Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2024-2119

Опубликовано: 03 мая 2024
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2024-2119: Image builder components bug fix, enhancement and security update (MODERATE)

osbuild [110-1]

  • New upstream release

[109-1]

  • New upstream release

[106-1]

  • New upstream release

[105-1]

  • New upstream release

[104-2]

  • Fix unit tests in RHEL CI by backporting upstream fixes

[104-1]

  • New upstream release

[103-1]

  • New upstream release

[102-1]

  • New upstream release

[101-2]

  • Change unit-test timeout from 3h to 4h
  • Rebuild after failed gating

[101-1]

  • New upstream release

[100-1]

  • New upstream release

[99-1]

  • New upstream release

[98-1]

  • New upstream release

[97-1]

  • New upstream release

[96-1]

  • New upstream release

[95-1]

  • New upstream release

[94-1]

  • New upstream release

osbuild-composer [101-1]

  • New upstream release

[100-1]

  • New upstream release

[99-1]

  • New upstream release

[98-1]

  • New upstream release

[96-1]

  • New upstream release

[95-1]

  • New upstream release

[94-1]

  • New upstream release

[93-1]

  • New upstream release

[92-1]

  • New upstream release

[91-1]

  • New upstream release

[89-1]

  • New upstream release

[88-1]

  • New upstream release

[87-1]

  • New upstream release

[86-1]

  • New upstream release

[85-1]

  • New upstream release

[84-1]

  • New upstream release

[82-1]

  • New upstream release

[80-1]

  • New upstream release

[79-1]

  • New upstream release

[77-1]

  • New upstream release

[76-1]

  • New upstream release

[75-1]

  • New upstream release

[74-1]

  • New upstream release

[73-1]

  • New upstream release

[72-1]

  • New upstream release

[71-1]

  • New upstream release

[70-1]

  • New upstream release

[69-1]

  • New upstream release

[68-1]

  • New upstream release

[67-2]

  • Fix functional tests to make them pass in RHEL-9.2 gating

[67-1]

  • New upstream release

[62-1]

  • New upstream release

[60-1]

  • New upstream release

[59-1]

  • New upstream release

[58-1]

  • New upstream release

[57-1]

  • New upstream release

[55-1]

  • New upstream release

[54-1]

  • New upstream release

[53-1]

  • New upstream release

[51-1]

  • New upstream release

[46-1]

  • New upstream release

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

osbuild

110-1.el9

osbuild-composer

101-1.el9

osbuild-composer-core

101-1.el9

osbuild-composer-worker

101-1.el9

osbuild-depsolve-dnf

110-1.el9

osbuild-luks2

110-1.el9

osbuild-lvm2

110-1.el9

osbuild-ostree

110-1.el9

osbuild-selinux

110-1.el9

python3-osbuild

110-1.el9

Oracle Linux x86_64

osbuild

110-1.el9

osbuild-composer

101-1.el9

osbuild-composer-core

101-1.el9

osbuild-composer-worker

101-1.el9

osbuild-depsolve-dnf

110-1.el9

osbuild-luks2

110-1.el9

osbuild-lvm2

110-1.el9

osbuild-ostree

110-1.el9

osbuild-selinux

110-1.el9

python3-osbuild

110-1.el9

Связанные CVE

Связанные уязвимости

CVSS3: 6.1
redhat
больше 1 года назад

A flaw was found in osbuild-composer. A condition can be triggered that disables GPG verification for package repositories, which can expose the build phase to a Man-in-the-Middle attack, allowing untrusted code to be installed into an image being built.

CVSS3: 6.1
nvd
больше 1 года назад

A flaw was found in osbuild-composer. A condition can be triggered that disables GPG verification for package repositories, which can expose the build phase to a Man-in-the-Middle attack, allowing untrusted code to be installed into an image being built.

rocky
около 1 года назад

Moderate: Image builder components bug fix, enhancement and security update

CVSS3: 6.1
github
больше 1 года назад

A flaw was found in osbuild-composer. A condition can be triggered that disables GPG verification for package repositories, which can expose the build phase to a Man-in-the-Middle attack, allowing untrusted code to be installed into an image being built.

oracle-oval
около 1 года назад

ELSA-2024-2961: Image builder components bug fix, enhancement and security update (MODERATE)