util-linux-2.13-0.59.0.1.AXS3
エラータID: AXSA:2012-269:01
The util-linux package contains a large variety of low-level system utilities that are necessary for a Linux system to function. Among others, Util-linux contains the fdisk configuration tool and the login program.
Security issues fixed with this release:
CVE-2011-1675
mount in util-linux 2.19 and earlier attempts to append to the /etc/mtab.tmp file without first checking whether resource limits would interfere, which allows local users to trigger corruption of the /etc/mtab file via a process with a small RLIMIT_FSIZE value, a related issue to CVE-2011-1089.
CVE-2011-1677
mount in util-linux 2.19 and earlier does not remove the /etc/mtab~ lock file after a failed attempt to add a mount entry, which has unspecified impact and local attack vectors.
Fixed bugs:
• If the user logged into a telnet server, the login utility failed to properly update the utmp database if the utility was executed from the telnetd daemon. This has been fixed.
• Added the descriptions of many options to the blockdev(8) manual page, as well as some missisng information about the ext4 and XFS file systems.
• Previously, the build process of the util-linux package failed in the po directory with the following error message: @MKINSTALLDIRS@: No such file or directory. This has been fixed and the package now builds successfully.
• Removed the invalid -b option from the ipcs(1) and ipcrm(1) manual pages.
Enhancements:
• If DOS mode was enabled on a device, the fdisk utility sometimes reported error messages similar to:
Partition 1 has different physical/logical beginnings (non-Linux?): phys=(0, 1, 1) logical=(0, 2, 7)
The DOS compatible mode can now be switched off (by specifying the -c option), thus fixing the problem.
• Added fsfreeze command which halts access to a file system on a disk.
Update packages.
mount in util-linux 2.19 and earlier attempts to append to the /etc/mtab.tmp file without first checking whether resource limits would interfere, which allows local users to trigger corruption of the /etc/mtab file via a process with a small RLIMIT_FSIZE value, a related issue to CVE-2011-1089.
mount in util-linux 2.19 and earlier does not remove the /etc/mtab~ lock file after a failed attempt to add a mount entry, which has unspecified impact and local attack vectors.
N/A
SRPMS
- util-linux-2.13-0.59.0.1.AXS3.src.rpm
MD5: 54b7791a8c33545f267de5421e1c2e38
SHA-256: 947bb33de1f40a2300a3c2b54aedbfc6145f6e157cecf646ec8b6e2d1ea541a9
Size: 2.80 MB
Asianux Server 3 for x86
- util-linux-2.13-0.59.0.1.AXS3.i386.rpm
MD5: 6577db54623b768e21690e6e21c1a557
SHA-256: 0dd7d7e3bf9fe8af0ea0c85fcd9d510cf9252161f59331c1f91e3498b41bced4
Size: 1.86 MB
Asianux Server 3 for x86_64
- util-linux-2.13-0.59.0.1.AXS3.x86_64.rpm
MD5: ed6747b6b08f335ce4229ece18df443b
SHA-256: 23849121f2cb5e69d3923601d3f86eaba9b453f4c004a637d762fa1bcd283eaf
Size: 1.86 MB