FEDORA-2018-06d56c8c9d

security update in Fedora 29 for lldpad

Status: stable a year ago
  • Add upstream fix for improper sanitization of shell-escape codes when lldptool parses a mngAddr TLV (CVE-2018-10932).
  • Add upstream patch to support DSCP selectors in APP TLVs. This allows configuration of DSCP-based packet prioritization on capable network devices.

How to install

sudo dnf upgrade --advisory=FEDORA-2018-06d56c8c9d

Comments 8

This update has been submitted for testing by pmachata.

This update has been pushed to testing.

works for me

karma: +1

no regressions noted

karma: +1

Works great! LGTM! =)

karma: +1

This update has been submitted for batched by bodhi.

This update has been submitted for stable by bodhi.

This update has been pushed to stable.

Add Comment & Feedback

Please login to add feedback.

Content Type
RPM
Status
stable
Test Gating
Submitted by
Update Type
security
Update Severity
low
Karma
+3
stable threshold: 3
unstable threshold: -3
Autopush (karma)
Enabled
Autopush (time)
Disabled
Dates
submitted a year ago
in testing a year ago
in stable a year ago

Related Bugs 3

00 #1614896 CVE-2018-10932 lldptool: improper sanitization of shell-escape codes
00 #1614932 CVE-2018-10932 lldpad: lldptool: improper sanitization of shell-escape codes [fedora-all]
00 #1618377 lldpad: Support DSCP selectors in APP TLVs

Automated Test Results