Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2019-4869

Опубликовано: 17 дек. 2019
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2019-4869: grub2 security update (IMPORTANT)

[2.02-78.0.2]

  • grub-set-bootflag: fix grubenv update method, fix CVE-2019-14865 [Orabug: 30607067]

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

grub2-common

2.02-78.0.2.el8

grub2-efi-aa64

2.02-78.0.2.el8

grub2-efi-aa64-cdboot

2.02-78.0.2.el8

grub2-efi-aa64-modules

2.02-78.0.2.el8

grub2-efi-ia32-modules

2.02-78.0.2.el8

grub2-efi-x64-modules

2.02-78.0.2.el8

grub2-pc-modules

2.02-78.0.2.el8

grub2-tools

2.02-78.0.2.el8

grub2-tools-extra

2.02-78.0.2.el8

grub2-tools-minimal

2.02-78.0.2.el8

Oracle Linux x86_64

grub2-common

2.02-78.0.2.el8

grub2-efi-aa64-modules

2.02-78.0.2.el8

grub2-efi-ia32

2.02-78.0.2.el8

grub2-efi-ia32-cdboot

2.02-78.0.2.el8

grub2-efi-ia32-modules

2.02-78.0.2.el8

grub2-efi-x64

2.02-78.0.2.el8

grub2-efi-x64-cdboot

2.02-78.0.2.el8

grub2-efi-x64-modules

2.02-78.0.2.el8

grub2-pc

2.02-78.0.2.el8

grub2-pc-modules

2.02-78.0.2.el8

grub2-tools

2.02-78.0.2.el8

grub2-tools-efi

2.02-78.0.2.el8

grub2-tools-extra

2.02-78.0.2.el8

grub2-tools-minimal

2.02-78.0.2.el8

Связанные CVE

Связанные уязвимости

CVSS3: 5.9
ubuntu
около 6 лет назад

A flaw was found in the grub2-set-bootflag utility of grub2. A local attacker could run this utility under resource pressure (for example by setting RLIMIT), causing grub2 configuration files to be truncated and leaving the system unbootable on subsequent reboots.

CVSS3: 5.9
redhat
около 6 лет назад

A flaw was found in the grub2-set-bootflag utility of grub2. A local attacker could run this utility under resource pressure (for example by setting RLIMIT), causing grub2 configuration files to be truncated and leaving the system unbootable on subsequent reboots.

CVSS3: 5.9
nvd
около 6 лет назад

A flaw was found in the grub2-set-bootflag utility of grub2. A local attacker could run this utility under resource pressure (for example by setting RLIMIT), causing grub2 configuration files to be truncated and leaving the system unbootable on subsequent reboots.

CVSS3: 5.9
debian
около 6 лет назад

A flaw was found in the grub2-set-bootflag utility of grub2. A local a ...

CVSS3: 5.5
github
больше 3 лет назад

A flaw was found in the grub2-set-bootflag utility of grub2. A local attacker could run this utility under resource pressure (for example by setting RLIMIT), causing grub2 configuration files to be truncated and leaving the system unbootable on subsequent reboots.

Уязвимость ELSA-2019-4869