Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2022:7720

Опубликовано: 08 нояб. 2022
Источник: rocky
Оценка: Moderate

Описание

Moderate: e2fsprogs security and bug fix update

The e2fsprogs packages provide a number of utilities for creating, checking, modifying, and correcting the ext2, ext3, and ext4 file systems.

Security Fix(es):

  • e2fsprogs: out-of-bounds read/write via crafted filesystem (CVE-2022-1304)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section.

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
e2fsprogsx86_645.el8e2fsprogs-1.45.6-5.el8.x86_64.rpm
e2fsprogs-develx86_645.el8e2fsprogs-devel-1.45.6-5.el8.x86_64.rpm
e2fsprogs-libsx86_645.el8e2fsprogs-libs-1.45.6-5.el8.x86_64.rpm
libcom_errx86_645.el8libcom_err-1.45.6-5.el8.x86_64.rpm
libcom_err-develx86_645.el8libcom_err-devel-1.45.6-5.el8.x86_64.rpm
libssx86_645.el8libss-1.45.6-5.el8.x86_64.rpm

Показывать по

Связанные CVE

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 3 лет назад

An out-of-bounds read/write vulnerability was found in e2fsprogs 1.46.5. This issue leads to a segmentation fault and possibly arbitrary code execution via a specially crafted filesystem.

CVSS3: 5.8
redhat
больше 3 лет назад

An out-of-bounds read/write vulnerability was found in e2fsprogs 1.46.5. This issue leads to a segmentation fault and possibly arbitrary code execution via a specially crafted filesystem.

CVSS3: 7.8
nvd
больше 3 лет назад

An out-of-bounds read/write vulnerability was found in e2fsprogs 1.46.5. This issue leads to a segmentation fault and possibly arbitrary code execution via a specially crafted filesystem.

CVSS3: 7.8
msrc
больше 3 лет назад

An out-of-bounds read/write vulnerability was found in e2fsprogs 1.46.5. This issue leads to a segmentation fault and possibly arbitrary code execution via a specially crafted filesystem.

CVSS3: 7.8
debian
больше 3 лет назад

An out-of-bounds read/write vulnerability was found in e2fsprogs 1.46. ...