Описание
Security update for socat
This update for socat fixes the following issues:
- CVE-2024-54661: Fixed arbitrary file overwrite via predictable /tmp directory in socat readline.sh (bsc#1225462)
Список пакетов
Container suse/sles/15.7/virt-launcher:1.4.0
socat-1.8.0.0-150600.20.6.1
Image SLES15-SP6-CHOST-BYOS
socat-1.8.0.0-150600.20.6.1
Image SLES15-SP6-CHOST-BYOS-Aliyun
socat-1.8.0.0-150600.20.6.1
Image SLES15-SP6-CHOST-BYOS-Azure
socat-1.8.0.0-150600.20.6.1
Image SLES15-SP6-CHOST-BYOS-EC2
socat-1.8.0.0-150600.20.6.1
Image SLES15-SP6-CHOST-BYOS-GCE
socat-1.8.0.0-150600.20.6.1
Image SLES15-SP6-CHOST-BYOS-GDC
socat-1.8.0.0-150600.20.6.1
Image SLES15-SP6-CHOST-BYOS-SAP-CCloud
socat-1.8.0.0-150600.20.6.1
Image SLES15-SP6-SAP-Azure-LI-BYOS
socat-1.8.0.0-150600.20.6.1
Image SLES15-SP6-SAP-Azure-LI-BYOS-Production
socat-1.8.0.0-150600.20.6.1
Image SLES15-SP6-SAP-Azure-VLI-BYOS
socat-1.8.0.0-150600.20.6.1
Image SLES15-SP6-SAP-Azure-VLI-BYOS-Production
socat-1.8.0.0-150600.20.6.1
Image SLES15-SP6-SAP-BYOS
socat-1.8.0.0-150600.20.6.1
Image SLES15-SP6-SAP-BYOS-Azure
socat-1.8.0.0-150600.20.6.1
Image SLES15-SP6-SAP-BYOS-EC2
socat-1.8.0.0-150600.20.6.1
Image SLES15-SP6-SAP-BYOS-GCE
socat-1.8.0.0-150600.20.6.1
Image SLES15-SP6-SAP-Hardened
socat-1.8.0.0-150600.20.6.1
Image SLES15-SP6-SAP-Hardened-Azure
socat-1.8.0.0-150600.20.6.1
Image SLES15-SP6-SAP-Hardened-BYOS
socat-1.8.0.0-150600.20.6.1
Image SLES15-SP6-SAP-Hardened-BYOS-Azure
socat-1.8.0.0-150600.20.6.1
Image SLES15-SP6-SAP-Hardened-BYOS-EC2
socat-1.8.0.0-150600.20.6.1
Image SLES15-SP6-SAP-Hardened-BYOS-GCE
socat-1.8.0.0-150600.20.6.1
Image SLES15-SP6-SAP-Hardened-EC2
socat-1.8.0.0-150600.20.6.1
Image SLES15-SP6-SAP-Hardened-GCE
socat-1.8.0.0-150600.20.6.1
SUSE Linux Enterprise Module for Basesystem 15 SP6
socat-1.8.0.0-150600.20.6.1
openSUSE Leap 15.6
socat-1.8.0.0-150600.20.6.1
Ссылки
- Link for SUSE-SU-2024:4295-1
- E-Mail link for SUSE-SU-2024:4295-1
- SUSE Security Ratings
- SUSE Bug 1225462
- SUSE CVE CVE-2024-54661 page
Описание
readline.sh in socat before1.8.0.2 relies on the /tmp/$USER/stderr2 file.
Затронутые продукты
Container suse/sles/15.7/virt-launcher:1.4.0:socat-1.8.0.0-150600.20.6.1
Image SLES15-SP6-CHOST-BYOS-Aliyun:socat-1.8.0.0-150600.20.6.1
Image SLES15-SP6-CHOST-BYOS-Azure:socat-1.8.0.0-150600.20.6.1
Image SLES15-SP6-CHOST-BYOS-EC2:socat-1.8.0.0-150600.20.6.1
Ссылки
- CVE-2024-54661
- SUSE Bug 1225462