FEDORA-2017-9232eac8e8 created by pmatilai 2 years ago for Fedora 26
stable

This latest stable release on rpm 4.13.x branch brings in several important bugfixes. For details see release notes at http://rpm.org/wiki/Releases/4.13.0.2.

How to install

sudo dnf upgrade --advisory=FEDORA-2017-9232eac8e8
This update has been submitted for testing by pmatilai. 2 years ago
This update has been pushed to testing. 2 years ago
User Icon bojan commented & provided feedback 2 years ago
karma

No regressions noticed.

User Icon ngompa commented & provided feedback 2 years ago
karma

Works for me.

BZ#1467375 CVE-2017-7501 rpm: Following symlinks to files when installing packages allows privilege escalation [fedora-all]
BZ#1467374 CVE-2017-7500 rpm: Following symlinks to directories when installing packages allows privilege escalation [fedora-all]
User Icon ignatenkobrain commented & provided feedback 2 years ago
karma

works here.

BZ#1467375 CVE-2017-7501 rpm: Following symlinks to files when installing packages allows privilege escalation [fedora-all]
BZ#1467374 CVE-2017-7500 rpm: Following symlinks to directories when installing packages allows privilege escalation [fedora-all]
User Icon hreindl commented & provided feedback 2 years ago
karma

works for me

User Icon greg18 commented & provided feedback 2 years ago
karma

works for me

User Icon samoht0 commented & provided feedback 2 years ago
karma

no regressions noted

User Icon pwalter commented & provided feedback 2 years ago
karma

Works

User Icon dhgutteridge commented & provided feedback 2 years ago
karma

No regressions noted.

User Icon sassam commented & provided feedback 2 years ago
karma

Works for me.

This update has been submitted for batched by pmatilai. 2 years ago
This update has been submitted for stable by bodhi. 2 years ago
This update has been pushed to stable. 2 years ago

Please login to add feedback.

Metadata
Type
security
Severity
medium
Karma
9
Signed
Content Type
RPM
Test Gating
Settings
Unstable by Karma
-3
Dates
submitted
2 years ago
in testing
2 years ago
in stable
2 years ago
BZ#1467374 CVE-2017-7500 rpm: Following symlinks to directories when installing packages allows privilege escalation [fedora-all]
0
2
BZ#1467375 CVE-2017-7501 rpm: Following symlinks to files when installing packages allows privilege escalation [fedora-all]
0
2

Automated Test Results