Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2019-4869

Опубликовано: 17 дек. 2019
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2019-4869: grub2 security update (IMPORTANT)

[2.02-78.0.2]

  • grub-set-bootflag: fix grubenv update method, fix CVE-2019-14865 [Orabug: 30607067]

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

grub2-common

2.02-78.0.2.el8

grub2-efi-aa64

2.02-78.0.2.el8

grub2-efi-aa64-cdboot

2.02-78.0.2.el8

grub2-efi-aa64-modules

2.02-78.0.2.el8

grub2-efi-ia32-modules

2.02-78.0.2.el8

grub2-efi-x64-modules

2.02-78.0.2.el8

grub2-pc-modules

2.02-78.0.2.el8

grub2-tools

2.02-78.0.2.el8

grub2-tools-extra

2.02-78.0.2.el8

grub2-tools-minimal

2.02-78.0.2.el8

Oracle Linux x86_64

grub2-common

2.02-78.0.2.el8

grub2-efi-aa64-modules

2.02-78.0.2.el8

grub2-efi-ia32

2.02-78.0.2.el8

grub2-efi-ia32-cdboot

2.02-78.0.2.el8

grub2-efi-ia32-modules

2.02-78.0.2.el8

grub2-efi-x64

2.02-78.0.2.el8

grub2-efi-x64-cdboot

2.02-78.0.2.el8

grub2-efi-x64-modules

2.02-78.0.2.el8

grub2-pc

2.02-78.0.2.el8

grub2-pc-modules

2.02-78.0.2.el8

grub2-tools

2.02-78.0.2.el8

grub2-tools-efi

2.02-78.0.2.el8

grub2-tools-extra

2.02-78.0.2.el8

grub2-tools-minimal

2.02-78.0.2.el8

Связанные CVE

Связанные уязвимости

CVSS3: 5.9
ubuntu
больше 6 лет назад

A flaw was found in the grub2-set-bootflag utility of grub2. A local attacker could run this utility under resource pressure (for example by setting RLIMIT), causing grub2 configuration files to be truncated and leaving the system unbootable on subsequent reboots.

CVSS3: 5.9
redhat
больше 6 лет назад

A flaw was found in the grub2-set-bootflag utility of grub2. A local attacker could run this utility under resource pressure (for example by setting RLIMIT), causing grub2 configuration files to be truncated and leaving the system unbootable on subsequent reboots.

CVSS3: 5.9
nvd
больше 6 лет назад

A flaw was found in the grub2-set-bootflag utility of grub2. A local attacker could run this utility under resource pressure (for example by setting RLIMIT), causing grub2 configuration files to be truncated and leaving the system unbootable on subsequent reboots.

CVSS3: 5.9
debian
больше 6 лет назад

A flaw was found in the grub2-set-bootflag utility of grub2. A local a ...

CVSS3: 5.5
github
около 4 лет назад

A flaw was found in the grub2-set-bootflag utility of grub2. A local attacker could run this utility under resource pressure (for example by setting RLIMIT), causing grub2 configuration files to be truncated and leaving the system unbootable on subsequent reboots.