[CLSA-2022:1645466687] Fix of CVE: CVE-2021-28153, CVE-2021-3800
Type:
security
Severity:
moderate
Release date:
2022-02-21
Description:
- CVE-2021-28153: g_file_replace() with G_FILE_CREATE_REPLACE_DESTINATION creates empty target for dangling symlink (#1939118) - CVE-2021-3800: Possible privilege escalation thourgh pkexec and aliases (#1938284)
Updated packages:
  • glib2-2.56.4-10.el8.4.1.tuxcare.els1.i686.rpm
    sha:2527f256c2ee9db37728ecbc39d3fc41094e7243
  • glib2-devel-2.56.4-10.el8.4.1.tuxcare.els1.x86_64.rpm
    sha:1f47551c8a7c8740c228d395f0e0e8d5df6f767d
  • glib2-fam-2.56.4-10.el8.4.1.tuxcare.els1.x86_64.rpm
    sha:c66543d9ba7459c18cccc4d997298a07c685bd9b
  • glib2-devel-2.56.4-10.el8.4.1.tuxcare.els1.i686.rpm
    sha:0c29aa8fff4f8f26ca3a9a62d3738ac14239885c
  • glib2-tests-2.56.4-10.el8.4.1.tuxcare.els1.x86_64.rpm
    sha:28a9b23695630eb690c0f66c354eaf20487b8385
  • glib2-static-2.56.4-10.el8.4.1.tuxcare.els1.x86_64.rpm
    sha:46c75330d0df4afbe5a9b643568ffa4308ec0112
  • glib2-2.56.4-10.el8.4.1.tuxcare.els1.x86_64.rpm
    sha:3325406bad7c140bd338886b1865eff23324bb40
  • glib2-doc-2.56.4-10.el8.4.1.tuxcare.els1.noarch.rpm
    sha:916a63d37f3a5d8cd895d0be0dde11e6afc8b572
  • glib2-static-2.56.4-10.el8.4.1.tuxcare.els1.i686.rpm
    sha:08ac708f589de9810d7ec57d8626fa1d2b975cd6
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.