2017-03-14
ALT-BU-2017-2987-2
Branch sisyphus update bulletin.
Closed bugs
Чудовищный список зависимостей
Closed vulnerabilities
Published: 2018-07-27
Modified: 2024-11-21
Modified: 2024-11-21
CVE-2017-2640
An out-of-bounds write flaw was found in the way Pidgin before 2.12.0 processed XML content. A malicious remote server could potentially use this flaw to crash Pidgin or execute arbitrary code in the context of the pidgin process.
Severity: HIGH (7.5)Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P
Severity: CRITICAL (9.8)Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
References:
- http://www.securityfocus.com/bid/96775
- https://access.redhat.com/errata/RHSA-2017:1854
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-2640
- https://security.gentoo.org/glsa/201706-10
- https://www.debian.org/security/2017/dsa-3806
- http://www.securityfocus.com/bid/96775
- https://access.redhat.com/errata/RHSA-2017:1854
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-2640
- https://security.gentoo.org/glsa/201706-10
- https://www.debian.org/security/2017/dsa-3806
Closed bugs
radvd не стартует через systemclt start
Closed vulnerabilities
Published: 2017-03-14
Modified: 2025-04-20
Modified: 2025-04-20
CVE-2017-5985
lxc-user-nic in Linux Containers (LXC) allows local users with a lxc-usernet allocation to create network interfaces on the host and choose the name of those interfaces by leveraging lack of netns ownership check.
Severity: LOW (2.1)Vector: AV:L/AC:L/Au:N/C:N/I:P/A:N
Severity: LOW (3.3)Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
References:
- http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00073.html
- http://www.openwall.com/lists/oss-security/2017/03/09/4
- http://www.securityfocus.com/bid/96777
- http://www.ubuntu.com/usn/USN-3224-1
- https://bugs.launchpad.net/ubuntu/+source/lxc/+bug/1654676
- https://github.com/lxc/lxc/commit/16af238036a5464ae8f2420ed3af214f0de875f9
- https://lists.linuxcontainers.org/pipermail/lxc-devel/2017-March/015535.html
- http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00073.html
- http://www.openwall.com/lists/oss-security/2017/03/09/4
- http://www.securityfocus.com/bid/96777
- http://www.ubuntu.com/usn/USN-3224-1
- https://bugs.launchpad.net/ubuntu/+source/lxc/+bug/1654676
- https://github.com/lxc/lxc/commit/16af238036a5464ae8f2420ed3af214f0de875f9
- https://lists.linuxcontainers.org/pipermail/lxc-devel/2017-March/015535.html
