Skip to content

Security Update 1.0 78

Siju Maliakkal edited this page Jan 26, 2022 · 1 revision

Critical Photon OS Security Update

Summary

Advisory Id : PHSA-2017-0078

Type : Security

Severity : ['Critical', 'Important', 'Moderate']

Issue date : 2017-10-19

Affected Release: 1.0

Details

Updates of ['dosfstools', 'git', 'libgcrypt', 'mercurial', 'linux', 'mysql', 'ncurses', 'gnutls', 'dnsmasq', 'apache- tomcat', 'binutils', 'c-ares', 'linux-esx', 'nginx', 'mesos', 'libtasn1'] packages of Photon OS have been released.

Affected Packages

Critical

mercurial - ['CVE-2017-1000116']

Important

git - ['CVE-2017-14867']

mercurial - ['CVE-2017-1000115']

linux - ['CVE-2017-18270', 'CVE-2017-11472', 'CVE-2017-16526', 'CVE-2017-12154']

dnsmasq - ['CVE-2017-13704']

apache-tomcat - ['CVE-2017-12617']

binutils - ['CVE-2017-15020', 'CVE-2017-14745', 'CVE-2017-14729']

linux-esx - ['CVE-2017-18270', 'CVE-2017-11472', 'CVE-2017-16526', 'CVE-2017-12154']

mesos - ['CVE-2017-9790', 'CVE-2017-7687']

Moderate

dosfstools - ['CVE-2016-4804', 'CVE-2015-8872']

libgcrypt - ['CVE-2017-0379']

linux - ['CVE-2017-14106', 'CVE-2017-16530', 'CVE-2017-16529', 'CVE-2017-12192', 'CVE-2017-14051', 'CVE-2017-15537', 'CVE-2017-14489', 'CVE-2017-16531', 'CVE-2017-12153', 'CVE-2017-1000252', 'CVE-2017-14156', 'CVE-2017-16534', 'CVE-2017-14991']

mysql - ['CVE-2017-3634', 'CVE-2017-3652', 'CVE-2017-3638', 'CVE-2017-3637', 'CVE-2017-3643', 'CVE-2017-3644', 'CVE-2017-3640', 'CVE-2017-3635', 'CVE-2017-3529', 'CVE-2017-3647', 'CVE-2017-3645', 'CVE-2017-3642', 'CVE-2017-3649', 'CVE-2017-3641', 'CVE-2017-3651', 'CVE-2017-3633', 'CVE-2017-3648', 'CVE-2017-3650', 'CVE-2017-3639']

ncurses - ['CVE-2017-13734', 'CVE-2017-13728', 'CVE-2017-13732', 'CVE-2017-13729', 'CVE-2017-13730', 'CVE-2017-13733', 'CVE-2017-13731']

gnutls - ['CVE-2016-4456', 'CVE-2017-7507']

binutils - ['CVE-2017-12799', 'CVE-2017-14130', 'CVE-2017-14529', 'CVE-2017-12967', 'CVE-2017-13757', 'CVE-2017-13710', 'CVE-2017-14333', 'CVE-2017-14129', 'CVE-2017-14128']

c-ares - ['CVE-2017-1000381']

linux-esx - ['CVE-2017-14106', 'CVE-2017-16530', 'CVE-2017-16529', 'CVE-2017-12192', 'CVE-2017-14051', 'CVE-2017-15537', 'CVE-2017-14489', 'CVE-2017-16531', 'CVE-2017-12153', 'CVE-2017-1000252', 'CVE-2017-14156', 'CVE-2017-16534', 'CVE-2017-14991']

nginx - ['CVE-2017-7529']

libtasn1 - ['CVE-2017-10790']

Solution

Update the affected packages (tdnf update package)

Note: For packages ['linux', 'linux-esx'] after updating, a reboot is required for taking effect.

Updated Packages Information

dosfstools-debuginfo-4.1-1.ph1.x86_64.rpm | size : 208K , sha256 : 6f52b1aae5b6cd8bf3bab8d49f8609adc55aa23dc991ebcc7180d74d7047ab7d , build time : Wed, 18 Oct 2017 21:49:26 UTC

dosfstools-4.1-1.ph1.x86_64.rpm | size : 100K , sha256 : a1991555775c1f3f032b212a68346b6a51a89e348466097b633475500f3c104d , build time : Wed, 18 Oct 2017 21:49:26 UTC

git-lang-2.14.2-1.ph1.x86_64.rpm | size : 1.3M , sha256 : 2a5ed6e31b9ae0364426ea3ab49e136d2877007dce9099299316b6b442c6e3e2 , build time : Wed, 18 Oct 2017 21:52:34 UTC

