Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2022:2801-1

Опубликовано: 12 авг. 2022
Источник: suse-cvrf

Описание

Security update for cifs-utils

This update for cifs-utils fixes the following issues:

  • CVE-2022-29869: Fixed verbose messages on option parsing causing information leak (bsc#1198976).

Список пакетов

Image SLES15-SP1-SAP-Azure-LI-BYOS-Production
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP1-SAP-Azure-VLI-BYOS-Production
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP1-SAPCAL-Azure
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP1-SAPCAL-EC2-HVM
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP1-SAPCAL-GCE
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP2-BYOS-Azure
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP2-BYOS-EC2-HVM
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP2-BYOS-GCE
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP2-HPC-BYOS-Azure
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP2-HPC-BYOS-EC2-HVM
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP2-SAP-Azure
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP2-SAP-Azure-LI-BYOS-Production
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP2-SAP-Azure-VLI-BYOS-Production
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP2-SAP-BYOS-Azure
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP2-SAP-BYOS-EC2-HVM
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP2-SAP-BYOS-GCE
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP2-SAP-EC2-HVM
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP2-SAP-GCE
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP3-BYOS-Azure
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP3-BYOS-EC2-HVM
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP3-BYOS-GCE
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP3-CHOST-BYOS-Aliyun
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP3-CHOST-BYOS-Azure
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP3-CHOST-BYOS-EC2
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP3-CHOST-BYOS-GCE
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP3-CHOST-BYOS-SAP-CCloud
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP3-HPC-BYOS-Azure
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP3-HPC-BYOS-EC2-HVM
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP3-HPC-BYOS-GCE
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP3-Manager-4-2-Proxy-BYOS-Azure
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP3-Manager-4-2-Proxy-BYOS-EC2-HVM
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP3-Manager-4-2-Proxy-BYOS-GCE
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP3-Manager-4-2-Server-BYOS-Azure
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP3-Manager-4-2-Server-BYOS-EC2-HVM
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP3-Manager-4-2-Server-BYOS-GCE
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP3-SAP-Azure-LI-BYOS-Production
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP3-SAP-Azure-VLI-BYOS-Production
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP3-SAP-BYOS-Azure
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP3-SAP-BYOS-EC2-HVM
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP3-SAP-BYOS-GCE
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP3-SAPCAL-Azure
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP3-SAPCAL-EC2-HVM
cifs-utils-6.9-150100.5.18.1
Image SLES15-SP3-SAPCAL-GCE
cifs-utils-6.9-150100.5.18.1
SUSE Linux Enterprise Micro 5.2
cifs-utils-6.9-150100.5.18.1
SUSE Linux Enterprise Module for Basesystem 15 SP3
cifs-utils-6.9-150100.5.18.1
cifs-utils-devel-6.9-150100.5.18.1
openSUSE Leap 15.3
cifs-utils-6.9-150100.5.18.1
cifs-utils-devel-6.9-150100.5.18.1
pam_cifscreds-6.9-150100.5.18.1

Описание

cifs-utils through 6.14, with verbose logging, can cause an information leak when a file contains = (equal sign) characters but is not a valid credentials file.


Затронутые продукты
Image SLES15-SP1-SAP-Azure-LI-BYOS-Production:cifs-utils-6.9-150100.5.18.1
Image SLES15-SP1-SAP-Azure-VLI-BYOS-Production:cifs-utils-6.9-150100.5.18.1
Image SLES15-SP1-SAPCAL-Azure:cifs-utils-6.9-150100.5.18.1
Image SLES15-SP1-SAPCAL-EC2-HVM:cifs-utils-6.9-150100.5.18.1

Ссылки