Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2022:8361

Опубликовано: 15 нояб. 2022
Источник: rocky
Оценка: Moderate

Описание

Moderate: e2fsprogs security update

The e2fsprogs packages provide a number of utilities for creating, checking, modifying, and correcting the ext2, ext3, and ext4 file systems.

Security Fix(es):

  • e2fsprogs: out-of-bounds read/write via crafted filesystem (CVE-2022-1304)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the Rocky Linux 9.1 Release Notes linked from the References section.

Затронутые продукты

  • Rocky Linux 9

НаименованиеАрхитектураРелизRPM
e2fsprogsx86_643.el9e2fsprogs-1.46.5-3.el9.x86_64.rpm
e2fsprogs-libsx86_643.el9e2fsprogs-libs-1.46.5-3.el9.x86_64.rpm
libcom_errx86_643.el9libcom_err-1.46.5-3.el9.x86_64.rpm
libssx86_643.el9libss-1.46.5-3.el9.x86_64.rpm

Показывать по

Связанные CVE

Исправления

Связанные уязвимости

CVSS3: 7.8
ubuntu
около 3 лет назад

An out-of-bounds read/write vulnerability was found in e2fsprogs 1.46.5. This issue leads to a segmentation fault and possibly arbitrary code execution via a specially crafted filesystem.

CVSS3: 5.8
redhat
около 3 лет назад

An out-of-bounds read/write vulnerability was found in e2fsprogs 1.46.5. This issue leads to a segmentation fault and possibly arbitrary code execution via a specially crafted filesystem.

CVSS3: 7.8
nvd
около 3 лет назад

An out-of-bounds read/write vulnerability was found in e2fsprogs 1.46.5. This issue leads to a segmentation fault and possibly arbitrary code execution via a specially crafted filesystem.

CVSS3: 7.8
msrc
около 3 лет назад

Описание отсутствует

CVSS3: 7.8
debian
около 3 лет назад

An out-of-bounds read/write vulnerability was found in e2fsprogs 1.46. ...