git-2.14.2-1.ph1.x86_64.rpm | size : 11M , sha256 : 9b8b983bbbb3b6b8316d5ee5b868442f697c5e8fb96725bdba3f3bdb1c7c76c1 , build time : Wed, 18 Oct 2017 21:52:34 UTC

git-debuginfo-2.14.2-1.ph1.x86_64.rpm | size : 30M , sha256 : 1553b009460931dda48747498cbc6b967dbd3fc4c6959b16d0010d4f62e9d24f , build time : Wed, 18 Oct 2017 21:52:34 UTC

libgcrypt-devel-1.7.6-2.ph1.x86_64.rpm | size : 28K , sha256 : 7193b2cea692a5a0fb5888db8a4ee2acd659a92a75fd4761a1133c7b6049cd36 , build time : Wed, 18 Oct 2017 21:49:48 UTC

libgcrypt-1.7.6-2.ph1.x86_64.rpm | size : 480K , sha256 : 6ab86afbdc22ef0be2e3457b9d7eb166e97fa6e5666a62e7a1683ea99e841d58 , build time : Wed, 18 Oct 2017 21:49:48 UTC

libgcrypt-debuginfo-1.7.6-2.ph1.x86_64.rpm | size : 1.6M , sha256 : ec2192292a36b986ca157dbf0e8407dddf2fbd22dc9cb8fcee66262d32d9584b , build time : Wed, 18 Oct 2017 21:49:48 UTC

mercurial-debuginfo-4.3.3-1.ph1.x86_64.rpm | size : 832K , sha256 : da96f101209732949eb44968b3c987f60ec21a8d85b86154542f3e6f63a08048 , build time : Wed, 18 Oct 2017 21:49:37 UTC

mercurial-4.3.3-1.ph1.x86_64.rpm | size : 4.7M , sha256 : 709294e321337a77f045aba6f184453bd53ebf486283a7b014bd67d39a476eff , build time : Wed, 18 Oct 2017 21:49:37 UTC

mercurial-debuginfo-4.3.3-1.ph1.x86_64.rpm | size : 832K , sha256 : da96f101209732949eb44968b3c987f60ec21a8d85b86154542f3e6f63a08048 , build time : Wed, 18 Oct 2017 21:49:37 UTC

mercurial-4.3.3-1.ph1.x86_64.rpm | size : 4.7M , sha256 : 709294e321337a77f045aba6f184453bd53ebf486283a7b014bd67d39a476eff , build time : Wed, 18 Oct 2017 21:49:37 UTC

linux-sound-4.4.92-1.ph1.x86_64.rpm | size : 252K , sha256 : 86c6427f8c2351aa69d95233d2b2837439fb2ef84fe0af0891da938596e33c75 , build time : Wed, 18 Oct 2017 22:56:49 UTC

linux-api-headers-4.4.92-1.ph1.noarch.rpm | size : 1.1M , sha256 : ec153a80dbea6163ebad43ca764a229eeb4602623fa7beea9e4b48a5cb5d782b , build time : Wed, 18 Oct 2017 21:41:09 UTC

linux-docs-4.4.92-1.ph1.x86_64.rpm | size : 6.6M , sha256 : 5bd1ecba1a102a5a3d4b7fd719bb9e1fcf2c7ed2e59d6d1e21075cd7c44de3d9 , build time : Wed, 18 Oct 2017 22:56:49 UTC

linux-tools-4.4.92-1.ph1.x86_64.rpm | size : 760K , sha256 : b89cf154e8fee580760feb029a6904a2ad212f34a781b0ae912e1c52b2afcfec , build time : Wed, 18 Oct 2017 22:56:49 UTC

linux-oprofile-4.4.92-1.ph1.x86_64.rpm | size : 40K , sha256 : 8c6221a3baadf5e7e6e484513ab8ba05618bc83de6d25a0e628f28af1f04ce36 , build time : Wed, 18 Oct 2017 22:56:49 UTC

linux-dev-4.4.92-1.ph1.x86_64.rpm | size : 9.9M , sha256 : ba9547728cd53ea383e020962c400d59c63681e8125eec396ec6b6ed767ab180 , build time : Wed, 18 Oct 2017 22:56:49 UTC

linux-4.4.92-1.ph1.x86_64.rpm | size : 18M , sha256 : 417295511bbb8a578322526359753edd62903baf062a36bfe438d1bb6ee5c5e3 , build time : Wed, 18 Oct 2017 22:56:49 UTC

