Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2017-2788

Опубликовано: 26 сент. 2017
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2017-2788: augeas security update (IMPORTANT)

[1.4.0-2.el7_4.1]

  • Fix CVE-2017-7555, improper handling of escaped strings (RHBZ#1481545)

Обновленные пакеты

Oracle Linux 7

Oracle Linux x86_64

augeas

1.4.0-2.el7_4.1

augeas-devel

1.4.0-2.el7_4.1

augeas-libs

1.4.0-2.el7_4.1

Связанные CVE

Связанные уязвимости

CVSS3: 9.8
ubuntu
около 8 лет назад

Augeas versions up to and including 1.8.0 are vulnerable to heap-based buffer overflow due to improper handling of escaped strings. Attacker could send crafted strings that would cause the application using augeas to copy past the end of a buffer, leading to a crash or possible code execution.

CVSS3: 7.8
redhat
около 8 лет назад

Augeas versions up to and including 1.8.0 are vulnerable to heap-based buffer overflow due to improper handling of escaped strings. Attacker could send crafted strings that would cause the application using augeas to copy past the end of a buffer, leading to a crash or possible code execution.

CVSS3: 9.8
nvd
около 8 лет назад

Augeas versions up to and including 1.8.0 are vulnerable to heap-based buffer overflow due to improper handling of escaped strings. Attacker could send crafted strings that would cause the application using augeas to copy past the end of a buffer, leading to a crash or possible code execution.

CVSS3: 9.8
debian
около 8 лет назад

Augeas versions up to and including 1.8.0 are vulnerable to heap-based ...

suse-cvrf
больше 7 лет назад

Security update for augeas