You are here
Home > Preporuke > Sigurnosni nedostaci programskog paketa blktrace

Sigurnosni nedostaci programskog paketa blktrace

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LFE

——————————————————————————–
Fedora Update Notification
FEDORA-2018-775d96b54b
2018-08-19 21:29:12.787580
——————————————————————————–

Name : blktrace
Product : Fedora 27
Version : 1.2.0
Release : 6.fc27
URL : http://brick.kernel.dk/snaps
Summary : Utilities for performing block layer IO tracing in the Linux kernel
Description :
blktrace is a block layer IO tracing mechanism which provides detailed
information about request queue operations to user space. This package
includes both blktrace, a utility which gathers event traces from the kernel;
and blkparse, a utility which formats trace data collected by blktrace.

You should install the blktrace package if you need to gather detailed
information about IO patterns.

——————————————————————————–
Update Information:

Security fix for CVE-2018-10689
——————————————————————————–
ChangeLog:

* Mon May 7 2018 Eric Sandeen <sandeen@redhat.com> – 1.2.0-6
– Fix for CVE-2018-10689 (#1575120)
* Mon Feb 26 2018 Eric Sandeen <sandeen@redhat.com> – 1.2.0-5
– BuildRequires: gcc
* Sun Feb 25 2018 Florian Weimer <fweimer@redhat.com> – 1.2.0-4
– Use LDFLAGS from redhat-rpm-config
* Wed Feb 7 2018 Fedora Release Engineering <releng@fedoraproject.org> – 1.2.0-3
– Rebuilt for https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild
* Fri Dec 15 2017 Iryna Shcherbina <ishcherb@redhat.com> – 1.2.0-2
– Update Python 2 dependency declarations to new packaging standards
(See https://fedoraproject.org/wiki/FinalizingFedoraSwitchtoPython3)
* Mon Nov 6 2017 Eric Sandeen <sandeen@redhat.com> – 1.2.0-1
– New upstream version
——————————————————————————–
References:

[ 1 ] Bug #1575120 – CVE-2018-10689 blktrace: buffer overflow in the dev_map_read function in btt/devmap.c [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1575120
——————————————————————————–

This update can be installed with the “dnf” update program. Use
su -c ‘dnf upgrade –advisory FEDORA-2018-775d96b54b’ at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list — package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org
Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/7AU76VLZEBM2B3D4IMLLLI4GY63MLHNN/

——————————————————————————–
Fedora Update Notification
FEDORA-2018-c75a37ae9b
2018-08-19 22:40:14.096078
——————————————————————————–

Name : blktrace
Product : Fedora 28
Version : 1.2.0
Release : 6.fc28
URL : http://brick.kernel.dk/snaps
Summary : Utilities for performing block layer IO tracing in the Linux kernel
Description :
blktrace is a block layer IO tracing mechanism which provides detailed
information about request queue operations to user space. This package
includes both blktrace, a utility which gathers event traces from the kernel;
and blkparse, a utility which formats trace data collected by blktrace.

You should install the blktrace package if you need to gather detailed
information about IO patterns.

——————————————————————————–
Update Information:

Security fix for CVE-2018-10689
——————————————————————————–
ChangeLog:

* Mon May 7 2018 Eric Sandeen <sandeen@redhat.com> – 1.2.0-6
– Fix for CVE-2018-10689 (#1575120)
* Mon Feb 26 2018 Eric Sandeen <sandeen@redhat.com> – 1.2.0-5
– BuildRequires: gcc
——————————————————————————–
References:

[ 1 ] Bug #1575120 – CVE-2018-10689 blktrace: buffer overflow in the dev_map_read function in btt/devmap.c [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1575120
——————————————————————————–

This update can be installed with the “dnf” update program. Use
su -c ‘dnf upgrade –advisory FEDORA-2018-c75a37ae9b’ at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list — package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org
Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PSICS6RBKYTEVPICGF6O64TM6K3SYDFC/

AutorDanijel Kozinovic
Cert idNCERT-REF-2018-08-0001-ADV
CveCERT-CVE-DUMMY
ID izvornikaCERT-ORIGID-DUMMY
ProizvodCERT-DUMMY-PRODUCT
IzvorAdobe
Top
More in Preporuke
Sigurnosni nedostaci programskog paketa xen

Otkriveni su sigurnosni nedostaci u programskom paketu xen za operacijski sustav openSUSE. Otkriveni nedostaci potencijalnim napadačima omogućuju otkrivanje osjetljivih informacija....

Close