Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 146377 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.882975
Kategorie:CentOS Local Security Checks
Titel:CentOS Update for sos-collector CESA-2018:3663 centos7
Zusammenfassung:The remote host is missing an update for the 'sos-collector'; package(s) announced via the CESA-2018:3663 advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'sos-collector'
package(s) announced via the CESA-2018:3663 advisory.

Vulnerability Insight:
sos-collector is a utility that gathers sosreports from multi-node
environments. sos-collector facilitates data collection for support cases
and it can be run from either a node or from an administrator's local
workstation that has network access to the environment.

The following packages have been upgraded to a later upstream version:
sos-collector (1.5). (BZ#1644776)

Security Fix(es):

* sos-collector: incorrect permissions set on newly created files
(CVE-2018-14650)

For more details about the security issue(s), including the impact, a CVSS
score, and other related information, refer to the CVE page(s) listed in
the References section.

This issue was discovered by Riccardo Schirone (Red Hat Product Security).

Affected Software/OS:
sos-collector on CentOS 7.

Solution:
Please install the updated package(s).

CVSS Score:
1.9

CVSS Vector:
AV:L/AC:M/Au:N/C:P/I:N/A:N

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2018-14650
RHSA-2018:3663
https://access.redhat.com/errata/RHSA-2018:3663
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-14650
https://github.com/sosreport/sos-collector/commit/72058f9253e7ed8c7243e2ff76a16d97b03d65ed
CopyrightCopyright (C) 2018 Greenbone AG

Dies ist nur einer von 146377 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.