MGASA-2015-0236

Advisory lineage Upstream: 1 Downstream: 0
Upstream
Published: 23 May 2015, 18:53
Last modified:16 Apr 2026, 06:25

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

23 May 2015, 18:53
Published
Vulnerability first disclosed
16 Apr 2026, 06:25
Last Modified
Vulnerability information updated

Description

Updated kernel packages fix security vulnerabilities and bugs Updated kernel fixes security, critical data corruption and pdata loss issues This kernel update is based on upstream -longterm 3.14.43 and fixes a security issue, and critical data corruption and data loss issues: drivers/vhost/scsi.c: potential memory corruption (CVE-2015-4036) ext4 filesystem has a bug that make it possible to lose whole file system block worth of data when we hit the specific interaction with unwritten and delayed extents in status extent tree. when using software raid 0 on SSDs along with trim/discard, any delete or modification of files can lead to random destruction on the filesystem. (this regression was introduced in upstream 3.14.41) For other fixes in this update, see the referenced changelogs.

Affected Systems

  • mageiakernel

    < 3.14.43-1.mga4

  • mageiakernel-userspace-headers

    < 3.14.43-1.mga4

  • mageiakmod-broadcom-wl

    < 6.30.223.141-53.mga4.nonfree

  • mageiakmod-fglrx

    < 14.010.1006-23.mga4.nonfree

  • mageiakmod-nvidia-current

    < 331.113-8.mga4.nonfree

  • mageiakmod-nvidia173

    < 173.14.39-38.mga4.nonfree

  • mageiakmod-nvidia304

    < 304.125-8.mga4.nonfree

  • mageiakmod-vboxadditions

    < 4.3.28-2.mga4

  • mageiakmod-virtualbox

    < 4.3.28-2.mga4

  • mageiakmod-xtables-addons

    < 2.5-18.mga4

References (4)