-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2007-2349 2007-09-28 21:22:19.963677 --------------------------------------------------------------------------------
Name : kernel Product : Fedora 7 Version : 2.6.22.9 Release : 91.fc7 URL : [] Summary : The Linux kernel (the core of the Linux operating system) Description : The kernel package contains the Linux kernel (vmlinuz), the core of any Linux operating system. The kernel handles the basic functions of the operating system: memory allocation, process allocation, device input and output, etc.
-------------------------------------------------------------------------------- Update Information:
Update to Linux 2.6.22.8 and 2.6.22.9: http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.22.8 http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.22.9
CVE-2007-4571 The snd_mem_proc_read function in sound/core/memalloc.c in the Advanced Linux Sound Architecture (ALSA) in the Linux kernel before 2.6.22.8 does not return the correct write size, which allows local users to obtain sensitive information (kernel memory contents) via a small count argument, as demonstrated by multiple reads of /proc/driver/snd-page-alloc.
Additional fixes: Revert to the old RTC driver (#265721, #284191) Disable NCQ for additional SATA drives. libata pata_sis: DMA fixes (#247768) libata sata_sil24: IRQ clearing race fixes net driver r8169: fix hanging (#252955, #292161) qdisc sfq: fix oops with 2 packet queue (#219895) ACPI: disable processor C-states suring suspend ACPI: silence noisy message
-------------------------------------------------------------------------------- ChangeLog:
* Thu Sep 27 2007 John W. Linville linville@redhat.com - A few iwlwifi and ath5k fixes * Thu Sep 27 2007 Chuck Ebbert cebbert@redhat.com - Revert to old RTC driver. - Zero fill environment for uevent handlers. - libata: update the NCQ disk blacklist. - wireless: store channel info in bss list (bz 250913). * Thu Sep 27 2007 John W. Linville linville@redhat.com - Update and restructure wireless patches * Wed Sep 26 2007 Chuck Ebbert cebbert@redhat.com - libata pata_sis: DMA fixes (#202291) - libata sata_sil24: IRQ clearing race fixes - net driver r8169: fix hanging (#252955, #292161) - qdisc sfq: fix oops with 2 packet queue (#219895) - ACPI: disable processor C-states suring suspend - ACPI: silence noisy message * Wed Sep 26 2007 Chuck Ebbert cebbert@redhat.com - Linux 2.6.22.9 * Wed Sep 26 2007 Chuck Ebbert cebbert@redhat.com - Linux 2.6.22.8 * Fri Sep 21 2007 Chuck Ebbert cebbert@redhat.com - Linux 2.6.22.7 * Fri Sep 21 2007 Chuck Ebbert cebbert@redhat.com - Build dcdbas and dell_rbu modules on i586 (#216304) * Thu Sep 20 2007 Dave Jones davej@redhat.com - Enable tcrypt module for crypto testing. * Tue Sep 18 2007 John W. Linville linville@redhat.com - Update bits from wireless-2.6 and wireless-dev * Wed Sep 12 2007 Chuck Ebbert cebbert@redhat.com - Linux 2.6.22.6 (official) - libata: add option to disable DMA on PATA devices - libata: fix DMA on ATAPI devices with it821x (#242229) - libata: fix cable detection on pata_via - fix vmware's broken SCSI device emulation (#241935) - fix init of huawei 220 modem (#253096) - LVM: fix hang and lockups during snapshot (#269541) - net: fix oops with zero-length packet (#253290) - USB: three trivial fixes - futex: fix compat list traversal * Wed Sep 12 2007 Chuck Ebbert cebbert@redhat.com - update CFS scheduler * Tue Sep 11 2007 Roland McGrath roland@redhat.com - utrace update (#248532, #267161, #284311) * Thu Aug 30 2007 John W. Linville linville@redhat.com - Update bits from wireless-2.6 and wireless-dev * Thu Aug 30 2007 Chuck Ebbert cebbert@redhat.com - Linux 2.6.22.6-rc1 * Wed Aug 29 2007 Chuck Ebbert cebbert@redhat.com - enable the i82365 ISA PCMCIA driver - CFS scheduler bugfix * Wed Aug 29 2007 Dave Jones davej@redhat.com - Fix time distortion in pm_trace (bz 250238) * Wed Aug 29 2007 Chuck Ebbert cebbert@redhat.com - remove IRDA quirk for SMC controllers (#260481) * Wed Aug 29 2007 Chuck Ebbert cebbert@redhat.com - CFS scheduler v20.5 - disable 64-bit DMA for atl1 network adapter * Fri Aug 24 2007 John W. Linville linville@redhat.com - Update wireless-dev bits (mac80211, rt2x00, b43, ssb) - Add patch to keep old firmware format for b43 - Add at76_usb driver * Fri Aug 24 2007 Chuck Ebbert cebbert@redhat.com - CFS scheduler v20.3 * Fri Aug 24 2007 Chuck Ebbert cebbert@redhat.com - V4L/DVB: fix airstar hd5000 tuner * Fri Aug 24 2007 Chuck Ebbert cebbert@redhat.com - fix 3ware 9000 controller DMA fallback (#251729) * Thu Aug 23 2007 Chuck Ebbert cebbert@redhat.com - Linux 2.6.22.5 - CFS scheduler v20.2 - fix Pegasos PS/2 port detection * Wed Aug 22 2007 Chuck Ebbert cebbert@redhat.com - 2.6.22.5-rc1 - un-revert genirq changes - add new genirq fixes from upstream - ALSA: fix ad1988 spdif output - ALSA: mutiple stac92xx codec fixes - libata: fix pata_via driver on ppc pegasos platform * Tue Aug 21 2007 Chuck Ebbert cebbert@redhat.com - sky2: don't clear PHY power bits * Tue Aug 21 2007 Chuck Ebbert cebbert@redhat.com - Hibernation: do not try to mark invalid PFNs as nosave * Tue Aug 21 2007 Dave Jones davej@redhat.com - 2.6.22.4 * Thu Aug 16 2007 Dave Jones davej@redhat.com - Fix symvers warning on install of debug kernel. * Thu Aug 16 2007 Chuck Ebbert cebbert@redhat.com - sensors: fix wrong values with some chips - r8169: fix polling - forcedeth: fix wrong OUI for PHY - SCSI: fix async scanning - sky2: 4 patches from maintainer * Thu Aug 16 2007 Chuck Ebbert cebbert@redhat.com - enable ACPI_DEBUG in -debug builds - fix e820 memory hole sizing on x86_64 - export GFS2 symbols for lock modules * Wed Aug 15 2007 Chuck Ebbert cebbert@redhat.com - Linux 2.6.22.3 * Wed Aug 15 2007 Chuck Ebbert cebbert@redhat.com - ACPI: fix broken conversion of older FADTs - ACPI: fix possible corruption of GPE list * Tue Aug 14 2007 Chuck Ebbert cebbert@redhat.com - revert "don't BUG on too-large memory allocation" - limit memory allocated by input force feedback drivers * Tue Aug 14 2007 John W. Linville linville@redhat.com - Update wireless-dev bits (mac80211 & ssb updates, bcm43xx -> b43 rename) * Tue Aug 14 2007 Chuck Ebbert cebbert@redhat.com - update CFS scheduler with upstream patches * Tue Aug 14 2007 Chuck Ebbert cebbert@redhat.com - set CONFIG_NET_RADIO (#251094) * Fri Aug 10 2007 Chuck Ebbert cebbert@redhat.com - 2.6.22.2 - serial: revert changes to port detection * Fri Aug 10 2007 Chuck Ebbert cebbert@redhat.com - don't use incremental patches for -stable updates - update CFS scheduler patch - update utrace