libnl3-3.2.28-4.el7, NetworkManager-1.8.0-9.el7, network-manager-applet-1.8.0-3.el7, NetworkManager-libreswan-1.2.4-2.el7

エラータID: AXSA:2017-2108:01

Release date: 
Friday, September 8, 2017 - 19:37
Subject: 
libnl3-3.2.28-4.el7, NetworkManager-1.8.0-9.el7, network-manager-applet-1.8.0-3.el7, NetworkManager-libreswan-1.2.4-2.el7
Affected Channels: 
Asianux Server 7 for x86_64
Severity: 
Moderate
Description: 

libnl3
This package contains a convenience library to simplify
using the Linux kernel's netlink sockets interface for
network manipulation

NetworkManager
NetworkManager is a system service that manages network interfaces and
connections based on user or automatic configuration. It supports
Ethernet, Bridge, Bond, VLAN, Team, InfiniBand, Wi-Fi, mobile broadband
(WWAN), PPPoE and other devices, and supports a variety of different VPN
services.

network-manager-applet
This package contains a network control and status notification area applet
for use with NetworkManager.

NetworkManager-libreswan
This package contains software for integrating the libreswan VPN software
with NetworkManager and the GNOME desktop

CVE-2017-0553
An elevation of privilege vulnerability in libnl could enable a local
malicious application to execute arbitrary code within the context of
the Wi-Fi service. This issue is rated as Moderate because it first
requires compromising a privileged process and is mitigated by current
platform configurations. Product: Android. Versions: 5.0.2, 5.1.1,
6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-32342065. NOTE: this issue also
exists in the upstream libnl before 3.3.0 library.

Solution: 

Update packages.

Additional Info: 

N/A

Download: