概述
Low: setup security and bug fix update
类型/严重性
Security Advisory: Low
标题
An update for setup is now available for Red Hat Enterprise Linux 7.
Red Hat Product Security has rated this update as having a security impact of Low. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
描述
The setup package contains a set of important default system configuration and setup files. Examples include /etc/passwd, /etc/group, and /etc/profile. Other examples are the default lists of reserved user IDs, reserved ports, reserved protocols, allowed shells, allowed secure terminals.
Security Fix(es):
- setup: nologin listed in /etc/shells violates security expectations (CVE-2018-1113)
For more details about the security issue(s), including the impact, a CVSS score, and other related information, refer to the CVE page(s) listed in the References section.
Additional Changes:
For detailed information on changes in this release, see the Red Hat Enterprise Linux 7.6 Release Notes linked from the References section.
受影响的产品
-
Red Hat Enterprise Linux Server 7 x86_64
-
Red Hat Enterprise Linux Server - Extended Life Cycle Support 7 x86_64
-
Red Hat Enterprise Linux Workstation 7 x86_64
-
Red Hat Enterprise Linux Desktop 7 x86_64
-
Red Hat Enterprise Linux for IBM z Systems 7 s390x
-
Red Hat Enterprise Linux for Power, big endian 7 ppc64
-
Red Hat Enterprise Linux for Scientific Computing 7 x86_64
-
Red Hat Enterprise Linux for Power, little endian 7 ppc64le
-
Red Hat Enterprise Linux Server - Extended Life Cycle Support (for IBM z Systems) 7 s390x
-
Red Hat Enterprise Linux for ARM 64 7 aarch64
-
Red Hat Enterprise Linux for Power 9 7 ppc64le
-
Red Hat Enterprise Linux for IBM System z (Structure A) 7 s390x
-
Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, big endian 7 ppc64
-
Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, little endian 7 ppc64le
修复
-
BZ - 1566469
- Typing Mistake in /etc/protocols
-
BZ - 1571094
- CVE-2018-1113 setup: nologin listed in /etc/shells violates security expectations
注::
可能有这些软件包的更新版本。
点击软件包名称查看详情。
Red Hat Enterprise Linux Server 7
SRPM |
setup-2.8.71-10.el7.src.rpm
|
SHA-256: 567bb2b3ad4d3c03db401f0abd1438ca81f5839cbe59cdfa2c8bf644153d20c7 |
x86_64 |
setup-2.8.71-10.el7.noarch.rpm
|
SHA-256: 851c20aec23552c563704a8e05bdf85ab502b7b11690c2619f904f3bc95514d8 |
Red Hat Enterprise Linux Server - Extended Life Cycle Support 7
SRPM |
setup-2.8.71-10.el7.src.rpm
|
SHA-256: 567bb2b3ad4d3c03db401f0abd1438ca81f5839cbe59cdfa2c8bf644153d20c7 |
x86_64 |
setup-2.8.71-10.el7.noarch.rpm
|
SHA-256: 851c20aec23552c563704a8e05bdf85ab502b7b11690c2619f904f3bc95514d8 |
Red Hat Enterprise Linux Workstation 7
SRPM |
setup-2.8.71-10.el7.src.rpm
|
SHA-256: 567bb2b3ad4d3c03db401f0abd1438ca81f5839cbe59cdfa2c8bf644153d20c7 |
x86_64 |
setup-2.8.71-10.el7.noarch.rpm
|
SHA-256: 851c20aec23552c563704a8e05bdf85ab502b7b11690c2619f904f3bc95514d8 |
Red Hat Enterprise Linux Desktop 7
