traceroute-2.1.0-8.el8

エラータID: AXSA:2024-8224:02

Release date: 
Saturday, June 15, 2024 - 02:50
Subject: 
traceroute-2.1.0-8.el8
Affected Channels: 
Asianux Server 8 for x86_64
Severity: 
Moderate
Description: 

The traceroute utility displays the route used by IP packets on their way to a specified network (or Internet) host.

Security Fix(es):

* traceroute: improper command line parsing (CVE-2023-46316)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the Asianux Server 8.10 Release Notes linked from the References section.

CVE-2023-46316
In buc Traceroute 2.0.12 through 2.1.2 before 2.1.3, the wrapper scripts do not properly parse command lines.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. traceroute-2.1.0-8.el8.src.rpm
    MD5: f5f1a52b36532d9e619e8d583661ab56
    SHA-256: 66cf3c5d18a73140898f0dabdf79dc4f667e5f679803d4d6f220a566be698aec
    Size: 93.39 kB

Asianux Server 8 for x86_64
  1. traceroute-2.1.0-8.el8.x86_64.rpm
    MD5: 62887d0b4f7d7524b6a5e931262cc7ec
    SHA-256: 4819eb51f23e0c20b8277d775be25b2e0d21b489e581c841ba7247c330f0c371
    Size: 66.36 kB