[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250108

 
 

909

 
 

196064

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2017:2031-1 -- SLES systemd, libsystemd0, libudev1, udev

ID: oval:org.secpod.oval:def:89044899Date: (C)2021-07-20   (M)2022-10-10
Class: PATCHFamily: unix




This update for systemd provides several fixes and enhancements. Security issues fixed: - CVE-2017-9217: Null pointer dereferencing that could lead to resolved aborting. - CVE-2017-9445: Possible out-of-bounds write triggered by a specially crafted TCP payload from a DNS server. The update also fixed several non-security bugs: - core/mount: Use the -c flag to not canonicalize paths when calling /bin/umount - automount: Handle expire_tokens when the mount unit changes its state - automount: Rework propagation between automount and mount units - build: Make sure tmpfiles.d/systemd-remote.conf get installed when necessary - build: Fix systemd-journal-upload installation - basic: Detect XEN Dom0 as no virtualization - virt: Make sure some errors are not ignored - fstab-generator: Do not skip Before= ordering for noauto mountpoints - fstab-gen: Do not convert device timeout into seconds when initializing JobTimeoutSec - core/device: Use JobRunningTimeoutSec= for device units - fstab-generator: Apply the _netdev option also to device units - job: Add JobRunningTimeoutSec for JOB_RUNNING state - job: Ensure JobRunningTimeoutSec= survives serialization - rules: Export NVMe WWID udev attribute - rules: Introduce disk/by-id symbolic links for NVMe drives - rules: Add rules for NVMe devices - sysusers: Make group shadow support configurable - core: When deserializing a unit, fully restore its cgroup state - core: Introduce cg_mask_from_string/cg_mask_to_string - core:execute: Fix handling failures of calling fork in exec_spawn - Fix systemd-sysv-convert when a package starts shipping service units The database might be missing when upgrading a package which was shipping no sysv init scripts nor unit files but the new version start shipping unit files. - Disable group shadow support - Only check signature job error if signature job exists - Automounter issue in combination with NFS volumes - Missing symbolic link for SAS device in /dev/disk/by-path - Add minimal support for boot.d/* scripts in systemd-sysv-convert

Platform:
SUSE Linux Enterprise Server 12 SP3
Product:
systemd
libsystemd0
libudev1
udev
Reference:
SUSE-SU-2017:2031-1
CVE-2017-9217
CVE-2017-9445
CVE    2
CVE-2017-9217
CVE-2017-9445
CPE    5
cpe:/a:ubuntu_developers:systemd
cpe:/o:suse:suse_linux_enterprise_server:12:sp3
cpe:/a:kernel:udev
cpe:/a:systemd:libsystemd0
...

© SecPod Technologies