Tag: gradual-rollout

CloudLinux 6 kernel v.1.4.81 has been scheduled for gradual rollout

kernel

CloudLinux 6 kernel version 2.6.32-954.3.5.lve1.4.81 has been scheduled for gradual rollout from our production repository.

Rollout slot: 4

Rolled out to: 1%

ETA for 100%: February, 16

Changelog

  • CKSIX-268: futex: Handle faults correctly for PI futexes
  • CKSIX-268: futex: Provide and use pi_state_update_owner()

Update

yum install kernel-2.6.32-954.3.5.lve1.4.81.el6

Immediate update (via bypass)

yum install kernel-2.6.32-954.3.5.lve1.4.81.el6 --enablerepo=cloudlinux-rollout-4-bypass

An updated LVE Manager package has been scheduled for gradual rollout

lve-manager

An updated lvemanager-6.3.7.1-1 package has been scheduled for gradual rollout from our production repository.

Rollout slot: 5

Rolled out to: 25.6%

ETA for 100% rollout: February, 18

Changelog

lvemanager-6.3.7.1-1

  • LVEMAN-1718: Fixed a security issue in the cloudlinux-selector

Update command

yum update lvemanager

Immediate update (via bypass)

yum update lvemanager --enablerepo=cloudlinux-rollout-5-bypass

A new sudo package with the CVE-2021-3156 fix within CloudLinux 6 Extended Lifecycle Support has been rolled out to 100%

Extended-CL

A new sudo package with the CVE-2021-3156 fix within CloudLinux 6 extended lifecycle support has been rolled out to 100% and is now available for download from our production repository.

Changelog

sudo-1.8.6p3-30.cloudlinux.els6

  • Fixed Heap-based buffer overflow in Sudo (CVE-2021-3156)

Update command

yum update sudo*

CVE-2021-3156 description

Sudo before 1.9.5p2 has a Heap-based Buffer Overflow, allowing privilege escalation to root via "sudoedit -s" and a command-line argument that ends with a single backslash character.

A new sudo package with the CVE-2021-3156 fix within CentOS 6 Extended Lifecycle Support has been rolled out to 100%

Extended-CentOS

A new sudo package with the CVE-2021-3156 fix within CentOS 6 extended lifecycle support has been rolled out to 100% and is now available for download from our production repository.

CloudLinux 7 and CloudLinux 6 Hybrid kernel v.1.5-44 has been scheduled for gradual rollout

kernel

CloudLinux 7 and CloudLinux 6 Hybrid kernel version 3.10.0-962.3.2.lve1.5.44 has been scheduled for gradual rollout from our production repository.

A new sudo package with the CVE-2021-3156 fix within CentOS 6 Extended Lifecycle Support has been scheduled for gradual rollout

Extended-CentOS

A new sudo package with the CVE-2021-3156 fix within CentOS 6 extended lifecycle support has been scheduled for gradual rollout from our production repository.

A new sudo package with the CVE-2021-3156 fix within CloudLinux 6 Extended Lifecycle Support has been scheduled for gradual rollout

Extended-CL

A new sudo package with the CVE-2021-3156 fix within CloudLinux 6 extended lifecycle support has been scheduled for gradual rollout from our production repository.

Rollout slot: 4

Rolled out to: 1%

ETA for 100% rollout: February, 10

Changelog

sudo-1.8.6p3-30.cloudlinux.els6

  • Fixed Heap-based buffer overflow in Sudo (CVE-2021-3156)

Update command

yum update sudo*

Immediate update (via bypass)

yum update sudo* --enablerepo=cloudlinux-rollout-4-bypass

CVE-2021-3156 description

Sudo before 1.9.5p2 has a Heap-based Buffer Overflow, allowing privilege escalation to root via "sudoedit -s" and a command-line argument that ends with a single backslash character.

A new PHP package within CloudLinux 6 Extended Lifecycle Support has been scheduled for gradual rollout

Extended-CL

A new PHP package within CloudLinux 6 extended lifecycle support has been scheduled for gradual rollout from our production repository.

A new PHP package within CentOS 6 Extended Lifecycle Support has been scheduled for gradual rollout

Extended-CentOS

A new PHP package within CentOS 6 extended lifecycle support has been scheduled for gradual rollout from our production repository.

Kernel module v.2.0-24 for CloudLinux 8 and CloudLinux 7 Hybrid has been scheduled for gradual rollout

kernel-module

Kernel module kmod-lve-2.0-24 for CloudLinux 8 and CloudLinux 7 Hybrid has been scheduled for gradual rollout from our production repository.

Rollout slot: 1

Rolled out to: 0.2%

ETA for 100% rollout: February, 15

Changelog

  • KMODLVE-380: enable sleep in hooks and avoid calling the hooked func
  • KMODLVE-385: prevent jump out of the container's root via procfs symlinks
  • KMODLVE-383: do not cpu-starve in __lve_init
  • CLKRN-659: fix procfs access
  • KMODLVE-377: use module_mutex when resolving names
  • KMODLVE-374: remove trace_printk() calls
  • KMODLVE-353: lve_enter_pid_flags() API call
  • KMODLVE-373: do not kill unkillable threads in lve_enter
 
imunify-logo

WEB SERVER SECURITY BLOG

Subscribe to CloudLinux Newsletter