Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2019-0375

Опубликовано: 19 фев. 2019
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2019-0375: flatpak security update (IMPORTANT)

[1.0.2-4]

  • Tweak /proc sandbox patch (#1675433)

[1.0.2-3]

  • Do not mount /proc in root sandbox (#1675433)

Обновленные пакеты

Oracle Linux 7

Oracle Linux aarch64

flatpak

1.0.2-4.el7_6

flatpak-builder

1.0.0-4.el7_6

flatpak-devel

1.0.2-4.el7_6

flatpak-libs

1.0.2-4.el7_6

Oracle Linux x86_64

flatpak

1.0.2-4.el7_6

flatpak-builder

1.0.0-4.el7_6

flatpak-devel

1.0.2-4.el7_6

flatpak-libs

1.0.2-4.el7_6

Связанные CVE

Связанные уязвимости

CVSS3: 8.2
ubuntu
больше 6 лет назад

Flatpak before 1.0.7, and 1.1.x and 1.2.x before 1.2.3, exposes /proc in the apply_extra script sandbox, which allows attackers to modify a host-side executable file.

CVSS3: 7.7
redhat
больше 6 лет назад

Flatpak before 1.0.7, and 1.1.x and 1.2.x before 1.2.3, exposes /proc in the apply_extra script sandbox, which allows attackers to modify a host-side executable file.

CVSS3: 8.2
nvd
больше 6 лет назад

Flatpak before 1.0.7, and 1.1.x and 1.2.x before 1.2.3, exposes /proc in the apply_extra script sandbox, which allows attackers to modify a host-side executable file.

CVSS3: 8.2
debian
больше 6 лет назад

Flatpak before 1.0.7, and 1.1.x and 1.2.x before 1.2.3, exposes /proc ...

CVSS3: 8.2
github
больше 3 лет назад

Flatpak before 1.0.7, and 1.1.x and 1.2.x before 1.2.3, exposes /proc in the apply_extra script sandbox, which allows attackers to modify a host-side executable file.