{"cves":["CVE-2023-0386"],"cvss":0.0,"database_specific":{"severity":"IMPORTANT"},"description":"- [5.14.0-162.23.1_1.OL9]\n- Update Oracle Linux certificates (Kevin Lyons)\n- Disable signing for aarch64 (Ilya Okomin)\n- Oracle Linux RHCK Module Signing Key was added to the kernel trusted keys list (olkmod_signing_key.pem) [Orabug: 29539237]\n- Update x509.genkey [Orabug: 24817676]\n- Conflict with shim-ia32 and shim-x64 = 15.3-1.0.5\n- Remove nmap references from kernel (Mridula Shastry) [Orabug: 34313944]\n- Remove upstream reference during boot (Kevin Lyons) [Orabug: 34729535]\n\n[5.14.0-162.23.1_1]\n- ovl: fail on invalid uid/gid mapping at copy up (Miklos Szeredi) [2165344 2165345] {CVE-2023-0386}\n- intel_idle: make SPR C1 and C1E be independent (David Arcari) [2168361 2125352]\n- intel_idle: Add a new flag to initialize the AMX state (David Arcari) [2168361 2117766]\n- x86/fpu: Add a helper to prepare AMX state for low-power CPU idle (David Arcari) [2168361 2117766]\n- x86/insn: Add AMX instructions to the x86 instruction decoder (Michael Petlan) [2168361 2140492]\n- futex: Resend potentially swallowed owner death notification (Rafael Aquini) [2168836 2161817]\n- tun: avoid double free in tun_free_netdev (Jon Maloy) [2156373 2156374] {CVE-2022-4744}","id":"ELSA-2023-1703","ovalId":"oval:com.oracle.elsa:def:20231703","source":"oracle_linux","title":"ELSA-2023-1703:  kernel security and bug fix update (IMPORTANT)","url":"https://linux.oracle.com/errata/ELSA-2023-1703.html"}