Описание
ELSA-2020-1189: libqb security update (MODERATE)
[1.0.1-9] Also add O_EXCL to log_blackbox.c when creating files Resolves: rhbz#1714853
[1.0.1-8] Improve socket security Resolves: rhbz#1714853
Обновленные пакеты
Oracle Linux 7
Oracle Linux aarch64
libqb
1.0.1-9.el7
libqb-devel
1.0.1-9.el7
Oracle Linux x86_64
libqb
1.0.1-9.el7
libqb-devel
1.0.1-9.el7
Связанные CVE
Связанные уязвимости
libqb before 1.0.5 allows local users to overwrite arbitrary files via a symlink attack, because it uses predictable filenames (under /dev/shm and /tmp) without O_EXCL.
libqb before 1.0.5 allows local users to overwrite arbitrary files via a symlink attack, because it uses predictable filenames (under /dev/shm and /tmp) without O_EXCL.
libqb before 1.0.5 allows local users to overwrite arbitrary files via a symlink attack, because it uses predictable filenames (under /dev/shm and /tmp) without O_EXCL.
libqb before 1.0.5 allows local users to overwrite arbitrary files via ...