patches * Wed Aug 8 2007 John W. Linville linville@redhat.com - Update wireless bits (upstream fixes, iwlwifi and bcm43xx updates) * Wed Aug 8 2007 Chuck Ebbert cebbert@redhat.com - add xt_statistic.h to header list for iptables - detect broken lapic timer on some dual-core AMD systems - don't BUG on too-large memory allocation * Tue Aug 7 2007 John W. Linville linville@redhat.com - mac80211: probe for hidden SSIDs during when scanning for association * Mon Aug 6 2007 John W. Linville linville@redhat.com - Update git-wireless-dev.patch (bcm43xx & zd1211rw updates) - mac80211: Filter locally-originated multicast frames echoed by AP (2nd try) * Fri Aug 3 2007 John W. Linville linville@redhat.com - Disable busted mac80211 local multicast filter patch * Thu Aug 2 2007 John W. Linville linville@redhat.com - Update git-wireless-dev.patch (iwlwifi, rt2x00, & zd1211rw updates) - mac80211: Filter locally-originated multicast frames echoed by AP * Wed Aug 1 2007 Chuck Ebbert cebbert@redhat.com - fix crash in xfrm4 * Tue Jul 31 2007 David Woodhouse dwmw2@infradead.org - fix softmac deadlock. * Fri Jul 27 2007 John W. Linville linville@redhat.com - Update git-wireless-dev.patch (iwlwifi & bcm43xx updates) - Remove hunk of linux-2.6-wireless that was reverted upstream * Fri Jul 27 2007 Chuck Ebbert cebbert@redhat.com - revert upstream "genirq: do not mask interrupts by default" * Fri Jul 27 2007 Chuck Ebbert cebbert@redhat.com - fix DMI strings in HP notebook quirk for ALI controller * Fri Jul 27 2007 Chuck Ebbert cebbert@redhat.com - sync the CFS scheduler timekeeping changes with upstream * Fri Jul 27 2007 David Woodhouse dwmw2@infradead.org - Update PlayStation 3 support (#249217) * Wed Jul 25 2007 John W. Linville linville@redhat.com - update wireless bits * Wed Jul 25 2007 Chuck Ebbert cebbert@redhat.com - kernel requires newer version of cpuspeed - pata_hpt37x: Fix 2.6.22 clock PLL regression (#249254) - atl1: possibly fix DMA bugs (#249511) * Wed Jul 25 2007 David Woodhouse dwmw2@infradead.org - Restore bcm43xx functionality - Restore PowerMac suspend-to-ram via /sys/power/state (since userspace forgot how to use the PMU ioctls) - Restore ofpath functionality (IDE_PROC_FS=y) * Mon Jul 23 2007 Chuck Ebbert cebbert@redhat.com - set CONFIG_DEBUG_SHIRQ only in -debug kernels * Mon Jul 23 2007 Chuck Ebbert cebbert@redhat.com - set CONFIG_USB_DEVICE_CLASS (should fix #249211) * Mon Jul 23 2007 Jarod Wilson jwilson@redhat.com - Re-enable aes-i586 and twofish-i586 for i686 kernels (#249158) * Fri Jul 20 2007 Chuck Ebbert cebbert@redhat.com - SDHCI: clear the error interrupt bit - ftdi_sio: fix oops * Fri Jul 20 2007 John W. Linville linville@redhat.com - update wireless bits * Fri Jul 20 2007 Chuck Ebbert cebbert@redhat.com - utrace update - CFS scheduler update * Tue Jul 17 2007 John W. Linville linville@redhat.com - update wireless bits * Tue Jul 17 2007 Chuck Ebbert cebbert@redhat.com - gfs2: update to the latest - sched: fix show_task()/show_tasks() output - sched: fix newly idle load balance in case of SMT - sched: fix the all pinned logic in load_balance_newidle() - fix leaks of struct seq_operations - fix leaks of ref to user struct - pata_atiixp: add SB700 PCI ID - ata_piix: fix pio/mwdma programming - sdhci: add ene controller id - sdhci: Fix "Unexpected interrupt" handling * Mon Jul 16 2007 Chuck Ebbert cebbert@redhat.com - bluetooth: hangup tty before releasing rfcomm - driver core: get driver properly during release - net scheduler: fix deadlock - input: rfkill driver screws up the CPU flags - acpi-cpufreq: make register write work properly again * Mon Jul 16 2007 Chuck Ebbert cebbert@redhat.com - add proper caching of last_ctl to the 'unbreak SMART' fix * Mon Jul 16 2007 Dave Jones davej@redhat.com - Unbreak SMART on libata. * Mon Jul 16 2007 Dave Jones davej@redhat.com - Disable warnings that trigger due to disabled USB suspend. * Fri Jul 13 2007 Chuck Ebbert cebbert@redhat.com - add more ATI SB700 ids to the ahci driver * Thu Jul 12 2007 Dave Jones davej@redhat.com - Some systems have a HPET which is not incrementing, which leads to a complete hang. Detect it during HPET setup. * Thu Jul 12 2007 Dave Jones davej@redhat.com - Replace the pcspkr private PIT lock by the global PIT lock to serialize the PIT access all over the place. * Thu Jul 12 2007 Dave Jones davej@redhat.com - Add back the rediffed PS3 patches. * Thu Jul 12 2007 Chuck Ebbert cebbert@redhat.com - ata: update noncq list - idr: multiple bugfixes - tcp: sack fix leak msgs - vbe: always save ddc data * Thu Jul 12 2007 Jarod Wilson jwilson@redhat.com - Fix up some uname -r issues in certain kernel version cases (due to new versioning scheme) * Wed Jul 11 2007 Chuck Ebbert cebbert@redhat.com - jbd: fix transaction dropping (kernel oops) - kvm: reinit real mode TSS on shutdown - kvm: detect SVM disabled by BIOS * Wed Jul 11 2007 Chuck Ebbert cebbert@redhat.com - sky2: re-enable lost interrupt workarounds - aacraid: ioctl handler needs permission check * Wed Jul 11 2007 Dave Jones davej@redhat.com - NFS: Add the mount option "nosharecache" * Wed Jul 11 2007 Dave Jones davej@redhat.com - Revert mkinitrd requires: bump to what's in FC7. * Wed Jul 11 2007 Dave Jones davej@redhat.com - Remove the x86-64 tickless patches, they aren't ready. * Wed Jul 11 2007 Chuck Ebbert cebbert@redhat.com - 2.6.22.1 * Wed Jul 11 2007 John W. Linville linville@redhat.com - Update git-wireless-dev.patch - Add upstream version of rtl8187 patch - Add updated iwlwifi driver from intellinuxwireless.org * Tue Jul 10 2007 Dave Jones davej@redhat.com - Fix issue with PIE randomization (#246623). * Tue Jul 10 2007 Dave Jones davej@redhat.com - Rebase to 2.6.22 -------------------------------------------------------------------------------- References:
[ 1 ] CVE-2007-4571 http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4571 -------------------------------------------------------------------------------- Updated packages:
ded8d1fc5337571235c808f44c71bd846c41242b kernel-doc-2.6.22.9-91.fc7.noarch.rpm 1956d5e9aaf65f5e835b8e6e396e516b007c52fc kernel-headers-2.6.22.9-91.fc7.i386.rpm 7e1ba3130d0321cd38a2a914c3e4b6f98f050a6d kernel-debug-debuginfo-2.6.22.9-91.fc7.i686.rpm b49690e78a7bd729260052d36dc73b95c265e447 kernel-PAE-debug-devel-2.6.22.9-91.fc7.i686.rpm 616b0c9ba450ab1bd2409019d5bb283371c6ae86 kernel-devel-2.6.22.9-91.fc7.i686.rpm ddf333bad5a99b9af58927cd75967668f2af429b kernel-PAE-debug-2.6.22.9-91.fc7.i686.rpm f4eac2ab26a5d1eef3367bf6c245de3e9abab065 kernel-PAE-2.6.22.9-91.fc7.i686.rpm 3bbdd59a0a398c621841e81f733f998cdef23cf8 