Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2019-0049

Опубликовано: 14 янв. 2019
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2019-0049: systemd security update (IMPORTANT)

[219-62.0.4]

  • do not create utmp update symlinks for reboot and poweroff [Orabug: 27854896]
  • OL7 udev rule for virtio net standby interface [Orabug: 28826743]
  • fix _netdev is missing for iscsi entry in /etc/fstab [Orabug: 25897792] (tony.l.lam@oracle.com)
  • set 'RemoveIPC=no' in logind.conf as default for OL7.2 [22224874]
  • allow dm remove ioctl to co-operate with UEK3 (Vaughan Cao) [Orabug: 18467469]
  • add hv dynamic memory support (Jerry Snitselaar) [Orabug: 18621475]

[219-62.2]

  • journald: do not store the iovec entry for process commandline on stack (#1657788)
  • journald: set a limit on the number of fields (1k) (#1657792)
  • journal-remote: set a limit on the number of fields in a message (#1657792)

[219-62.1]

  • dhcp6: make sure we have enough space for the DHCP6 option header (CVE-2018-15688)

Обновленные пакеты

Oracle Linux 7

Oracle Linux aarch64

libgudev1

219-62.0.4.el7_6.2

libgudev1-devel

219-62.0.4.el7_6.2

systemd

219-62.0.4.el7_6.2

systemd-devel

219-62.0.4.el7_6.2

systemd-journal-gateway

219-62.0.4.el7_6.2

systemd-libs

219-62.0.4.el7_6.2

systemd-networkd

219-62.0.4.el7_6.2

systemd-python

219-62.0.4.el7_6.2

systemd-resolved

219-62.0.4.el7_6.2

systemd-sysv

219-62.0.4.el7_6.2

Oracle Linux x86_64

libgudev1

219-62.0.4.el7_6.2

libgudev1-devel

219-62.0.4.el7_6.2

systemd

219-62.0.4.el7_6.2

systemd-devel

219-62.0.4.el7_6.2

systemd-journal-gateway

219-62.0.4.el7_6.2

systemd-libs

219-62.0.4.el7_6.2

systemd-networkd

219-62.0.4.el7_6.2

systemd-python

219-62.0.4.el7_6.2

systemd-resolved

219-62.0.4.el7_6.2

systemd-sysv

219-62.0.4.el7_6.2

Связанные уязвимости

CVSS3: 8.8
ubuntu
почти 7 лет назад

A buffer overflow vulnerability in the dhcp6 client of systemd allows a malicious dhcp6 server to overwrite heap memory in systemd-networkd. Affected releases are systemd: versions up to and including 239.

CVSS3: 8.8
redhat
почти 7 лет назад

A buffer overflow vulnerability in the dhcp6 client of systemd allows a malicious dhcp6 server to overwrite heap memory in systemd-networkd. Affected releases are systemd: versions up to and including 239.

CVSS3: 8.8
nvd
почти 7 лет назад

A buffer overflow vulnerability in the dhcp6 client of systemd allows a malicious dhcp6 server to overwrite heap memory in systemd-networkd. Affected releases are systemd: versions up to and including 239.

CVSS3: 8.8
msrc
около 5 лет назад

Описание отсутствует

CVSS3: 8.8
debian
почти 7 лет назад

A buffer overflow vulnerability in the dhcp6 client of systemd allows ...