ALT-PU-2016-1850-1
Package util-linux updated to version 2.28.1-alt1 for branch sisyphus in task 168589.
Closed vulnerabilities
Published: 2017-04-11
Modified: 2024-11-21
Modified: 2024-11-21
CVE-2016-5011
The parse_dos_extended function in partitions/dos.c in the libblkid library in util-linux allows physically proximate attackers to cause a denial of service (memory consumption) via a crafted MSDOS partition table with an extended partition boot record at zero offset.
Severity: MEDIUM (4.6)
Vector: CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
References:
- RHSA-2016:2605
- RHSA-2016:2605
- [oss-security] 20160711 CVE-2016-5011: util-linux: Extended partition loop in MBR partition table leads to DoS
- [oss-security] 20160711 CVE-2016-5011: util-linux: Extended partition loop in MBR partition table leads to DoS
- 91683
- 91683
- 1036272
- 1036272
- http://www-01.ibm.com/support/docview.wss?uid=isg3T1024543
- http://www-01.ibm.com/support/docview.wss?uid=isg3T1024543
- http://www-01.ibm.com/support/docview.wss?uid=nas8N1021801
- http://www-01.ibm.com/support/docview.wss?uid=nas8N1021801
- https://git.kernel.org/pub/scm/utils/util-linux/util-linux.git/commit/?id=7164a1c3
- https://git.kernel.org/pub/scm/utils/util-linux/util-linux.git/commit/?id=7164a1c3
Closed bugs
удалите поддержку /lib/udev/devices