Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2023:7732

Опубликовано: 09 янв. 2024
Источник: rocky
Оценка: Important

Описание

Important: tracker-miners security update

Tracker is a powerful desktop-neutral first class object database, tag/metadata database and search tool. This package contains various miners and metadata extractors for tracker.

Security Fix(es):

  • tracker-miners: sandbox escape (CVE-2023-5557)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
tracker-minersaarch642.el8_9.1tracker-miners-2.1.5-2.el8_9.1.aarch64.rpm

Показывать по

Связанные CVE

Исправления

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 2 года назад

A flaw was found in the tracker-miners package. A weakness in the sandbox allows a maliciously-crafted file to execute code outside the sandbox if the tracker-extract process has first been compromised by a separate vulnerability.

CVSS3: 7.5
redhat
почти 2 года назад

A flaw was found in the tracker-miners package. A weakness in the sandbox allows a maliciously-crafted file to execute code outside the sandbox if the tracker-extract process has first been compromised by a separate vulnerability.

CVSS3: 7.5
nvd
почти 2 года назад

A flaw was found in the tracker-miners package. A weakness in the sandbox allows a maliciously-crafted file to execute code outside the sandbox if the tracker-extract process has first been compromised by a separate vulnerability.

CVSS3: 7.5
debian
почти 2 года назад

A flaw was found in the tracker-miners package. A weakness in the sand ...

suse-cvrf
больше 1 года назад

Security update for tracker-miners