Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2016-2702

Опубликовано: 14 нояб. 2016
Источник: oracle-oval
Платформа: Oracle Linux 6
Платформа: Oracle Linux 7

Описание

ELSA-2016-2702: policycoreutils security update (IMPORTANT)

[2.0.83-30.1.0.1]

  • Lazy unmount private, shared entry(Joe Jin)[orabug 12560705]

[2.0.83-30.1]

  • sandbox: create a new session for sandboxed processes Resolves: CVE-2016-7545

Обновленные пакеты

Oracle Linux 6

Oracle Linux x86_64

policycoreutils

2.0.83-30.1.0.1.el6_8

policycoreutils-gui

2.0.83-30.1.0.1.el6_8

policycoreutils-newrole

2.0.83-30.1.0.1.el6_8

policycoreutils-python

2.0.83-30.1.0.1.el6_8

policycoreutils-sandbox

2.0.83-30.1.0.1.el6_8

Oracle Linux i686

policycoreutils

2.0.83-30.1.0.1.el6_8

policycoreutils-gui

2.0.83-30.1.0.1.el6_8

policycoreutils-newrole

2.0.83-30.1.0.1.el6_8

policycoreutils-python

2.0.83-30.1.0.1.el6_8

policycoreutils-sandbox

2.0.83-30.1.0.1.el6_8

Oracle Linux sparc64

policycoreutils

2.0.83-30.1.0.1.el6_8

policycoreutils-gui

2.0.83-30.1.0.1.el6_8

policycoreutils-newrole

2.0.83-30.1.0.1.el6_8

policycoreutils-python

2.0.83-30.1.0.1.el6_8

policycoreutils-sandbox

2.0.83-30.1.0.1.el6_8

Oracle Linux 7

Oracle Linux x86_64

policycoreutils

2.5-9.0.1.el7

policycoreutils-devel

2.5-9.0.1.el7

policycoreutils-gui

2.5-9.0.1.el7

policycoreutils-newrole

2.5-9.0.1.el7

policycoreutils-python

2.5-9.0.1.el7

policycoreutils-restorecond

2.5-9.0.1.el7

policycoreutils-sandbox

2.5-9.0.1.el7

Связанные CVE

Связанные уязвимости

CVSS3: 8.8
ubuntu
больше 8 лет назад

SELinux policycoreutils allows local users to execute arbitrary commands outside of the sandbox via a crafted TIOCSTI ioctl call.

CVSS3: 8.6
redhat
почти 9 лет назад

SELinux policycoreutils allows local users to execute arbitrary commands outside of the sandbox via a crafted TIOCSTI ioctl call.

CVSS3: 8.8
nvd
больше 8 лет назад

SELinux policycoreutils allows local users to execute arbitrary commands outside of the sandbox via a crafted TIOCSTI ioctl call.

CVSS3: 8.8
debian
больше 8 лет назад

SELinux policycoreutils allows local users to execute arbitrary comman ...

suse-cvrf
больше 8 лет назад

Security update for policycoreutils