Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2018-1224

Опубликовано: 24 апр. 2018
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2018-1224: PackageKit security update (MODERATE)

[1.1.5-2.0.1]

  • remove PackageKit-0.3.8-Fedora-Vendor.conf.patch

[1.1.5-2]

  • Fixes CVE-2018-1106
  • Resolves: rhbz#1566425

Обновленные пакеты

Oracle Linux 7

Oracle Linux aarch64

PackageKit

1.1.5-2.0.1.el7_5

PackageKit-command-not-found

1.1.5-2.0.1.el7_5

PackageKit-cron

1.1.5-2.0.1.el7_5

PackageKit-glib

1.1.5-2.0.1.el7_5

PackageKit-glib-devel

1.1.5-2.0.1.el7_5

PackageKit-gstreamer-plugin

1.1.5-2.0.1.el7_5

PackageKit-gtk3-module

1.1.5-2.0.1.el7_5

PackageKit-yum

1.1.5-2.0.1.el7_5

PackageKit-yum-plugin

1.1.5-2.0.1.el7_5

Oracle Linux x86_64

PackageKit

1.1.5-2.0.1.el7_5

PackageKit-command-not-found

1.1.5-2.0.1.el7_5

PackageKit-cron

1.1.5-2.0.1.el7_5

PackageKit-glib

1.1.5-2.0.1.el7_5

PackageKit-glib-devel

1.1.5-2.0.1.el7_5

PackageKit-gstreamer-plugin

1.1.5-2.0.1.el7_5

PackageKit-gtk3-module

1.1.5-2.0.1.el7_5

PackageKit-yum

1.1.5-2.0.1.el7_5

PackageKit-yum-plugin

1.1.5-2.0.1.el7_5

Связанные CVE

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 7 лет назад

An authentication bypass flaw has been found in PackageKit before 1.1.10 that allows users without administrator privileges to install signed packages. A local attacker can use this vulnerability to install vulnerable packages to further compromise a system.

CVSS3: 5.5
redhat
больше 7 лет назад

An authentication bypass flaw has been found in PackageKit before 1.1.10 that allows users without administrator privileges to install signed packages. A local attacker can use this vulnerability to install vulnerable packages to further compromise a system.

CVSS3: 5.5
nvd
больше 7 лет назад

An authentication bypass flaw has been found in PackageKit before 1.1.10 that allows users without administrator privileges to install signed packages. A local attacker can use this vulnerability to install vulnerable packages to further compromise a system.

CVSS3: 5.5
debian
больше 7 лет назад

An authentication bypass flaw has been found in PackageKit before 1.1. ...

suse-cvrf
больше 7 лет назад

Security update for PackageKit