Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2019-3610

Опубликовано: 14 нояб. 2019
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2019-3610: libqb security and bug fix update (MODERATE)

[1.0.3-10] Avoid deadlock in IPC connections Resolves: rhbz#1718773

[1.0.3-9] Improve security of SHM files used for IPCs Resolves: rhbz#1714854

[1.0.3-8]

  • Add RHEL-8.1 gating tests Resolves: rhbz#1682119

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

libqb

1.0.3-10.el8

libqb-devel

1.0.3-10.el8

Oracle Linux x86_64

libqb

1.0.3-10.el8

libqb-devel

1.0.3-10.el8

Связанные CVE

Связанные уязвимости

CVSS3: 7.1
ubuntu
больше 6 лет назад

libqb before 1.0.5 allows local users to overwrite arbitrary files via a symlink attack, because it uses predictable filenames (under /dev/shm and /tmp) without O_EXCL.

CVSS3: 6.5
redhat
почти 7 лет назад

libqb before 1.0.5 allows local users to overwrite arbitrary files via a symlink attack, because it uses predictable filenames (under /dev/shm and /tmp) without O_EXCL.

CVSS3: 7.1
nvd
больше 6 лет назад

libqb before 1.0.5 allows local users to overwrite arbitrary files via a symlink attack, because it uses predictable filenames (under /dev/shm and /tmp) without O_EXCL.

CVSS3: 7.1
debian
больше 6 лет назад

libqb before 1.0.5 allows local users to overwrite arbitrary files via ...

suse-cvrf
больше 6 лет назад

Security update for libqb