RHEL 2.1 : kernel (RHSA-2002:128)

low Nessus Plugin ID 12306

Synopsis

The remote Red Hat host is missing one or more security updates.

Description

This kernel update is available for Red Hat Linux Advanced Server 2.1.

It includes a fix for an information security bug, various kernel bug fixes, and updated device drivers.

[2002-07-29] This release is a rebuild for adding exported symbols for Veritas.

This kernel fixes an information security bug. When running enterprise kernels previous to version 2.4.9-e.8, information in the Intel SSE XMM registers could 'leak' between processes under certain circumstances.

This update also includes fixes for the following bugs :

- Creation of an Oracle SGA greater than 8 GB on 16 GB or greater machine when using bigpages and shmfs - Sendmail running out of flocks - Unreliable rebooting with the 'reboot=bios' boot option - Potential memory corruption on systems with more than 4 GB - An AIO write deadlock - IOAPIC warnings on one platform - Potentially miscompiled code in xor.h (though kernel engineering research does not indicate that our compiler miscompiles this code)

This kernel also has extra exported symbols removed.

This new kernel also includes several updated device drivers. The aic7xxx_mod driver has been updated to a new version, fixing several bugs, the tg3 driver has also been updated to a new version to fix various bugs, and the qla2300 driver has some small bug fixes and has been updated to work with the QLogic 2340 HBA and PowerVault 660F arrays. Additions to the SCSI LUNs 'white list' have also been made to support more fibre channel arrays.

[2002-07-29] This new kernel is a rebuild for adding exported symbols for Veritas.

Solution

Update the affected packages.

See Also

https://access.redhat.com/security/cve/cve-2002-1571

https://access.redhat.com/errata/RHSA-2002:128

Plugin Details

Severity: Low

ID: 12306

File Name: redhat-RHSA-2002-128.nasl

Version: 1.25

Type: local

Agent: unix

Published: 7/6/2004

Updated: 1/14/2021

Supported Sensors: Frictionless Assessment AWS, Frictionless Assessment Azure, Frictionless Assessment Agent, Nessus Agent, Agentless Assessment, Nessus

Risk Information

VPR

Risk Factor: Low

Score: 3.4

CVSS v2

Risk Factor: Low

Base Score: 2.1

Vector: CVSS2#AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Information

CPE: p-cpe:/a:redhat:enterprise_linux:kernel, p-cpe:/a:redhat:enterprise_linux:kernel-boot, p-cpe:/a:redhat:enterprise_linux:kernel-debug, p-cpe:/a:redhat:enterprise_linux:kernel-doc, p-cpe:/a:redhat:enterprise_linux:kernel-enterprise, p-cpe:/a:redhat:enterprise_linux:kernel-headers, p-cpe:/a:redhat:enterprise_linux:kernel-smp, p-cpe:/a:redhat:enterprise_linux:kernel-source, p-cpe:/a:redhat:enterprise_linux:kernel-summit, cpe:/o:redhat:enterprise_linux:2.1

Required KB Items: Host/local_checks_enabled, Host/RedHat/release, Host/RedHat/rpm-list, Host/cpu

Patch Publication Date: 7/29/2002

Vulnerability Publication Date: 12/31/2002

Reference Information

CVE: CVE-2002-1571

RHSA: 2002:128