Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2018:2143-1

Опубликовано: 30 июл. 2018
Источник: suse-cvrf

Описание

Security update for libcgroup

This update for libcgroup fixes the following issues:

Security issue fixed:

  • CVE-2018-14348: Fix daemon that creates /var/log/cgred with mode 0666 (bsc#1100365).

Список пакетов

SUSE Linux Enterprise Desktop 12 SP3
libcgroup1-0.41.rc1-10.3.1
SUSE Linux Enterprise Server 12 SP3
libcgroup-tools-0.41.rc1-10.3.1
libcgroup1-0.41.rc1-10.3.1
SUSE Linux Enterprise Server for SAP Applications 12 SP3
libcgroup-tools-0.41.rc1-10.3.1
libcgroup1-0.41.rc1-10.3.1
SUSE Linux Enterprise Software Development Kit 12 SP3
libcgroup-devel-0.41.rc1-10.3.1

Описание

libcgroup up to and including 0.41 creates /var/log/cgred with mode 0666 regardless of the configured umask, leading to disclosure of information.


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP3:libcgroup1-0.41.rc1-10.3.1
SUSE Linux Enterprise Server 12 SP3:libcgroup-tools-0.41.rc1-10.3.1
SUSE Linux Enterprise Server 12 SP3:libcgroup1-0.41.rc1-10.3.1
SUSE Linux Enterprise Server for SAP Applications 12 SP3:libcgroup-tools-0.41.rc1-10.3.1

Ссылки
Уязвимость SUSE-SU-2018:2143-1