CESA-2015:2248 -- centos 7 netcf
|ID: oval:org.secpod.oval:def:204229||Date: (C)2017-04-04 (M)2018-09-27|
|Class: PATCH||Family: unix|
The netcf packages contain a library for modifying the network configuration of a system. Network configuration is expressed in a platform-independent XML format, which netcf translates into changes to the system"s "native" network configuration files. A denial of service flaw was found in netcf. A specially crafted interface name could cause an application using netcf to crash. This issue was discovered by Hao Liu of Red Hat. The netcf packages have been upgraded to upstream version 0.2.8, which provides a number of bug fixes and enhancements over the previous version. Users of netcf are advised to upgrade to these updated packages, which fix these bugs and add these enhancements.