Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2024-9473

Опубликовано: 20 нояб. 2024
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2024-9473: grafana security update (IMPORTANT)

[10.2.6-7]

  • Resolves RHEL-62308: CVE-2024-47875

[10.2.6-6]

  • Resolves: RHEL-57927

[10.2.6-5]

  • Resolves RHEL-47185

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

grafana

10.2.6-7.el9_5

grafana-selinux

10.2.6-7.el9_5

Oracle Linux x86_64

grafana

10.2.6-7.el9_5

grafana-selinux

10.2.6-7.el9_5

Связанные CVE

Связанные уязвимости

CVSS3: 10
ubuntu
8 месяцев назад

DOMPurify is a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. DOMpurify was vulnerable to nesting-based mXSS. This vulnerability is fixed in 2.5.0 and 3.1.3.

CVSS3: 8
redhat
8 месяцев назад

DOMPurify is a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. DOMpurify was vulnerable to nesting-based mXSS. This vulnerability is fixed in 2.5.0 and 3.1.3.

CVSS3: 10
nvd
8 месяцев назад

DOMPurify is a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. DOMpurify was vulnerable to nesting-based mXSS. This vulnerability is fixed in 2.5.0 and 3.1.3.

CVSS3: 10
debian
8 месяцев назад

DOMPurify is a DOM-only, super-fast, uber-tolerant XSS sanitizer for H ...

CVSS3: 7.5
ubuntu
10 месяцев назад

Calling Decoder.Decode on a message which contains deeply nested structures can cause a panic due to stack exhaustion. This is a follow-up to CVE-2022-30635.