Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 524
Alerts This Week
Warning Icon 1 524

Scientific Linux SL7: SLSA-2018-1223-1 Critical: librelp Buffer Overflow

Scientific Large Esm H446
librelp: Stack-based buffer overflow in relpTcpChkPeerName function in src/tcp.c (CVE-2018-1000140) SL7 x86_64 librelp-1.2.12-1.el7_5.1.i686.rpm librelp-1.2.12-1.el7_5.1.x86_64.rpm librelp-debuginfo-1.2.12-1.el7_5.1.i686.rpm librelp-debuginfo-1.2.12-1.el7_5.1.x86_64.rpm librelp-devel-1.2.12-1.el7_5.1.i686.rpm librelp-devel-1.2.12-1.el7_5.1.x86_64.rpm - Scientific Li [More...]
Synopsis:          Critical: librelp security update
Advisory ID:       SLSA-2018:1223-1
Issue Date:        2018-04-24
CVE Numbers:       CVE-2018-1000140
--

Security Fix(es):

* librelp: Stack-based buffer overflow in relpTcpChkPeerName function in
src/tcp.c (CVE-2018-1000140)
--

SL7
  x86_64
    librelp-1.2.12-1.el7_5.1.i686.rpm
    librelp-1.2.12-1.el7_5.1.x86_64.rpm
    librelp-debuginfo-1.2.12-1.el7_5.1.i686.rpm
    librelp-debuginfo-1.2.12-1.el7_5.1.x86_64.rpm
    librelp-devel-1.2.12-1.el7_5.1.i686.rpm
    librelp-devel-1.2.12-1.el7_5.1.x86_64.rpm

- Scientific Linux Development Team