Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2020-5859

Опубликовано: 24 сент. 2020
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2020-5859: olcne nginx security update (IMPORTANT)

olcne [1.1.6-1]

  • support upgrading nginx
  • Adress CVE-2019-9511
  • Adress CVE-2018-16845
  • Adress CVE-2017-7529
  • support upgrading flannel

nginx [1.17.7-2]

  • Changed nginx home dir to /var/lib/nginx for consistency

[1.17.7-1]

  • Added Oracle Specific Build Files for nginx
  • Adress CVE-2019-9511
  • Adress CVE-2018-16845
  • Adress CVE-2017-7529

Обновленные пакеты

Oracle Linux 7

Oracle Linux x86_64

nginx

1.17.7-2.el7

nginx-all-modules

1.17.7-2.el7

nginx-filesystem

1.17.7-2.el7

nginx-mod-http-image-filter

1.17.7-2.el7

nginx-mod-http-perl

1.17.7-2.el7

nginx-mod-http-xslt-filter

1.17.7-2.el7

nginx-mod-mail

1.17.7-2.el7

nginx-mod-stream

1.17.7-2.el7

olcne-agent

1.1.6-1.el7

olcne-api-server

1.1.6-1.el7

olcne-istio-chart

1.1.6-1.el7

olcne-nginx

1.1.6-1.el7

olcne-prometheus-chart

1.1.6-1.el7

olcne-utils

1.1.6-1.el7

olcnectl

1.1.6-1.el7

Связанные уязвимости

oracle-oval
больше 4 лет назад

ELSA-2020-5862: olcne nginx security update (IMPORTANT)

CVSS3: 7.5
ubuntu
почти 8 лет назад

Nginx versions since 0.5.6 up to and including 1.13.2 are vulnerable to integer overflow vulnerability in nginx range filter module resulting into leak of potentially sensitive information triggered by specially crafted request.

CVSS3: 5.3
redhat
почти 8 лет назад

Nginx versions since 0.5.6 up to and including 1.13.2 are vulnerable to integer overflow vulnerability in nginx range filter module resulting into leak of potentially sensitive information triggered by specially crafted request.

CVSS3: 7.5
nvd
почти 8 лет назад

Nginx versions since 0.5.6 up to and including 1.13.2 are vulnerable to integer overflow vulnerability in nginx range filter module resulting into leak of potentially sensitive information triggered by specially crafted request.

CVSS3: 7.5
debian
почти 8 лет назад

Nginx versions since 0.5.6 up to and including 1.13.2 are vulnerable t ...