fapolicyd-1.1-6.el8

エラータID: AXSA:2022-3437:01

Release date: 
Wednesday, July 6, 2022 - 08:40
Subject: 
fapolicyd-1.1-6.el8
Affected Channels: 
Asianux Server 8 for x86_64
Severity: 
Moderate
Description: 

Fapolicyd (File Access Policy Daemon) implements application whitelisting to decide file access rights. Applications that are known via a reputation source are allowed access while unknown applications are not. The daemon makes use of the kernel's fanotify interface to determine file access rights.

The following packages have been upgraded to a later upstream version: fapolicyd (1.1). (BZ#1939379)

Security Fix(es):

* fapolicyd: fapolicyd wrongly prepares ld.so path (CVE-2022-1117)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the Asianux Server 8.6 Release Notes linked from the References section.

CVE-2022-1117
** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. fapolicyd-1.1-6.el8.src.rpm
    MD5: eff33957adff25b896f0f71a603454d4
    SHA-256: a18c43fdb12e684c24236577b8a08385106d560315e1a9177aa2f4e607559a3c
    Size: 135.38 kB

Asianux Server 8 for x86_64
  1. fapolicyd-1.1-6.el8.x86_64.rpm
    MD5: 1e7480d7d87d4467f5e4b2124cd00103
    SHA-256: 65deff77a54fbe6fa99533100204f28feb644ffc2554f5c84c883aee6bb3a822
    Size: 123.89 kB
  2. fapolicyd-selinux-1.1-6.el8.noarch.rpm
    MD5: 68195e3e75313a1b7cc1f88ac22e926b
    SHA-256: 36b0affc2ef5a77235d3493af62814bff90228f7f3de252eeaf5bfdd6ce7071c
    Size: 24.63 kB