kernel-debug-devel-2.6.22.9-91.fc7.i686.rpm 996c28b9af040d53f962f069ed05c1c6540e9e94 kernel-debuginfo-2.6.22.9-91.fc7.i686.rpm 8c936895c487c1f24012cf9e0b30449ed27c8a0c kernel-PAE-debug-debuginfo-2.6.22.9-91.fc7.i686.rpm 10d875a6f391c0dbd0b716e34374b5e4939721eb kernel-debuginfo-common-2.6.22.9-91.fc7.i686.rpm 1a9b5293ddb75bba95d8f84890ace9e0838c7ebb kernel-PAE-debuginfo-2.6.22.9-91.fc7.i686.rpm 3ce5add3bf59a095e0d29efef79e705612e15b4b kernel-2.6.22.9-91.fc7.i686.rpm c1169c36e948428e7f8e182c2cb74ff5b5a3f23f kernel-PAE-devel-2.6.22.9-91.fc7.i686.rpm 5f9083823e3fd71b9b3d9440ee60e10e1a1c0d05 kernel-debug-2.6.22.9-91.fc7.i686.rpm 4e96bd369ccb90e4ec671c2998ddd604ab5c8b0b kernel-kdump-debuginfo-2.6.22.9-91.fc7.ppc64.rpm 1cf94bc2ce8c0af0d15b895b5a948ca43b385669 kernel-debuginfo-2.6.22.9-91.fc7.ppc64.rpm c147ffd8e125391ffacd4cbdadb093a64186820a kernel-kdump-2.6.22.9-91.fc7.ppc64.rpm 4a464f8a78c2611a79661e46b53f536252672dfa kernel-2.6.22.9-91.fc7.ppc64.rpm 88a5fd675b965017a4262f3b49ed016bd29b20d7 kernel-devel-2.6.22.9-91.fc7.ppc64.rpm d080c778cfdac35df04c0101ab626a4abe45bff1 kernel-headers-2.6.22.9-91.fc7.ppc64.rpm 05f33f05ee3b2d8f68ab4746bfa084c1b6bf76c5 kernel-kdump-devel-2.6.22.9-91.fc7.ppc64.rpm b7b095d6030cce13eb84cbcb4a68f4ee3060aa5f kernel-debuginfo-common-2.6.22.9-91.fc7.ppc64.rpm 959040509514ae186ff9aa40fa4ae5e834b556eb kernel-devel-2.6.22.9-91.fc7.i586.rpm 7bb0ef2921d6c8cf497569a87395fea15000523c kernel-2.6.22.9-91.fc7.i586.rpm 08e5c207b48bdad931c339136cae4f2df8de6559 kernel-debuginfo-common-2.6.22.9-91.fc7.i586.rpm a2f40d5dfea1b494382cc91c2851deccff882022 kernel-debuginfo-2.6.22.9-91.fc7.i586.rpm 818e715d7bf700ad1d108f583e222889cdbc09b7 kernel-headers-2.6.22.9-91.fc7.x86_64.rpm 041802134c6bc8d4a53d41172252e82647621629 kernel-debug-debuginfo-2.6.22.9-91.fc7.x86_64.rpm 347989524c5bd267a407c160a0fbe5c7dce36ccd kernel-debug-devel-2.6.22.9-91.fc7.x86_64.rpm bfd1cefa14bd487075bb6c3c4cb278aed8193c82 kernel-devel-2.6.22.9-91.fc7.x86_64.rpm ded56fb621a75d110598861e10502083a496c41f kernel-2.6.22.9-91.fc7.x86_64.rpm 2f958988457c14b63d490b6eb761a21d74290de7 kernel-debuginfo-2.6.22.9-91.fc7.x86_64.rpm e64cc4ba72c89e4e89272c5c47a8709780386cbd kernel-debuginfo-common-2.6.22.9-91.fc7.x86_64.rpm 29f33fa2f65032b3035d28626b73d6cb638c5165 kernel-debug-2.6.22.9-91.fc7.x86_64.rpm fb8a0d51853287e9edd87f8356907c67971c8864 kernel-smp-2.6.22.9-91.fc7.ppc.rpm 8ab3e91e16f2ea44fd7ae5d4ad927b27e4ef34c2 kernel-2.6.22.9-91.fc7.ppc.rpm 24cfdd3ed0d30a1d412399134d8498db18440b76 kernel-headers-2.6.22.9-91.fc7.ppc.rpm 639d02e70637a6661c1d3a96a1619c8726d6b3e7 kernel-smp-debuginfo-2.6.22.9-91.fc7.ppc.rpm aabf6c673695d68195888c7e1ec83238297c51f4 kernel-smp-devel-2.6.22.9-91.fc7.ppc.rpm 86678b6613063d0991aeba5081962c4ebc0352d9 kernel-devel-2.6.22.9-91.fc7.ppc.rpm 054dbaa855191a325984177ae694e4fae0e89fa2 kernel-debuginfo-common-2.6.22.9-91.fc7.ppc.rpm b4124e065729e3f15adbcdf0a5461c8ca88b25b6 kernel-debuginfo-2.6.22.9-91.fc7.ppc.rpm ca12a6525962d0ec91423276c3bca74bbd233247 kernel-2.6.22.9-91.fc7.src.rpm
This update can be installed with the "yum" update program. Use su -c 'yum update kernel' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/. --------------------------------------------------------------------------------
package-announce@lists.fedoraproject.org