Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2020-0981

Опубликовано: 26 мар. 2020
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2020-0981: ipmitool security update (IMPORTANT)

[1.8.18-12]

  • Disable -fstrict-aliasing (RPMDiff issue)

[1.8.18-11]

  • Backport fix for CVE-2020-5208

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

exchange-bmc-os-info

1.8.18-12.el8_1

ipmievd

1.8.18-12.el8_1

ipmitool

1.8.18-12.el8_1

Oracle Linux x86_64

exchange-bmc-os-info

1.8.18-12.el8_1

ipmievd

1.8.18-12.el8_1

ipmitool

1.8.18-12.el8_1

Связанные CVE

Связанные уязвимости

CVSS3: 7.7
ubuntu
около 6 лет назад

It's been found that multiple functions in ipmitool before 1.8.19 neglect proper checking of the data received from a remote LAN party, which may lead to buffer overflows and potentially to remote code execution on the ipmitool side. This is especially dangerous if ipmitool is run as a privileged user. This problem is fixed in version 1.8.19.

CVSS3: 8.1
redhat
около 6 лет назад

It's been found that multiple functions in ipmitool before 1.8.19 neglect proper checking of the data received from a remote LAN party, which may lead to buffer overflows and potentially to remote code execution on the ipmitool side. This is especially dangerous if ipmitool is run as a privileged user. This problem is fixed in version 1.8.19.

CVSS3: 7.7
nvd
около 6 лет назад

It's been found that multiple functions in ipmitool before 1.8.19 neglect proper checking of the data received from a remote LAN party, which may lead to buffer overflows and potentially to remote code execution on the ipmitool side. This is especially dangerous if ipmitool is run as a privileged user. This problem is fixed in version 1.8.19.

CVSS3: 8.8
msrc
больше 5 лет назад

remote code execution vulnerability in ipmitool

CVSS3: 7.7
debian
около 6 лет назад

It's been found that multiple functions in ipmitool before 1.8.19 negl ...