Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2022-9142

Опубликовано: 09 фев. 2022
Источник: oracle-oval
Платформа: Oracle Linux 7
Платформа: Oracle Linux 8

Описание

ELSA-2022-9142: Unbreakable Enterprise kernel-container security update (IMPORTANT)

[5.4.17-2136.302.7.2.3]

  • cgroup-v1: Require capabilities to set release_agent (Eric W. Biederman) [Orabug: 33832574] {CVE-2022-0492}

Обновленные пакеты

Oracle Linux 7

Oracle Linux x86_64

kernel-uek-container

5.4.17-2136.302.7.2.3.el7

kernel-uek-container-debug

5.4.17-2136.302.7.2.3.el7

Oracle Linux 8

Oracle Linux x86_64

kernel-uek-container

5.4.17-2136.302.7.2.3.el8

kernel-uek-container-debug

5.4.17-2136.302.7.2.3.el8

Связанные CVE

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 3 лет назад

A vulnerability was found in the Linux kernel’s cgroup_release_agent_write in the kernel/cgroup/cgroup-v1.c function. This flaw, under certain circumstances, allows the use of the cgroups v1 release_agent feature to escalate privileges and bypass the namespace isolation unexpectedly.

CVSS3: 7
redhat
больше 3 лет назад

A vulnerability was found in the Linux kernel’s cgroup_release_agent_write in the kernel/cgroup/cgroup-v1.c function. This flaw, under certain circumstances, allows the use of the cgroups v1 release_agent feature to escalate privileges and bypass the namespace isolation unexpectedly.

CVSS3: 7.8
nvd
больше 3 лет назад

A vulnerability was found in the Linux kernel’s cgroup_release_agent_write in the kernel/cgroup/cgroup-v1.c function. This flaw, under certain circumstances, allows the use of the cgroups v1 release_agent feature to escalate privileges and bypass the namespace isolation unexpectedly.

CVSS3: 7.8
msrc
больше 3 лет назад

Описание отсутствует

CVSS3: 7.8
debian
больше 3 лет назад

A vulnerability was found in the Linux kernel\u2019s cgroup_release_ag ...