e9856c29511c24663f52f051a4f4a9ebcb3004  x86_64/debug/kernel-debuginfo-common-2.6.22.1-29.fc6.x86_64.rpm
1b69a1065be765eb85d934236ca177764ac88ffe  x86_64/kernel-2.6.22.1-29.fc6.x86_64.rpm
018f39a67f2e6a260c91417d48ae3927f443deac  x86_64/kernel-devel-2.6.22.1-29.fc6.x86_64.rpm
62ccf854fd20b7471d3c49d7462d311e1c595253  x86_64/kernel-debug-devel-2.6.22.1-29.fc6.x86_64.rpm
d5a9c234185e6dd31c25300b2cbdae9b7a6b2da8  x86_64/kernel-debug-2.6.22.1-29.fc6.x86_64.rpm
8c4d8b64d5d95310c43586786433381a6ad3f060  x86_64/kernel-doc-2.6.22.1-29.fc6.noarch.rpm
b86d0d9f7b3fd582fdf73b13a0cd41db4741c051  i386/kernel-headers-2.6.22.1-29.fc6.i386.rpm
ad33128228ba6ed11c04c9e2eaed198c9646e881  i386/kernel-devel-2.6.22.1-29.fc6.i586.rpm
92ba3b859a58f3c677a717a3ac3dc1b2422eaa52  i386/debug/kernel-debuginfo-common-2.6.22.1-29.fc6.i586.rpm
7a29fa59ed659cf175cb96ccf7d949133bbc6f37  i386/kernel-2.6.22.1-29.fc6.i586.rpm
6dc6e5ed569a45841b3bfc6d0963e949b1fb297d  i386/debug/kernel-debuginfo-2.6.22.1-29.fc6.i586.rpm
9adf233cd67b575074c442ab47cb5eb88269e101  i386/kernel-devel-2.6.22.1-29.fc6.i686.rpm
af47a1c4b33b638ed0996fce7b6de7f3227aea4a  i386/kernel-PAE-2.6.22.1-29.fc6.i686.rpm
0aed7d946aff1a8837f444b079f62042f5a10c3c  i386/debug/kernel-PAE-debug-debuginfo-2.6.22.1-29.fc6.i686.rpm
3da40e26cb0f6efd50cf63052f1acdca36035ca7  i386/kernel-PAE-debug-devel-2.6.22.1-29.fc6.i686.rpm
181bf4dac69bef3fe8b731b11a22351152d9aa45  i386/debug/kernel-debuginfo-common-2.6.22.1-29.fc6.i686.rpm
0f6c85a22cb3788d375613a0a48c79d2f33664e1  i386/kernel-PAE-debug-2.6.22.1-29.fc6.i686.rpm
9b59405f5a411b87f538c9e6ffa2b1859a7caf05  i386/kernel-PAE-devel-2.6.22.1-29.fc6.i686.rpm
29c45ceb00934ba026bd77b2b9e01cf92efc2442  i386/debug/kernel-debuginfo-2.6.22.1-29.fc6.i686.rpm
af86d465eae9cccda75811e68a72516b33a50353  i386/kernel-debug-devel-2.6.22.1-29.fc6.i686.rpm
93c83e9581505a1214f4836c56684df51df10cd6  i386/kernel-debug-2.6.22.1-29.fc6.i686.rpm
1b2450b53d2797df77f222fd15a98b26a70d50e0  i386/kernel-2.6.22.1-29.fc6.i686.rpm
e19eb6d1acf86c3ec37797175f62d920b3595258  i386/debug/kernel-debug-debuginfo-2.6.22.1-29.fc6.i686.rpm
79d28ca4cfef354c30f1278ed74d6caeb2b4e2ba  i386/debug/kernel-PAE-debuginfo-2.6.22.1-29.fc6.i686.rpm
8c4d8b64d5d95310c43586786433381a6ad3f060  i386/kernel-doc-2.6.22.1-29.fc6.noarch.rpm

This update can be installed with the 'yum' update program.  Use 'yum update
package-name' at the command line.  For more information, refer to 'Managing
Software with yum,' available at http://fedora.redhat.com/docs/yum/.
---------------------------------------------------------------------




More information about the fedora-test-list mailing list