grub2-2.02-0.33.0.1.el7.AXS7
エラータID: AXSA:2015-955:03
The GRand Unified Bootloader (GRUB) is a highly configurable and customizable
bootloader with modular architecture. It support rich varietyof kernel formats,
file systems, computer architectures and hardware devices. This subpackage
provides support for PC BIOS systems.
Security issues fixed with this release:
CVE-2015-8370
** RESERVED **
This candidate has been reserved by an organization or individual that
will use it when announcing a new security problem. When the
candidate has been publicized, the details for this candidate will be
provided.
Fixed bugs:
* When upgrading from Asianux Server 7.1 and earlier, a configured boot password was not correctly migrated to the newly introduced user.cfg configuration files. This could possibly prevent system administrators from changing grub2 configuration during system boot even if they provided the correct password. This update corrects the password migration script and the incorrectly generated user.cfg file.
Update packages.
Multiple integer underflows in Grub2 1.98 through 2.02 allow physically proximate attackers to bypass authentication, obtain sensitive information, or cause a denial of service (disk corruption) via backspace characters in the (1) grub_username_get function in grub-core/normal/auth.c or the (2) grub_password_get function in lib/crypto.c, which trigger an "Off-by-two" or "Out of bounds overwrite" memory error.
N/A
SRPMS
- grub2-2.02-0.33.0.1.el7.AXS7.src.rpm
MD5: b02a8d04e9408826b9178c13301f5f6b
SHA-256: 967b91a28a38ea39230931d5386cf096a3dd061cd2af5bbaa6807ee8e3825dcc
Size: 6.68 MB
Asianux Server 7 for x86_64
- grub2-2.02-0.33.0.1.el7.AXS7.x86_64.rpm
MD5: b52d18224b28896ec4188a2040201f7a
SHA-256: 6e3dcb0271446b46a55366de72cfc0b720eb8a0618af449aef4516b91a80c015
Size: 1.48 MB - grub2-efi-2.02-0.33.0.1.el7.AXS7.x86_64.rpm
MD5: ef4a95b4fb81789ca654a05df732225c
SHA-256: c654e26c96028d5c10efc925c1142a61f4dd31102ce7efac33ddf5ac59917f79
Size: 1.34 MB - grub2-tools-2.02-0.33.0.1.el7.AXS7.x86_64.rpm
MD5: 95ff27a60c15da9533bf8c6d2758d346
SHA-256: 2bf0b0355969b9d22b2b0f72c69d38959a588217478361e35190213b86cd9512
Size: 3.28 MB