linux-drivers-gpu-4.4.92-1.ph1.x86_64.rpm | size : 1.4M , sha256 : 40c57094130b7c3f07ef1337a43071f85afda20f33740f8e28aae59004153a1b , build time : Wed, 18 Oct 2017 22:56:49 UTC

linux-debuginfo-4.4.92-1.ph1.x86_64.rpm | size : 350M , sha256 : 0cc636104e1292f9a7501371232d79aea316e61995a8978aca878d9244ec2526 , build time : Wed, 18 Oct 2017 22:56:49 UTC

linux-sound-4.4.92-1.ph1.x86_64.rpm | size : 252K , sha256 : 86c6427f8c2351aa69d95233d2b2837439fb2ef84fe0af0891da938596e33c75 , build time : Wed, 18 Oct 2017 22:56:49 UTC

linux-api-headers-4.4.92-1.ph1.noarch.rpm | size : 1.1M , sha256 : ec153a80dbea6163ebad43ca764a229eeb4602623fa7beea9e4b48a5cb5d782b , build time : Wed, 18 Oct 2017 21:41:09 UTC

linux-docs-4.4.92-1.ph1.x86_64.rpm | size : 6.6M , sha256 : 5bd1ecba1a102a5a3d4b7fd719bb9e1fcf2c7ed2e59d6d1e21075cd7c44de3d9 , build time : Wed, 18 Oct 2017 22:56:49 UTC

linux-tools-4.4.92-1.ph1.x86_64.rpm | size : 760K , sha256 : b89cf154e8fee580760feb029a6904a2ad212f34a781b0ae912e1c52b2afcfec , build time : Wed, 18 Oct 2017 22:56:49 UTC

linux-oprofile-4.4.92-1.ph1.x86_64.rpm | size : 40K , sha256 : 8c6221a3baadf5e7e6e484513ab8ba05618bc83de6d25a0e628f28af1f04ce36 , build time : Wed, 18 Oct 2017 22:56:49 UTC

linux-dev-4.4.92-1.ph1.x86_64.rpm | size : 9.9M , sha256 : ba9547728cd53ea383e020962c400d59c63681e8125eec396ec6b6ed767ab180 , build time : Wed, 18 Oct 2017 22:56:49 UTC

linux-4.4.92-1.ph1.x86_64.rpm | size : 18M , sha256 : 417295511bbb8a578322526359753edd62903baf062a36bfe438d1bb6ee5c5e3 , build time : Wed, 18 Oct 2017 22:56:49 UTC

linux-drivers-gpu-4.4.92-1.ph1.x86_64.rpm | size : 1.4M , sha256 : 40c57094130b7c3f07ef1337a43071f85afda20f33740f8e28aae59004153a1b , build time : Wed, 18 Oct 2017 22:56:49 UTC

linux-debuginfo-4.4.92-1.ph1.x86_64.rpm | size : 350M , sha256 : 0cc636104e1292f9a7501371232d79aea316e61995a8978aca878d9244ec2526 , build time : Wed, 18 Oct 2017 22:56:49 UTC

mysql-devel-5.7.20-1.ph1.x86_64.rpm | size : 1.9M , sha256 : 90b470ea454f950e8fba1fe364d89db3ade894afb14942aae5e2f696d56c834b , build time : Wed, 18 Oct 2017 22:34:39 UTC

mysql-5.7.20-1.ph1.x86_64.rpm | size : 50M , sha256 : 37740a991ad9af1f1bb640fa6206e588fba2316400aa98fa2767338796a6c665 , build time : Wed, 18 Oct 2017 22:34:39 UTC

mysql-debuginfo-5.7.20-1.ph1.x86_64.rpm | size : 3.0M , sha256 : 72c80486362bdd3c9188bbbd29aa26569f8df8617a7b68d2cb669245a7b6c6cb , build time : Wed, 18 Oct 2017 22:34:39 UTC

ncurses-compat-6.0-7.ph1.x86_64.rpm | size : 244K , sha256 : f9b447f90f84729058f9462359801913cae7247b79125be68ae14570ffc3dab6 , build time : Wed, 18 Oct 2017 21:46:38 UTC

ncurses-6.0-7.ph1.x86_64.rpm | size : 2.0M , sha256 : 747355b3977944b0a53d92b94982576995aebfe91d7b5984ac69aa3e8bc6c43b , build time : Wed, 18 Oct 2017 21:46:38 UTC

ncurses-debuginfo-6.0-7.ph1.x86_64.rpm | size : 72K , sha256 : 02842242e83935b384b075f860d82e87cae014e9d23b4e70f1a9f450fb842c9d , build time : Wed, 18 Oct 2017 21:46:38 UTC

