Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2026-1696

Опубликовано: 02 фев. 2026
Источник: oracle-oval
Платформа: Oracle Linux 10

Описание

ELSA-2026-1696: util-linux security update (MODERATE)

[2.40.2-15]

  • libblkid: use snprintf() instead of sprintf()

[2.40.2-14]

  • Fix setpwnam() buffer use [CVE-2025-14104]

Обновленные пакеты

Oracle Linux 10

Oracle Linux aarch64

libblkid-devel

2.40.2-15.el10_1

libmount-devel

2.40.2-15.el10_1

libuuid-devel

2.40.2-15.el10_1

python3-libmount

2.40.2-15.el10_1

uuidd

2.40.2-15.el10_1

libblkid

2.40.2-15.el10_1

libfdisk

2.40.2-15.el10_1

libmount

2.40.2-15.el10_1

libsmartcols

2.40.2-15.el10_1

libuuid

2.40.2-15.el10_1

util-linux

2.40.2-15.el10_1

util-linux-core

2.40.2-15.el10_1

libfdisk-devel

2.40.2-15.el10_1

libsmartcols-devel

2.40.2-15.el10_1

Oracle Linux x86_64

libblkid-devel

2.40.2-15.el10_1

libmount-devel

2.40.2-15.el10_1

libuuid-devel

2.40.2-15.el10_1

python3-libmount

2.40.2-15.el10_1

uuidd

2.40.2-15.el10_1

libblkid

2.40.2-15.el10_1

libfdisk

2.40.2-15.el10_1

libmount

2.40.2-15.el10_1

libsmartcols

2.40.2-15.el10_1

libuuid

2.40.2-15.el10_1

util-linux

2.40.2-15.el10_1

util-linux-core

2.40.2-15.el10_1

libfdisk-devel

2.40.2-15.el10_1

libsmartcols-devel

2.40.2-15.el10_1

Связанные CVE

Связанные уязвимости

CVSS3: 6.1
ubuntu
2 месяца назад

A flaw was found in util-linux. This vulnerability allows a heap buffer overread when processing 256-byte usernames, specifically within the `setpwnam()` function, affecting SUID (Set User ID) login-utils utilities writing to the password database.

CVSS3: 6.1
nvd
2 месяца назад

A flaw was found in util-linux. This vulnerability allows a heap buffer overread when processing 256-byte usernames, specifically within the `setpwnam()` function, affecting SUID (Set User ID) login-utils utilities writing to the password database.

CVSS3: 6.1
msrc
около 1 месяца назад

Util-linux: util-linux: heap buffer overread in setpwnam() when processing 256-byte usernames

CVSS3: 6.1
debian
2 месяца назад

A flaw was found in util-linux. This vulnerability allows a heap buffe ...

suse-cvrf
5 дней назад

Security update for util-linux