gdisk-1.0.3-11.el8

エラータID: AXSA:2022-4240:03

Release date: 
Tuesday, November 29, 2022 - 13:40
Subject: 
gdisk-1.0.3-11.el8
Affected Channels: 
Asianux Server 8 for x86_64
Severity: 
Moderate
Description: 

The gdisk packages provide the gdisk partitioning utility for GUID Partition Table (GPT) disks. The utility features a command-line interface similar to fdisk, direct manipulation of partition table structures, recovery tools to deal with corrupt partition tables, and the ability to convert Master Boot Record (MBR) disks to the GPT format.

Security Fix(es):

* gdisk: possible out-of-bounds-write in LoadPartitionTable of gpt.cc (CVE-2020-0256)
* gdisk: possible out-of-bounds-write in ReadLogicalParts of basicmbr.cc (CVE-2021-0308)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the Asianux Server 8.7 Release Notes linked from the References section.

CVE-2020-0256
In LoadPartitionTable of gpt.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege when inserting a malicious USB device, with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9 Android-10 Android-8.0Android ID: A-152874864
CVE-2021-0308
In ReadLogicalParts of basicmbr.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android; Versions: Android-8.1, Android-9, Android-10, Android-11, Android-8.0; Android ID: A-158063095.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. gdisk-1.0.3-11.el8.src.rpm
    MD5: 9d1595c966588513a4528ae84ce23cd4
    SHA-256: f1f6a75f23a011b5075e44d689029ea8b110a6187b54d3b4dd6e7a2d96c8dd42
    Size: 213.74 kB

Asianux Server 8 for x86_64
  1. gdisk-1.0.3-11.el8.x86_64.rpm
    MD5: eb52ba74408d3ba055b3cbd5d5e09747
    SHA-256: 358b9ad052f9c84aff598c54c7be79e5cf1d40383d86d0006a614a04a669b9b2
    Size: 239.52 kB