Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2023:3268-1

Опубликовано: 10 авг. 2023
Источник: suse-cvrf

Описание

Security update for util-linux

This update for util-linux fixes the following issues:

  • CVE-2018-7738: Fixed shell code injection in umount bash-completions. (bsc#1213865, bsc#1084300)

Список пакетов

Container suse/ltss/sle12.5/sles12sp5:latest
libblkid1-2.33.2-4.33.1
libfdisk1-2.33.2-4.33.1
libmount1-2.33.2-4.33.1
libsmartcols1-2.33.2-4.33.1
libuuid1-2.33.2-4.33.1
util-linux-2.33.2-4.33.1
Container suse/sles12sp5:latest
libblkid1-2.33.2-4.33.1
libfdisk1-2.33.2-4.33.1
libmount1-2.33.2-4.33.1
libsmartcols1-2.33.2-4.33.1
libuuid1-2.33.2-4.33.1
util-linux-2.33.2-4.33.1
Image SLES12-SP5-Azure-BYOS
libblkid1-2.33.2-4.33.1
libfdisk1-2.33.2-4.33.1
libmount1-2.33.2-4.33.1
libsmartcols1-2.33.2-4.33.1
libuuid1-2.33.2-4.33.1
util-linux-2.33.2-4.33.1
util-linux-systemd-2.33.2-4.33.1
Image SLES12-SP5-Azure-Basic-On-Demand
libblkid1-2.33.2-4.33.1
libfdisk1-2.33.2-4.33.1
libmount1-2.33.2-4.33.1
libsmartcols1-2.33.2-4.33.1
libuuid1-2.33.2-4.33.1
util-linux-2.33.2-4.33.1
util-linux-systemd-2.33.2-4.33.1
Image SLES12-SP5-Azure-HPC-BYOS
libblkid1-2.33.2-4.33.1
libfdisk1-2.33.2-4.33.1
libmount1-2.33.2-4.33.1
libsmartcols1-2.33.2-4.33.1
libuuid1-2.33.2-4.33.1
util-linux-2.33.2-4.33.1
util-linux-systemd-2.33.2-4.33.1
Image SLES12-SP5-Azure-HPC-On-Demand
libblkid1-2.33.2-4.33.1
libfdisk1-2.33.2-4.33.1
libmount1-2.33.2-4.33.1
libsmartcols1-2.33.2-4.33.1
libuuid1-2.33.2-4.33.1
util-linux-2.33.2-4.33.1
util-linux-systemd-2.33.2-4.33.1
Image SLES12-SP5-Azure-SAP-BYOS
libblkid1-2.33.2-4.33.1
libfdisk1-2.33.2-4.33.1
libmount1-2.33.2-4.33.1
libsmartcols1-2.33.2-4.33.1
libuuid1-2.33.2-4.33.1
util-linux-2.33.2-4.33.1
util-linux-systemd-2.33.2-4.33.1
uuidd-2.33.2-4.33.1
Image SLES12-SP5-Azure-SAP-On-Demand
libblkid1-2.33.2-4.33.1
libfdisk1-2.33.2-4.33.1
libmount1-2.33.2-4.33.1
libsmartcols1-2.33.2-4.33.1
libuuid1-2.33.2-4.33.1
util-linux-2.33.2-4.33.1
util-linux-systemd-2.33.2-4.33.1
uuidd-2.33.2-4.33.1
Image SLES12-SP5-Azure-Standard-On-Demand
libblkid1-2.33.2-4.33.1
libfdisk1-2.33.2-4.33.1
libmount1-2.33.2-4.33.1
libsmartcols1-2.33.2-4.33.1
libuuid1-2.33.2-4.33.1
util-linux-2.33.2-4.33.1
util-linux-systemd-2.33.2-4.33.1
Image SLES12-SP5-EC2-BYOS
libblkid1-2.33.2-4.33.1
libfdisk1-2.33.2-4.33.1
libmount1-2.33.2-4.33.1
libsmartcols1-2.33.2-4.33.1
libuuid1-2.33.2-4.33.1
util-linux-2.33.2-4.33.1
util-linux-systemd-2.33.2-4.33.1
Image SLES12-SP5-EC2-ECS-On-Demand
libblkid1-2.33.2-4.33.1
libfdisk1-2.33.2-4.33.1
libmount1-2.33.2-4.33.1
libsmartcols1-2.33.2-4.33.1
libuuid1-2.33.2-4.33.1
util-linux-2.33.2-4.33.1
util-linux-systemd-2.33.2-4.33.1
Image SLES12-SP5-EC2-On-Demand
libblkid1-2.33.2-4.33.1
libfdisk1-2.33.2-4.33.1
libmount1-2.33.2-4.33.1
libsmartcols1-2.33.2-4.33.1
libuuid1-2.33.2-4.33.1
util-linux-2.33.2-4.33.1
util-linux-systemd-2.33.2-4.33.1
Image SLES12-SP5-EC2-SAP-BYOS
libblkid1-2.33.2-4.33.1
libfdisk1-2.33.2-4.33.1
libmount1-2.33.2-4.33.1
libsmartcols1-2.33.2-4.33.1
libuuid1-2.33.2-4.33.1
util-linux-2.33.2-4.33.1
util-linux-systemd-2.33.2-4.33.1
uuidd-2.33.2-4.33.1
Image SLES12-SP5-EC2-SAP-On-Demand
libblkid1-2.33.2-4.33.1
libfdisk1-2.33.2-4.33.1