ncurses-devel-6.0-7.ph1.x86_64.rpm | size : 408K , sha256 : 2543ff524d2e0d6070001dcd604b74f04cad9656c7440b9e94a39d9114ad208c , build time : Wed, 18 Oct 2017 21:46:38 UTC

gnutls-debuginfo-3.5.15-1.ph1.x86_64.rpm | size : 3.6M , sha256 : b83529813d18769a9d3516e3588d3d1268ac08d4bcd2cd3ef94789fad8bce374 , build time : Wed, 18 Oct 2017 22:09:49 UTC

gnutls-devel-3.5.15-1.ph1.x86_64.rpm | size : 64K , sha256 : 863a8314fd544ee5ba5ef4ee79308eba055d72df03faa6256756594d72871f3a , build time : Wed, 18 Oct 2017 22:09:49 UTC

gnutls-3.5.15-1.ph1.x86_64.rpm | size : 2.2M , sha256 : 1dc2d20814dddf8800d7597e4ab7cc2c41b7da86772a111062fcfd58ae3b6463 , build time : Wed, 18 Oct 2017 22:09:49 UTC

dnsmasq-debuginfo-2.76-3.ph1.x86_64.rpm | size : 20K , sha256 : 92b4839ec7849deb977e9c8390ac586f9c88e0a3efc6c97d6b87c0ea1ef461c9 , build time : Wed, 18 Oct 2017 21:48:07 UTC

dnsmasq-2.76-3.ph1.x86_64.rpm | size : 224K , sha256 : 2e1bf820e2178df001ecb199a4081bc5eb06fe55a864d1cd505b538acc28af0d , build time : Wed, 18 Oct 2017 21:48:07 UTC

apache-tomcat-8.5.23-1.ph1.noarch.rpm | size : 7.9M , sha256 : aacf6477d83a8c858665af98d0de9cb737cec5ee180761aaef6260cdd7de23af , build time : Wed, 18 Oct 2017 21:55:56 UTC

binutils-debuginfo-2.29.1-1.ph1.x86_64.rpm | size : 44M , sha256 : 0cd184d02ed906ce1aec5a41ff078bab966696d815032fcfc48201fa03c811c5 , build time : Wed, 18 Oct 2017 21:44:12 UTC

binutils-devel-2.29.1-1.ph1.x86_64.rpm | size : 788K , sha256 : 1dec66c130865ed20d29f51eb5c4b5965000fc7402643f91128f5da3431d75fb , build time : Wed, 18 Oct 2017 21:44:12 UTC

binutils-2.29.1-1.ph1.x86_64.rpm | size : 8.0M , sha256 : 0438cb3a4ebb438e59ced4b9f64a3cdc4cea805c8cdc1358026c185f24c44c70 , build time : Wed, 18 Oct 2017 21:44:12 UTC

binutils-debuginfo-2.29.1-1.ph1.x86_64.rpm | size : 44M , sha256 : 0cd184d02ed906ce1aec5a41ff078bab966696d815032fcfc48201fa03c811c5 , build time : Wed, 18 Oct 2017 21:44:12 UTC

binutils-devel-2.29.1-1.ph1.x86_64.rpm | size : 788K , sha256 : 1dec66c130865ed20d29f51eb5c4b5965000fc7402643f91128f5da3431d75fb , build time : Wed, 18 Oct 2017 21:44:12 UTC

binutils-2.29.1-1.ph1.x86_64.rpm | size : 8.0M , sha256 : 0438cb3a4ebb438e59ced4b9f64a3cdc4cea805c8cdc1358026c185f24c44c70 , build time : Wed, 18 Oct 2017 21:44:12 UTC

c-ares-debuginfo-1.12.0-2.ph1.x86_64.rpm | size : 12K , sha256 : d7d1f9796e16ee6308491e3e07aa4dcec1d7443fea8edb0c0a2df2311c2654a8 , build time : Wed, 18 Oct 2017 21:57:14 UTC

c-ares-1.12.0-2.ph1.x86_64.rpm | size : 92K , sha256 : c4f09bb953a07cc3bb1f20bb19c1289780bc8ba8471883cc2ef183ccd87a9ea2 , build time : Wed, 18 Oct 2017 21:57:14 UTC

c-ares-devel-1.12.0-2.ph1.x86_64.rpm | size : 80K , sha256 : 4935ccb67042c0170eca9a5a06e2459b68ce174c77bcde348a8b00b4f7786f47 , build time : Wed, 18 Oct 2017 21:57:14 UTC

linux-esx-4.4.92-2.ph1.x86_64.rpm | size : 7.5M , sha256 : 3ad7f52d491a89f75ce29a42d2d3f701e39a5fb0b9d452a49165fc0934c32273 , build time : Wed, 18 Oct 2017 22:46:21 UTC

