Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2017-0907

Опубликовано: 12 апр. 2017
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2017-0907: util-linux security and bug fix update (MODERATE)

[2.23.2-33.0.1.el7_u3.2]

  • fix Oracle bug 23001516 - backport lscpu: correct the Virtualization type on Xen DomU PV guest
  • Reviewed-by: Joe Jin joe.jin@oracle.com

[2.23.2-33.el7_3.2]

  • fix CVE-2017-2616 - Sending SIGKILL to other processes with root privileges via su

[2.23.2-33.el7_3.1]

  • fix #1405238 - findmnt --target behaviour changed in 7.3, shows all mount-points in chroot

Обновленные пакеты

Oracle Linux 7

Oracle Linux x86_64

libblkid

2.23.2-33.0.1.el7_3.2

libblkid-devel

2.23.2-33.0.1.el7_3.2

libmount

2.23.2-33.0.1.el7_3.2

libmount-devel

2.23.2-33.0.1.el7_3.2

libuuid

2.23.2-33.0.1.el7_3.2

libuuid-devel

2.23.2-33.0.1.el7_3.2

util-linux

2.23.2-33.0.1.el7_3.2

uuidd

2.23.2-33.0.1.el7_3.2

Связанные CVE

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 7 лет назад

A race condition was found in util-linux before 2.32.1 in the way su handled the management of child processes. A local authenticated attacker could use this flaw to kill other processes with root privileges under specific conditions.

CVSS3: 5.5
redhat
больше 8 лет назад

A race condition was found in util-linux before 2.32.1 in the way su handled the management of child processes. A local authenticated attacker could use this flaw to kill other processes with root privileges under specific conditions.

CVSS3: 5.5
nvd
больше 7 лет назад

A race condition was found in util-linux before 2.32.1 in the way su handled the management of child processes. A local authenticated attacker could use this flaw to kill other processes with root privileges under specific conditions.

CVSS3: 5.5
debian
больше 7 лет назад

A race condition was found in util-linux before 2.32.1 in the way su h ...

suse-cvrf
больше 8 лет назад

Security update for util-linux