AXSA:2021-1805:02

Release date: 
Monday, June 7, 2021 - 11:29
Subject: 
libdb-5.3.28-40.el8
Affected Channels: 
Asianux Server 8 for x86_64
Severity: 
Low
Description: 

The libdb packages provide the Berkeley Database, an embedded database supporting both traditional and client/server applications.

Security Fix(es):

* libdb: Denial of service in the Data Store component (CVE-2019-2708)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the Asianux Server 8.4 Release Notes linked from the References section.

CVE-2019-2708
Vulnerability in the Data Store component of Oracle Berkeley DB. Supported versions that are affected are Prior to 6.138, prior to 6.2.38 and prior to 18.1.32. Easily exploitable vulnerability allows low privileged attacker having Local Logon privilege with logon to the infrastructure where Data Store executes to compromise Data Store. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Data Store. CVSS 3.0 Base Score 3.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L).

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. libdb-5.3.28-40.el8.src.rpm
    MD5: 60d2598f4ed2704bfcc4a2cfdd7d79c3
    SHA-256: bb704915aecdc0f223fb4fd76a937c61097f46e535a52502741a5774e293a186
    Size: 33.65 MB

Asianux Server 8 for x86_64
  1. libdb-5.3.28-40.el8.x86_64.rpm
    MD5: 9662ee124537cfc77008eac3a490f778
    SHA-256: 28d880c7e577273dac53994b11d502734892fdc4680f73dc99a67b1a996c5d71
    Size: 750.03 kB
  2. libdb-devel-5.3.28-40.el8.x86_64.rpm
    MD5: 35e7fb65742380f80a5507ae1ff54db0
    SHA-256: e0e873a830e19d68133291d24f75c86a51112f70ec329615b3dbdf53a2339943
    Size: 45.24 kB
  3. libdb-utils-5.3.28-40.el8.x86_64.rpm
    MD5: 8ca313a931e1b37f047749d9c5d73059
    SHA-256: f28a9d4ff1fd126447e389171faf6f9e8daa216e931714467ca7e1418e29d883
    Size: 148.16 kB
  4. libdb-5.3.28-40.el8.i686.rpm
    MD5: 87844101fff77b8950087a54cbefabd7
    SHA-256: 7013abf2e5cf900fdbf77f3fd908dbeaae2f16e6dc232121c099debfe91a8cef
    Size: 823.37 kB
  5. libdb-devel-5.3.28-40.el8.i686.rpm
    MD5: 39ceb88f3524ad311e388e179f8b6806
    SHA-256: e055406c6b5e09cc585f2e82dbe6d24302d16169c97a9b7d5e5aba7f7f4d34df
    Size: 45.27 kB
Copyright© 2007-2015 Asianux. All rights reserved.