linux-esx-debuginfo-4.4.92-2.ph1.x86_64.rpm | size : 159M , sha256 : 1110754794ff63d947acfdd706a9ecf09e0e7062f9a22c58562a9b9c65b3fcc0 , build time : Wed, 18 Oct 2017 22:46:21 UTC

linux-esx-docs-4.4.92-2.ph1.x86_64.rpm | size : 6.6M , sha256 : 58b9536d7be469c01c13206ee06b23d72b41c3a2aa14779615a6de3407cab008 , build time : Wed, 18 Oct 2017 22:46:21 UTC

linux-esx-devel-4.4.92-2.ph1.x86_64.rpm | size : 9.7M , sha256 : 5b25f46719e34e60ac6348c9873e45ba7b3b01182fb297e60f8825e30eafcc0d , build time : Wed, 18 Oct 2017 22:46:21 UTC

linux-esx-4.4.92-2.ph1.x86_64.rpm | size : 7.5M , sha256 : 3ad7f52d491a89f75ce29a42d2d3f701e39a5fb0b9d452a49165fc0934c32273 , build time : Wed, 18 Oct 2017 22:46:21 UTC

linux-esx-debuginfo-4.4.92-2.ph1.x86_64.rpm | size : 159M , sha256 : 1110754794ff63d947acfdd706a9ecf09e0e7062f9a22c58562a9b9c65b3fcc0 , build time : Wed, 18 Oct 2017 22:46:21 UTC

linux-esx-docs-4.4.92-2.ph1.x86_64.rpm | size : 6.6M , sha256 : 58b9536d7be469c01c13206ee06b23d72b41c3a2aa14779615a6de3407cab008 , build time : Wed, 18 Oct 2017 22:46:21 UTC

linux-esx-devel-4.4.92-2.ph1.x86_64.rpm | size : 9.7M , sha256 : 5b25f46719e34e60ac6348c9873e45ba7b3b01182fb297e60f8825e30eafcc0d , build time : Wed, 18 Oct 2017 22:46:21 UTC

nginx-1.11.13-4.ph1.x86_64.rpm | size : 404K , sha256 : 044f85859db038f3e12a6f25b474bd6f7ec93ffe35698e778b5edf3de01f9725 , build time : Wed, 18 Oct 2017 21:49:15 UTC

nginx-debuginfo-1.11.13-4.ph1.x86_64.rpm | size : 3.2M , sha256 : 30360dcd6037727cd0589349a2ea9ac03a140da873567c3fa82ff0482a535947 , build time : Wed, 18 Oct 2017 21:49:15 UTC

mesos-1.2.2-1.ph1.x86_64.rpm | size : 13M , sha256 : a1e3252c1dc3623bf41c79f1234c14f35b5ed442dc09b8f3ead0c019750b3243 , build time : Thu, 19 Oct 2017 00:04:07 UTC

mesos-python-1.2.2-1.ph1.x86_64.rpm | size : 12M , sha256 : 4d0e9a17f2acf0653a6c7ac6fa85eb1306141cdd7a001941a34ad7e366a911d9 , build time : Thu, 19 Oct 2017 00:04:07 UTC

mesos-devel-1.2.2-1.ph1.x86_64.rpm | size : 960K , sha256 : 85fa4b77e1b5bb572fb5eed28617f412f4f54490293ba0d73cdbade0c6d695c1 , build time : Thu, 19 Oct 2017 00:04:07 UTC

mesos-debuginfo-1.2.2-1.ph1.x86_64.rpm | size : 329M , sha256 : 87449a01b8935ab65adf14f45025274e502003b4184daf7ee2f45cfb41ae96d4 , build time : Thu, 19 Oct 2017 00:04:07 UTC

libtasn1-devel-4.12-1.ph1.x86_64.rpm | size : 56K , sha256 : 51ba33631efb3551d350011ce4e02d98e89655a11852f87153ae132f988e6d87 , build time : Wed, 18 Oct 2017 21:51:33 UTC

libtasn1-debuginfo-4.12-1.ph1.x86_64.rpm | size : 196K , sha256 : f936a8ce0a2931ec9733e1e7a4a0a80f80e6f8f4a05115b2d2399fcc6a4eae58 , build time : Wed, 18 Oct 2017 21:51:33 UTC

libtasn1-4.12-1.ph1.x86_64.rpm | size : 108K , sha256 : a57253f97f8265e744c6365c1bdd203302584beb9847144a61e6ea836816a4be , build time : Wed, 18 Oct 2017 21:51:33 UTC

Clone this wiki locally