Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2021-4513

Опубликовано: 16 нояб. 2021
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2021-4513: libsepol security update (MODERATE)

[2.9-3]

  • cil: Fix out-of-bound read of file context pattern ending with ''
  • cil: Destroy classperms list when resetting classpermission (#1983517)
  • cil: Destroy classperm list when resetting map perms (#1983521)
  • cil: cil_reset_classperms_set() should not reset classpermission (#1983525)
  • cil: Set class field to NULL when resetting struct cil_classperms
  • cil: More strict verification of constraint leaf expressions
  • cil: Exit with an error if declaration name is a reserved word
  • cil: Allow permission expressions when using map classes
  • cil: Reorder checks for invalid rules when building AST
  • cil: Cleanup build AST helper functions
  • cil: Create new first child helper function for building AST
  • cil: Remove unused field from struct cil_args_resolve
  • cil: Destroy disabled optional blocks after pass is complete
  • cil: Check if name is a macro parameter first
  • cil: fix NULL pointer dereference in __cil_insert_name
  • cil: Report disabling an optional block only at high verbose levels
  • cil: Use AST to track blocks and optionals when resolving
  • cil: Reorder checks for invalid rules when resolving AST
  • cil: Sync checks for invalid rules in booleanifs
  • cil: Check for statements not allowed in optional blocks (#1983530)

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

libsepol

2.9-3.el8

libsepol-devel

2.9-3.el8

libsepol-static

2.9-3.el8

Oracle Linux x86_64

libsepol

2.9-3.el8

libsepol-devel

2.9-3.el8

libsepol-static

2.9-3.el8

Связанные уязвимости

rocky
больше 3 лет назад

Moderate: libsepol security update

CVSS3: 3.3
ubuntu
около 4 лет назад

The CIL compiler in SELinux 3.2 has a use-after-free in cil_reset_classpermission (called from cil_reset_classperms_set and cil_reset_classperms_list).

CVSS3: 3.3
redhat
больше 4 лет назад

The CIL compiler in SELinux 3.2 has a use-after-free in cil_reset_classpermission (called from cil_reset_classperms_set and cil_reset_classperms_list).

CVSS3: 3.3
nvd
около 4 лет назад

The CIL compiler in SELinux 3.2 has a use-after-free in cil_reset_classpermission (called from cil_reset_classperms_set and cil_reset_classperms_list).

CVSS3: 3.3
debian
около 4 лет назад

The CIL compiler in SELinux 3.2 has a use-after-free in cil_reset_clas ...