Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2017-1931

Опубликовано: 07 авг. 2017
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2017-1931: bash security and bug fix update (MODERATE)

[4.2.46-28]

  • CVE-2016-9401 - Fix crash when '-' is passed as second sign to popd Resolves: #1429838

[4.2.46-27]

  • CVE-2016-7543: Fix for arbitrary code execution via SHELLOPTS+PS4 variables Resolves: #1426026

[4.2.46-26]

  • CVE-2016-0634: Fix for arbitrary code execution via malicious hostname Resolves: #1379237

[4.2.46-25]

  • Plug a leak related to compound assignments Resolves: #1264101

[4.2.46-24]

  • Recognize cd -e Resolves: #1267478

[4.2.46-23]

  • Add a condition before setting pipeline_pgrp to shell_pgrp Resolves: #1377496

[4.2.46-22]

  • Avoid crash in parameter expansion while expanding long strings Resolves: #1403255

Обновленные пакеты

Oracle Linux 7

Oracle Linux aarch64

bash

4.2.46-28.el7

bash-doc

4.2.46-28.el7

Oracle Linux x86_64

bash

4.2.46-28.el7

bash-doc

4.2.46-28.el7

Связанные уязвимости

oracle-oval
больше 8 лет назад

ELSA-2017-0725: bash security and bug fix update (MODERATE)

suse-cvrf
больше 7 лет назад

Security update for bash

suse-cvrf
около 7 лет назад

Security update for bash

suse-cvrf
больше 7 лет назад

Security update for bash

suse-cvrf
почти 9 лет назад

Security update for bash