Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2021-3338

Опубликовано: 01 сент. 2021
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2021-3338: hivex security update (LOW)

[1.3.10-6.12]

  • Limit recursion in ri-records (CVE-2021-3622) resolves: rhbz#1976193

Обновленные пакеты

Oracle Linux 7

Oracle Linux aarch64

hivex

1.3.10-6.12.el7_9

hivex-devel

1.3.10-6.12.el7_9

ocaml-hivex

1.3.10-6.12.el7_9

ocaml-hivex-devel

1.3.10-6.12.el7_9

perl-hivex

1.3.10-6.12.el7_9

python-hivex

1.3.10-6.12.el7_9

ruby-hivex

1.3.10-6.12.el7_9

Oracle Linux x86_64

hivex

1.3.10-6.12.el7_9

hivex-devel

1.3.10-6.12.el7_9

ocaml-hivex

1.3.10-6.12.el7_9

ocaml-hivex-devel

1.3.10-6.12.el7_9

perl-hivex

1.3.10-6.12.el7_9

python-hivex

1.3.10-6.12.el7_9

ruby-hivex

1.3.10-6.12.el7_9

Связанные CVE

Связанные уязвимости

CVSS3: 4.3
ubuntu
больше 3 лет назад

A flaw was found in the hivex library. This flaw allows an attacker to input a specially crafted Windows Registry (hive) file, which would cause hivex to recursively call the _get_children() function, leading to a stack overflow. The highest threat from this vulnerability is to system availability.

CVSS3: 4.3
redhat
около 4 лет назад

A flaw was found in the hivex library. This flaw allows an attacker to input a specially crafted Windows Registry (hive) file, which would cause hivex to recursively call the _get_children() function, leading to a stack overflow. The highest threat from this vulnerability is to system availability.

CVSS3: 4.3
nvd
больше 3 лет назад

A flaw was found in the hivex library. This flaw allows an attacker to input a specially crafted Windows Registry (hive) file, which would cause hivex to recursively call the _get_children() function, leading to a stack overflow. The highest threat from this vulnerability is to system availability.

CVSS3: 4.3
msrc
больше 3 лет назад

Описание отсутствует

CVSS3: 4.3
debian
больше 3 лет назад

A flaw was found in the hivex library. This flaw allows an attacker to ...