Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×
Date: Wed, 12 Apr 2017 19:51:30 -0000 Reply-To: scientific-linux-users@ Sender: Security Errata for Scientific LinuxFrom: Pat Riehecky Subject: Security ERRATA Moderate: util-linux on SL7.x x86_64 MIME-Version: 1.0 Message-ID: <20170412195130.27262.66623@slpackages.fnal.gov> Synopsis: Moderate: util-linux security and bug fix update Advisory ID: SLSA-2017:0907-1 Issue Date: 2017-04-12 CVE Numbers: CVE-2017-2616 -- Security Fix(es): * A race condition was found in the way su handled the management of child processes. A local authenticated attacker could use this flaw to kill other processes with root privileges under specific conditions. (CVE-2017-2616) Bug Fix(es): * The "findmnt --target " command prints all file systems where the mount point directory is . Previously, when used in the chroot environment, "findmnt --target " incorrectly displayed all mount points. The command has been fixed so that it now checks the mount point path and returns information only for the relevant mount point. -- SL7 x86_64 libblkid-2.23.2-33.el7_3.2.i686.rpm libblkid-2.23.2-33.el7_3.2.x86_64.rpm libmount-2.23.2-33.el7_3.2.i686.rpm libmount-2.23.2-33.el7_3.2.x86_64.rpm libuuid-2.23.2-33.el7_3.2.i686.rpm libuuid-2.23.2-33.el7_3.2.x86_64.rpm util-linux-2.23.2-33.el7_3.2.x86_64.rpm util-linux-debuginfo-2.23.2-33.el7_3.2.i686.rpm util-linux-debuginfo-2.23.2-33.el7_3.2.x86_64.rpm uuidd-2.23.2-33.el7_3.2.x86_64.rpm libblkid-devel-2.23.2-33.el7_3.2.i686.rpm libblkid-devel-2.23.2-33.el7_3.2.x86_64.rpm libmount-devel-2.23.2-33.el7_3.2.i686.rpm libmount-devel-2.23.2-33.el7_3.2.x86_64.rpm libuuid-devel-2.23.2-33.el7_3.2.i686.rpm libuuid-devel-2.23.2-33.el7_3.2.x86_64.rpm util-linux-2.23.2-33.el7_3.2.i686.rpm - Scientific Linux Development Team