Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

Oracle Linux 7 ELSA-2021-4785 Moderate: Fix Double-Free In RPM

oracle
Calendar Grey November 26, 2021
Oracle Linux Logo Esm H88
Essential security patch for Oracle Linux 7 resolving CVE-2021-20274 and memory corruption vulnerabilities in package handling.
The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

Summary

[4.11.3-48] - Fix double-free in previously added patch (#2004228) [4.11.3-47] - Improve range checks on signature and main header tags (#2004228) - Fixes CVE-2021-20271

SRPMs

https://oss.oracle.com:443/ol7/SRPMS-updates/rpm-4.11.3-48.el7_9.src.rpm

x86_64

aarch64

rpm-4.11.3-48.el7_9.aarch64.rpm rpm-build-4.11.3-48.el7_9.aarch64.rpm rpm-build-libs-4.11.3-48.el7_9.aarch64.rpm rpm-devel-4.11.3-48.el7_9.aarch64.rpm rpm-libs-4.11.3-48.el7_9.aarch64.rpm rpm-python-4.11.3-48.el7_9.aarch64.rpm rpm-sign-4.11.3-48.el7_9.aarch64.rpm rpm-apidocs-4.11.3-48.el7_9.noarch.rpm rpm-cron-4.11.3-48.el7_9.noarch.rpm rpm-plugin-systemd-inhibit-4.11.3-48.el7_9.aarch64.rpm

Related CVEs: CVE-2021-20271

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here