Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2016-0188

Опубликовано: 16 фев. 2016
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2016-0188: sos security and bug fix update (MODERATE)

[3.2-35.0.1.3]

  • Recreated patch for [orabug 18913115]
  • Make the selinux plugin fixfiles option useful (John Haxby) [orabug 18913115]
  • Added remove_gpgstring.patch [Bug 18313898]
  • Added sos-oracle-enterprise.patch
  • Added sos-oraclelinux-vendor-vendorurl.patch

[= 3.2-37]

  • [sosreport] prepare report in a private subdirectory (updated) Resolves: bz1290954

[= 3.2-35.2]

  • [sosreport] prepare report in a private subdirectory (updated) Resolves: bz1290954

[= 3.2-35.1]

  • [ceph] collect /var/lib/ceph and /var/run/ceph Resolves: bz1291347
  • [sosreport] prepare report in a private subdirectory Resolves: bz1290954

Обновленные пакеты

Oracle Linux 7

Oracle Linux x86_64

sos

3.2-35.0.1.el7_2.3

Связанные CVE

Связанные уязвимости

CVSS3: 7.8
ubuntu
почти 8 лет назад

sosreport in SoS 3.x allows local users to obtain sensitive information from sosreport files or gain privileges via a symlink attack on an archive file in a temporary directory, as demonstrated by sosreport-$hostname-$date.tar in /tmp/sosreport-$hostname-$date.

redhat
почти 10 лет назад

sosreport in SoS 3.x allows local users to obtain sensitive information from sosreport files or gain privileges via a symlink attack on an archive file in a temporary directory, as demonstrated by sosreport-$hostname-$date.tar in /tmp/sosreport-$hostname-$date.

CVSS3: 7.8
nvd
почти 8 лет назад

sosreport in SoS 3.x allows local users to obtain sensitive information from sosreport files or gain privileges via a symlink attack on an archive file in a temporary directory, as demonstrated by sosreport-$hostname-$date.tar in /tmp/sosreport-$hostname-$date.

CVSS3: 7.8
debian
почти 8 лет назад

sosreport in SoS 3.x allows local users to obtain sensitive informatio ...

CVSS3: 7.8
github
больше 3 лет назад

SoSReport Predictable Tmp File Names