Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2021:1675

Опубликовано: 18 мая 2021
Источник: rocky
Оценка: Low

Описание

Low: libdb security update

The libdb packages provide the Berkeley Database, an embedded database supporting both traditional and client/server applications.

Security Fix(es):

  • libdb: Denial of service in the Data Store component (CVE-2019-2708)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the Rocky Linux 8.4 Release Notes linked from the References section.

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
libdbi68640.el8libdb-5.3.28-40.el8.i686.rpm
libdbx86_6440.el8libdb-5.3.28-40.el8.x86_64.rpm
libdb-utilsx86_6440.el8libdb-utils-5.3.28-40.el8.x86_64.rpm

Показывать по

Связанные CVE

Исправления

Связанные уязвимости

CVSS3: 3.3
redhat
больше 6 лет назад

Vulnerability in the Data Store component of Oracle Berkeley DB. Supported versions that are affected are Prior to 6.138, prior to 6.2.38 and prior to 18.1.32. Easily exploitable vulnerability allows low privileged attacker having Local Logon privilege with logon to the infrastructure where Data Store executes to compromise Data Store. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Data Store. CVSS 3.0 Base Score 3.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L).

CVSS3: 3.3
nvd
больше 6 лет назад

Vulnerability in the Data Store component of Oracle Berkeley DB. Supported versions that are affected are Prior to 6.138, prior to 6.2.38 and prior to 18.1.32. Easily exploitable vulnerability allows low privileged attacker having Local Logon privilege with logon to the infrastructure where Data Store executes to compromise Data Store. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Data Store. CVSS 3.0 Base Score 3.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L).

CVSS3: 3.3
msrc
больше 4 лет назад

Описание отсутствует

suse-cvrf
около 3 лет назад

Security update for libdb-4_8

suse-cvrf
около 3 лет назад

Security update for libdb-4_8