Alerts This Week
Warning Icon 1 566
Alerts This Week
Warning Icon 1 566

openSUSE: 2022:0037-1 Important Firejail Security Update

opensuse
Calendar Grey February 16, 2022
Dist Opensuse Esm H88
Important revision for firejail in openSUSE resolves several vulnerabilities while strengthening overall system security.
An update that contains security fixes can now be installed

Description

This update for firejail fixes the following issues:

- Update Leap 15.3 package to 0.9.68 (boo#1195880)

update to firejail 0.9.68:

- security: on Ubuntu, the PPA is now recommended over the distro package

- (see README.md) (#4748)

- security: bugfix: private-cwd leaks access to the entire filesystem

- (#4780); reported by Hugo Osvaldo Barrera

- feature: remove (some) environment variables with auth-tokens (#4157)

- feature: ALLOW_TRAY condition (#4510 #4599)

- feature: add basic Firejail support to AppArmor base abstraction (#3226

- #4628)

- feature: intrusion detection system (--ids-init, --ids-check)

- feature: deterministic shutdown command (--deterministic-exit-code,

- --deterministic-shutdown) (#928 #3042 #4635)

- feature: noprinters command (#4607 #4827)

- feature: network monitor (--nettrace)

- feature: network locker (--netlock) (#4848)

- feature: whitelist-ro profile command (#4740)

- feature: disable pipewire with...

Read the Full Advisory

Patch

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Backports SLE-15-SP3:

zypper in -t patch openSUSE-2022-37=1

Package List

- openSUSE Backports SLE-15-SP3 (aarch64 i586 ppc64le s390x x86_64):

firejail-0.9.68-bp153.2.3.1

References

https://bugzilla.suse.com/1195880

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2022:0037-1
Rating: important
Affected Products: openSUSE Backports SLE-15-SP3 .

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here