booth-1.0-251.3.bfb2f92.git.el9.1
エラータID: AXSA:2023-5095:03
リリース日:
2023/02/15 Wednesday - 07:03
題名:
booth-1.0-251.3.bfb2f92.git.el9.1
影響のあるチャネル:
MIRACLE LINUX 9 for x86_64
Severity:
Moderate
Description:
以下項目について対処しました。
[Security Fix]
- booth には、設定ファイルの authfile ディレクティブが評価されない
問題があるため、リモートの攻撃者により、正しい認証キーを持たない
ようにされたノードとクラスター内の他のノード間の通信の妨害を可能
とする脆弱性が存在します。(CVE-2022-2553)
解決策:
パッケージをアップデートしてください。
CVE:
CVE-2022-2553
The authfile directive in the booth config file is ignored, preventing use of authentication in communications from node to node. As a result, nodes that do not have the correct authentication key are not prevented from communicating with other nodes in the cluster.
The authfile directive in the booth config file is ignored, preventing use of authentication in communications from node to node. As a result, nodes that do not have the correct authentication key are not prevented from communicating with other nodes in the cluster.
追加情報:
N/A
ダウンロード:
SRPMS
- booth-1.0-251.3.bfb2f92.git.el9.1.src.rpm
MD5: 04e26cf75bb94430b7b24fc423bfa951
SHA-256: 3093135695451419650416e3599e5eaed6a73ac2a3a3fe196dd94171cc927758
Size: 160.75 kB
Asianux Server 9 for x86_64
- booth-1.0-251.3.bfb2f92.git.el9.1.x86_64.rpm
MD5: 1a056c32cf454d8ce4ee854b1259410b
SHA-256: 9b5338a6897552c3ed6378a02b6f5580618c5e0b12bb8334babe59e04fa1fd45
Size: 15.55 kB - booth-1.0-251.3.bfb2f92.git.el9.1.x86_64.rpm
MD5: 1a056c32cf454d8ce4ee854b1259410b
SHA-256: 9b5338a6897552c3ed6378a02b6f5580618c5e0b12bb8334babe59e04fa1fd45
Size: 15.55 kB - booth-arbitrator-1.0-251.3.bfb2f92.git.el9.1.noarch.rpm
MD5: 19f6d11474b71214d3929ecdeb97a996
SHA-256: 87f20ff4339c4587c1f2b2b67144794da79c5c5a84aaeea61915090f93931e4e
Size: 9.80 kB - booth-arbitrator-1.0-251.3.bfb2f92.git.el9.1.noarch.rpm
MD5: 19f6d11474b71214d3929ecdeb97a996
SHA-256: 87f20ff4339c4587c1f2b2b67144794da79c5c5a84aaeea61915090f93931e4e
Size: 9.80 kB - booth-core-1.0-251.3.bfb2f92.git.el9.1.x86_64.rpm
MD5: d63727913a1c9a22e04b744f1fcd717e
SHA-256: 0bbb7ccdc8d036e7de5a09c98453cbba01308d4ca64176cc3e03abd57bd8280a
Size: 109.94 kB - booth-core-1.0-251.3.bfb2f92.git.el9.1.x86_64.rpm
MD5: d63727913a1c9a22e04b744f1fcd717e
SHA-256: 0bbb7ccdc8d036e7de5a09c98453cbba01308d4ca64176cc3e03abd57bd8280a
Size: 109.94 kB - booth-site-1.0-251.3.bfb2f92.git.el9.1.noarch.rpm
MD5: e7a2d0947de3796c0375ca56739542ef
SHA-256: 5452b0041f3fdaf97b583cbe3a7af5db37ece2f470735fc705017540ecee1734
Size: 15.95 kB - booth-site-1.0-251.3.bfb2f92.git.el9.1.noarch.rpm
MD5: e7a2d0947de3796c0375ca56739542ef
SHA-256: 5452b0041f3fdaf97b583cbe3a7af5db37ece2f470735fc705017540ecee1734
Size: 15.95 kB - booth-test-1.0-251.3.bfb2f92.git.el9.1.noarch.rpm
MD5: ad766bc871565ebbe58cf5a20d79119b
SHA-256: 22965ffbaed7891420d7c7181b4985a329c58ff96c0d767c3ae6161b9bd7da62
Size: 49.69 kB - booth-test-1.0-251.3.bfb2f92.git.el9.1.noarch.rpm
MD5: ad766bc871565ebbe58cf5a20d79119b
SHA-256: 22965ffbaed7891420d7c7181b4985a329c58ff96c0d767c3ae6161b9bd7da62
Size: 49.69 kB