Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2022-9141

Опубликовано: 09 фев. 2022
Источник: oracle-oval
Платформа: Oracle Linux 7
Платформа: Oracle Linux 8

Описание

ELSA-2022-9141: Unbreakable Enterprise kernel security update (IMPORTANT)

[5.4.17-2136.302.7.2.3]

  • cgroup-v1: Require capabilities to set release_agent (Eric W. Biederman) [Orabug: 33832574] {CVE-2022-0492}

Обновленные пакеты

Oracle Linux 7

Oracle Linux aarch64

kernel-uek

5.4.17-2136.302.7.2.3.el7uek

kernel-uek-debug

5.4.17-2136.302.7.2.3.el7uek

kernel-uek-debug-devel

5.4.17-2136.302.7.2.3.el7uek

kernel-uek-devel

5.4.17-2136.302.7.2.3.el7uek

kernel-uek-doc

5.4.17-2136.302.7.2.3.el7uek

kernel-uek-tools

5.4.17-2136.302.7.2.3.el7uek

kernel-uek-tools-libs

5.4.17-2136.302.7.2.3.el7uek

perf

5.4.17-2136.302.7.2.3.el7uek

python-perf

5.4.17-2136.302.7.2.3.el7uek

Oracle Linux x86_64

kernel-uek

5.4.17-2136.302.7.2.3.el7uek

kernel-uek-debug

5.4.17-2136.302.7.2.3.el7uek

kernel-uek-debug-devel

5.4.17-2136.302.7.2.3.el7uek

kernel-uek-devel

5.4.17-2136.302.7.2.3.el7uek

kernel-uek-doc

5.4.17-2136.302.7.2.3.el7uek

kernel-uek-tools

5.4.17-2136.302.7.2.3.el7uek

Oracle Linux 8

Oracle Linux aarch64

kernel-uek

5.4.17-2136.302.7.2.3.el8uek

kernel-uek-debug

5.4.17-2136.302.7.2.3.el8uek

kernel-uek-debug-devel

5.4.17-2136.302.7.2.3.el8uek

kernel-uek-devel

5.4.17-2136.302.7.2.3.el8uek

kernel-uek-doc

5.4.17-2136.302.7.2.3.el8uek

Oracle Linux x86_64

kernel-uek

5.4.17-2136.302.7.2.3.el8uek

kernel-uek-debug

5.4.17-2136.302.7.2.3.el8uek

kernel-uek-debug-devel

5.4.17-2136.302.7.2.3.el8uek

kernel-uek-devel

5.4.17-2136.302.7.2.3.el8uek

kernel-uek-doc

5.4.17-2136.302.7.2.3.el8uek

Связанные CVE

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 3 лет назад

A vulnerability was found in the Linux kernel’s cgroup_release_agent_write in the kernel/cgroup/cgroup-v1.c function. This flaw, under certain circumstances, allows the use of the cgroups v1 release_agent feature to escalate privileges and bypass the namespace isolation unexpectedly.

CVSS3: 7
redhat
больше 3 лет назад

A vulnerability was found in the Linux kernel’s cgroup_release_agent_write in the kernel/cgroup/cgroup-v1.c function. This flaw, under certain circumstances, allows the use of the cgroups v1 release_agent feature to escalate privileges and bypass the namespace isolation unexpectedly.

CVSS3: 7.8
nvd
больше 3 лет назад

A vulnerability was found in the Linux kernel’s cgroup_release_agent_write in the kernel/cgroup/cgroup-v1.c function. This flaw, under certain circumstances, allows the use of the cgroups v1 release_agent feature to escalate privileges and bypass the namespace isolation unexpectedly.

CVSS3: 7.8
msrc
больше 3 лет назад

Описание отсутствует

CVSS3: 7.8
debian
больше 3 лет назад

A vulnerability was found in the Linux kernel\u2019s cgroup_release_ag ...

Уязвимость ELSA-2022-9141