Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2023-6635

Опубликовано: 11 нояб. 2023
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2023-6635: c-ares security, bug fix, and enhancement update (MODERATE)

[1.19.1-1]

  • Resolves: rhbz#2209564 - CVE-2023-31124 c-ares: AutoTools does not set CARES_RANDOM_FILE during cross compilation [rhel-9]
  • Resolves: rhbz#2209556 - CVE-2023-31130 c-ares: Buffer Underwrite in ares_inet_net_pton() [rhel-9]
  • Resolves: rhbz#2209550 - CVE-2023-31147 c-ares: Insufficient randomness in generation of DNS query IDs [rhel-9]
  • Resolves: rhbz#2209520 - CVE-2023-32067 c-ares: 0-byte UDP payload Denial of Service [rhel-9.3.0]
  • Resolves: rhbz#2210370 - Rebase c-ares for RHEL 9.3

[1.17.1-6]

  • Resolves: rhbz#2170868 - c-ares: buffer overflow in config_sortlist() due to missing string length check [rhel-9]

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

c-ares

1.19.1-1.el9

c-ares-devel

1.19.1-1.el9

Oracle Linux x86_64

c-ares

1.19.1-1.el9

c-ares-devel

1.19.1-1.el9

Связанные уязвимости

oracle-oval
почти 2 года назад

ELSA-2023-4035: nodejs:18 security update (IMPORTANT)

suse-cvrf
около 2 лет назад

Security update for libcares2

suse-cvrf
около 2 лет назад

Security update for c-ares

oracle-oval
почти 2 года назад

ELSA-2023-4034: nodejs:16 security update (IMPORTANT)

oracle-oval
около 2 лет назад

ELSA-2023-3586: nodejs security update (IMPORTANT)