Oracle WebLogic flaw under active exploit now
Linux 7.3 restricts the AF_ALG crypto interface to an allowlist by default. The new `af_alg_restrict` sysctl defaults to `1`, blocking kernel crypto access except for algorithms used by IWD, BlueZ, and cryptsetup. Custom tooling calling AF_ALG outside this list will fail unless you set `af_alg_restrict=0`.
This follows years of security issues and a phased deprecation that removed zero-copy in 7.1. Oracle WebLogic is under active exploit this week, but source details are incomplete — we're tracking CVE identifier and affected versions. Intel posted DRM Fabric RFC days after AMD's UALink patches, signaling competing approaches to multi-GPU topology management.
In this issue:
- Linux 7.3 AF_ALG crypto restriction: allowlist now default
- Oracle WebLogic active exploit: details pending
- Linux 7.3 RAID 5/6 algorithm selection improvements
- Intel DRM Fabric RFC vs. AMD UALink for GPU interconnects
Insufficient source material provided. The source document contains only headline and navigation elements without article content. Required technical details missing: CVE identifier, affected WebLogic versions, CVSS score, attack vector specifics, patch release information, and Oracle advisory references. Cannot produce accurate technical content without these facts.
Intel Proposes DRM Fabric Framework Days After AMD UALink Patches
The Signal
Intel engineers posted DRM Fabric RFC for vendor-neutral GPU interconnect topology management on Linux.
What Changed
- DRM Fabric targets scale-up interconnects for GPUs and AI accelerators with topology model.
- Uses Generic Netlink for multi-object enumeration, avoiding sysfs mapping limitations for fabric graphs.
- Framework represents topology and control state only, not data transport or routing.
- Initial patches provide read-only topology queries; provisioning operations remain under review.
- No production provider implementation included; Intel tested against AMDGPU xGMI as reference.
Operational Impact
This is early-stage proposal with no deployable code. Teams managing multi-GPU HPC or AI infrastructure see no immediate changes. DRM Fabric aims to provide unified topology discovery across vendors, but requires hardware vendor adoption and driver implementations. AMD's UALink patches posted August 21 provide a production path for AMD fabric management today.
Watch For
Provider implementations from Intel (likely for upcoming Crescent Island accelerators) or other vendors. Whether AMD adopts DRM Fabric or continues UALink-specific approach will signal industry direction.
Linux 7.3 Improves RAID 5/6 Algorithm Selection
The Signal
Linux 7.3 refines boot-time benchmarking that selects optimal RAID XOR and RAID6 code paths.
What Changed
- Kernel now tests RAID algorithms with 4+1 disk configuration for realistic load calculation.
- Throughput reporting switched from parity disk metrics to data disk throughput.
- KUnit benchmark coverage added for XOR and RAID6 code paths.
- Algorithm selection runs at module initialization to pick fastest AVX2 or AVX-512 methods.
- Changes merged via Andrew Morton's non-MM pull request for Linux 7.3.
Operational Impact
Software RAID 5/6 arrays will get better hardware acceleration matching without manual tuning. The kernel's boot-time speed test now more accurately reflects multi-disk workloads. Systems with AVX2 or AVX-512 CPUs should see the kernel select faster acceleration paths automatically.
Watch For
No benchmark data quantified the improvements. Real-world gains will depend on CPU generation and disk count.
Linux 7.3 Restricts AF_ALG Crypto Interface After Years of Security Issues
The Signal
Linux 7.3 restricts AF_ALG to an algorithm allowlist by default via new af_alg_restrict sysctl.
What Changed
- New af_alg_restrict sysctl defaults to `1`, enabling allowlist-only mode for kernel crypto access.
- Allowlist permits AES/SHA/HMAC variants used by IWD, BlueZ, and cryptsetup only.
- Setting `af_alg_restrict=0` restores unrestricted access; `af_alg_restrict=2` blocks AF_ALG entirely.
- Follows multi-cycle deprecation: zero-copy removed in 7.1, full deprecation in 7.2.
- Change merged in crypto pull for 7.3.
Operational Impact
Applications directly calling AF_ALG for crypto operations outside the allowlist will fail unless `af_alg_restrict` is set to `0`. The allowlist covers algorithms used by IWD wireless daemon, BlueZ Bluetooth stack, and cryptsetup disk encryption. Custom tooling or scripts invoking kernel crypto via AF_ALG for hashing or ciphers not in the allowlist must migrate to userspace crypto libraries or adjust the sysctl.
Watch For
Full AF_ALG removal is likely in future kernel cycles. Test any custom crypto tooling against the allowlist now.
Quick Reads
- Oracle WebLogic — Critical security flaw now under active exploit; patch details pending.
- Intel DRM Fabric — Proposes vendor-neutral GPU interconnect framework days after AMD UALink patches posted.
- Linux 7.3 RAID — Improves RAID 5/6 algorithm selection with realistic 4+1 disk benchmarking.
- Linux 7.3 AF_ALG — Restricts crypto interface to allowlist by default after years of vulnerabilities.
Subscribe to Signal Field
Data & infrastructure news. Subscribers get new posts by email a day before they go live on the site.
Email signup is coming soon — in the meantime, follow the Signal Field RSS feed.