cockpit-323.1-1.el9.ML.1
エラータID: AXSA:2024-9119:16
リリース日:
2024/12/11 Wednesday - 19:14
題名:
cockpit-323.1-1.el9.ML.1
影響のあるチャネル:
MIRACLE LINUX 9 for x86_64
Severity:
Low
Description:
以下項目について対処しました。
[Security Fix]
- cockpit には、pam_env モジュールの user_readenv オプション
を有効化した際、任意のプロセスを強制的に終了できてしまう
問題があるため、認証されたリモートの攻撃者により、サービス
拒否攻撃を可能とする脆弱性が存在します。(CVE-2024-6126)
解決策:
パッケージをアップデートしてください。
CVE:
CVE-2024-6126
A flaw was found in the cockpit package. This flaw allows an authenticated user to kill any process when enabling the pam_env's user_readenv option, which leads to a denial of service (DoS) attack.
A flaw was found in the cockpit package. This flaw allows an authenticated user to kill any process when enabling the pam_env's user_readenv option, which leads to a denial of service (DoS) attack.
追加情報:
N/A
ダウンロード:
SRPMS
- cockpit-323.1-1.el9.ML.1.src.rpm
MD5: 28f84bcf5fd828e588fd52d2cce69745
SHA-256: 8866af9822b03502229dd39b556268c1995a033665c195e64400bb2be8b0f91b
Size: 13.68 MB
Asianux Server 9 for x86_64
- cockpit-323.1-1.el9.ML.1.x86_64.rpm
MD5: c3fe01787407b2b12eda8d02a1023375
SHA-256: 19b017c9cf2a9421776d15fc7521d9ac3e182c40bbdbde7ae023fb44157bf75c
Size: 40.78 kB - cockpit-bridge-323.1-1.el9.ML.1.x86_64.rpm
MD5: c8938c0d1281c20553cb525d6709f944
SHA-256: 55226e34976d1d03a93e6328ba112e96412a6b3a5095ad6ab5c429a2c046218b
Size: 596.87 kB - cockpit-doc-323.1-1.el9.ML.1.noarch.rpm
MD5: f27534389aa38a2d09fd8c6bbfc4e582
SHA-256: d98d23a86541a2e3981ebc589b26f956974dbefeec6c551bb5204c10a8c7c716
Size: 152.11 kB - cockpit-packagekit-323.1-1.el9.ML.1.noarch.rpm
MD5: 0e6b91b83c1db07da4943030a509aabb
SHA-256: 757112a05a33b0063e2899b7b6a24cea8777c592f89c5647edf7683ac3862f5d
Size: 866.85 kB - cockpit-pcp-323.1-1.el9.ML.1.x86_64.rpm
MD5: 53983668e1e5a3bb9718b470a1b55d4c
SHA-256: 11f347380844005936898caa36cacc1eb99ed36d295d9bca370225126a7e669a
Size: 78.23 kB - cockpit-storaged-323.1-1.el9.ML.1.noarch.rpm
MD5: aaed1ff68b6cc0303e886f0e40cda171
SHA-256: 3c2bb5944e566c9a47234b840a31607ca2ab19b6947caeca50b0058e2d354089
Size: 800.92 kB - cockpit-system-323.1-1.el9.ML.1.noarch.rpm
MD5: da53dcc814cfacc196ef10fa39f448e0
SHA-256: a3c080bf1c4cf5f1bb3666f6986226033fa5587625fd575e2cc2220757f214f8
Size: 5.07 MB - cockpit-ws-323.1-1.el9.ML.1.x86_64.rpm
MD5: adea67be834f9f1e31ac111d8e7ee327
SHA-256: 522fc85f6e4921d167532163b4e7308fb055aec8a16a49f5a0ff0c4982f926df
Size: 960.25 kB