Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Fedora 39 Advisory: 2024-9eb3674b7c Moderate Session Management Threat

fedora
Calendar Grey July 5, 2024
Dist Fedora Esm H88
Regularly scheduled updates for your cockpit enhance protection against potential session breaches. Discover the steps needed to implement these updates effectively.
Automatic update for cockpit-320-1.fc39

Summary

The Cockpit Web Console enables users to administer GNU/Linux servers using a

web browser.

It offers network configuration, log inspection, diagnostic reports, SELinux

troubleshooting, interactive command-line sessions, and more.

Update Information:

Automatic update for cockpit-320-1.fc39. Changelog for cockpit * Wed Jul 03 2024 Packit - 320-1 - pam-ssh-add: Fix insecure killing of session ssh-agent [CVE-2024-6126] - sosreport: Read report directory from sos config (fix page on Debian/Ubuntu)

Change Log

* Wed Jul 3 2024 Packit - 320-1 - pam-ssh-add: Fix insecure killing of session ssh-agent [CVE-2024-6126] - sosreport: Read report directory from sos config (fix page on Debian/Ubuntu)

References


[ 1 ] Bug #2290859 - [CVE-2024-6126] authenticated user can kill any process when enabling pam_env's user_readenv option https://bugzilla.redhat.com/show_bug.cgi?id=2290859

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-9eb3674b7c' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Name: cockpit
Product: Fedora 39
Version: 320
Release: 1.fc39
Summary: Web Console for Linux servers

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here