ALT-PU-2024-1317-1
Package kernel-image-centos updated to version 5.14.0.410-alt1.el9 for branch sisyphus in task 338662.
Closed vulnerabilities
Published: 2023-12-04
BDU:2023-08638
Уязвимость функции smbCalcSize() (fs/smb/client/netmisc.c) ядра операционных систем Linux, позволяющая нарушителю раскрыть защищаемую информацию или вызвать отказ в обслуживании
Severity: HIGH (7.1)
Vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
References:
Published: 2021-05-24
Modified: 2024-11-21
Modified: 2024-11-21
CVE-2020-26555
Bluetooth legacy BR/EDR PIN code pairing in Bluetooth Core Specification 1.0B through 5.2 may permit an unauthenticated nearby device to spoof the BD_ADDR of the peer device to complete pairing without knowledge of the PIN.
Severity: MEDIUM (5.4)
Vector: CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
References:
- https://kb.cert.org/vuls/id/799380
- https://kb.cert.org/vuls/id/799380
- FEDORA-2021-a35b44fd9f
- FEDORA-2021-a35b44fd9f
- https://www.bluetooth.com/learn-about-bluetooth/key-attributes/bluetooth-security/reporting-security/
- https://www.bluetooth.com/learn-about-bluetooth/key-attributes/bluetooth-security/reporting-security/
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00520.html
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00520.html
Published: 2023-12-08
Modified: 2024-11-21
Modified: 2024-11-21
CVE-2023-6606
An out-of-bounds read vulnerability was found in smbCalcSize in fs/smb/client/netmisc.c in the Linux Kernel. This issue could allow a local attacker to crash the system or leak internal kernel information.
Severity: HIGH (7.1)
Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
References:
- RHSA-2024:0723
- RHSA-2024:0723
- RHSA-2024:0725
- RHSA-2024:0725
- RHSA-2024:0881
- RHSA-2024:0881
- RHSA-2024:0897
- RHSA-2024:0897
- RHSA-2024:1188
- RHSA-2024:1188
- RHSA-2024:1248
- RHSA-2024:1248
- RHSA-2024:1404
- RHSA-2024:1404
- RHSA-2024:2094
- RHSA-2024:2094
- https://access.redhat.com/security/cve/CVE-2023-6606
- https://access.redhat.com/security/cve/CVE-2023-6606
- https://bugzilla.kernel.org/show_bug.cgi?id=218218
- https://bugzilla.kernel.org/show_bug.cgi?id=218218
- RHBZ#2253611
- RHBZ#2253611
- https://lists.debian.org/debian-lts-announce/2024/01/msg00004.html
- https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html