libmount1-2.33.2-4.33.1
libsmartcols1-2.33.2-4.33.1
libuuid1-2.33.2-4.33.1
util-linux-2.33.2-4.33.1
util-linux-systemd-2.33.2-4.33.1
uuidd-2.33.2-4.33.1
Image SLES12-SP5-GCE-BYOS
libblkid1-2.33.2-4.33.1
libfdisk1-2.33.2-4.33.1
libmount1-2.33.2-4.33.1
libsmartcols1-2.33.2-4.33.1
libuuid1-2.33.2-4.33.1
util-linux-2.33.2-4.33.1
util-linux-systemd-2.33.2-4.33.1
Image SLES12-SP5-GCE-On-Demand
libblkid1-2.33.2-4.33.1
libfdisk1-2.33.2-4.33.1
libmount1-2.33.2-4.33.1
libsmartcols1-2.33.2-4.33.1
libuuid1-2.33.2-4.33.1
util-linux-2.33.2-4.33.1
util-linux-systemd-2.33.2-4.33.1
Image SLES12-SP5-GCE-SAP-BYOS
libblkid1-2.33.2-4.33.1
libfdisk1-2.33.2-4.33.1
libmount1-2.33.2-4.33.1
libsmartcols1-2.33.2-4.33.1
libuuid1-2.33.2-4.33.1
util-linux-2.33.2-4.33.1
util-linux-systemd-2.33.2-4.33.1
uuidd-2.33.2-4.33.1
Image SLES12-SP5-GCE-SAP-On-Demand
libblkid1-2.33.2-4.33.1
libfdisk1-2.33.2-4.33.1
libmount1-2.33.2-4.33.1
libsmartcols1-2.33.2-4.33.1
libuuid1-2.33.2-4.33.1
util-linux-2.33.2-4.33.1
util-linux-systemd-2.33.2-4.33.1
uuidd-2.33.2-4.33.1
Image SLES12-SP5-SAP-Azure-LI-BYOS-Production
libblkid1-2.33.2-4.33.1
libfdisk1-2.33.2-4.33.1
libmount1-2.33.2-4.33.1
libsmartcols1-2.33.2-4.33.1
libuuid1-2.33.2-4.33.1
util-linux-2.33.2-4.33.1
util-linux-systemd-2.33.2-4.33.1
uuidd-2.33.2-4.33.1
Image SLES12-SP5-SAP-Azure-VLI-BYOS-Production
libblkid1-2.33.2-4.33.1
libfdisk1-2.33.2-4.33.1
libmount1-2.33.2-4.33.1
libsmartcols1-2.33.2-4.33.1
libuuid1-2.33.2-4.33.1
util-linux-2.33.2-4.33.1
util-linux-systemd-2.33.2-4.33.1
uuidd-2.33.2-4.33.1
SUSE Linux Enterprise Server 12 SP5
libblkid1-2.33.2-4.33.1
libblkid1-32bit-2.33.2-4.33.1
libfdisk1-2.33.2-4.33.1
libmount1-2.33.2-4.33.1
libmount1-32bit-2.33.2-4.33.1
libsmartcols1-2.33.2-4.33.1
libuuid1-2.33.2-4.33.1
libuuid1-32bit-2.33.2-4.33.1
python-libmount-2.33.2-4.33.1
util-linux-2.33.2-4.33.1
util-linux-lang-2.33.2-4.33.1
util-linux-systemd-2.33.2-4.33.1
uuidd-2.33.2-4.33.1
SUSE Linux Enterprise Server for SAP Applications 12 SP5
libblkid1-2.33.2-4.33.1
libblkid1-32bit-2.33.2-4.33.1
libfdisk1-2.33.2-4.33.1
libmount1-2.33.2-4.33.1
libmount1-32bit-2.33.2-4.33.1
libsmartcols1-2.33.2-4.33.1
libuuid1-2.33.2-4.33.1
libuuid1-32bit-2.33.2-4.33.1
python-libmount-2.33.2-4.33.1
util-linux-2.33.2-4.33.1
util-linux-lang-2.33.2-4.33.1
util-linux-systemd-2.33.2-4.33.1
uuidd-2.33.2-4.33.1
SUSE Linux Enterprise Software Development Kit 12 SP5
libblkid-devel-2.33.2-4.33.1
libmount-devel-2.33.2-4.33.1
libsmartcols-devel-2.33.2-4.33.1
libuuid-devel-2.33.2-4.33.1
SUSE Linux Enterprise Workstation Extension 12 SP5
libuuid-devel-2.33.2-4.33.1

Описание

In util-linux before 2.32-rc1, bash-completion/umount allows local users to gain privileges by embedding shell commands in a mountpoint name, which is mishandled during a umount command (within Bash) by a different user, as demonstrated by logging in as root and entering umount followed by a tab character for autocompletion.


Затронутые продукты
Container suse/ltss/sle12.5/sles12sp5:latest:libblkid1-2.33.2-4.33.1
Container suse/ltss/sle12.5/sles12sp5:latest:libfdisk1-2.33.2-4.33.1
Container suse/ltss/sle12.5/sles12sp5:latest:libmount1-2.33.2-4.33.1
Container suse/ltss/sle12.5/sles12sp5:latest:libsmartcols1-2.33.2-4.33.1

Ссылки