SRPM |
setup-2.8.71-10.el7.src.rpm
|
SHA-256: 567bb2b3ad4d3c03db401f0abd1438ca81f5839cbe59cdfa2c8bf644153d20c7 |
x86_64 |
setup-2.8.71-10.el7.noarch.rpm
|
SHA-256: 851c20aec23552c563704a8e05bdf85ab502b7b11690c2619f904f3bc95514d8 |
Red Hat Enterprise Linux for IBM z Systems 7
SRPM |
setup-2.8.71-10.el7.src.rpm
|
SHA-256: 567bb2b3ad4d3c03db401f0abd1438ca81f5839cbe59cdfa2c8bf644153d20c7 |
s390x |
setup-2.8.71-10.el7.noarch.rpm
|
SHA-256: 851c20aec23552c563704a8e05bdf85ab502b7b11690c2619f904f3bc95514d8 |
Red Hat Enterprise Linux for Power, big endian 7
SRPM |
setup-2.8.71-10.el7.src.rpm
|
SHA-256: 567bb2b3ad4d3c03db401f0abd1438ca81f5839cbe59cdfa2c8bf644153d20c7 |
ppc64 |
setup-2.8.71-10.el7.noarch.rpm
|
SHA-256: 851c20aec23552c563704a8e05bdf85ab502b7b11690c2619f904f3bc95514d8 |
Red Hat Enterprise Linux for Scientific Computing 7
SRPM |
setup-2.8.71-10.el7.src.rpm
|
SHA-256: 567bb2b3ad4d3c03db401f0abd1438ca81f5839cbe59cdfa2c8bf644153d20c7 |
x86_64 |
setup-2.8.71-10.el7.noarch.rpm
|
SHA-256: 851c20aec23552c563704a8e05bdf85ab502b7b11690c2619f904f3bc95514d8 |
Red Hat Enterprise Linux for Power, little endian 7
SRPM |
setup-2.8.71-10.el7.src.rpm
|
SHA-256: 567bb2b3ad4d3c03db401f0abd1438ca81f5839cbe59cdfa2c8bf644153d20c7 |
ppc64le |
setup-2.8.71-10.el7.noarch.rpm
|
SHA-256: 851c20aec23552c563704a8e05bdf85ab502b7b11690c2619f904f3bc95514d8 |
Red Hat Enterprise Linux Server - Extended Life Cycle Support (for IBM z Systems) 7
SRPM |
setup-2.8.71-10.el7.src.rpm
|
SHA-256: 567bb2b3ad4d3c03db401f0abd1438ca81f5839cbe59cdfa2c8bf644153d20c7 |
s390x |
setup-2.8.71-10.el7.noarch.rpm
|
SHA-256: 851c20aec23552c563704a8e05bdf85ab502b7b11690c2619f904f3bc95514d8 |
Red Hat Enterprise Linux for ARM 64 7
SRPM |
setup-2.8.71-10.el7.src.rpm
|
SHA-256: 567bb2b3ad4d3c03db401f0abd1438ca81f5839cbe59cdfa2c8bf644153d20c7 |
aarch64 |
setup-2.8.71-10.el7.noarch.rpm
|
SHA-256: 851c20aec23552c563704a8e05bdf85ab502b7b11690c2619f904f3bc95514d8 |
Red Hat Enterprise Linux for Power 9 7
SRPM |
setup-2.8.71-10.el7.src.rpm
|
SHA-256: 567bb2b3ad4d3c03db401f0abd1438ca81f5839cbe59cdfa2c8bf644153d20c7 |
ppc64le |
setup-2.8.71-10.el7.noarch.rpm
|
SHA-256: 851c20aec23552c563704a8e05bdf85ab502b7b11690c2619f904f3bc95514d8 |
Red Hat Enterprise Linux for IBM System z (Structure A) 7
SRPM |
setup-2.8.71-10.el7.src.rpm
|
SHA-256: 567bb2b3ad4d3c03db401f0abd1438ca81f5839cbe59cdfa2c8bf644153d20c7 |
s390x |
setup-2.8.71-10.el7.noarch.rpm
|
SHA-256: 851c20aec23552c563704a8e05bdf85ab502b7b11690c2619f904f3bc95514d8 |
Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, big endian 7
SRPM |
setup-2.8.71-10.el7.src.rpm
|
SHA-256: 567bb2b3ad4d3c03db401f0abd1438ca81f5839cbe59cdfa2c8bf644153d20c7 |
ppc64 |
setup-2.8.71-10.el7.noarch.rpm
|
SHA-256: 851c20aec23552c563704a8e05bdf85ab502b7b11690c2619f904f3bc95514d8 |
Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, little endian 7
SRPM |
setup-2.8.71-10.el7.src.rpm
|
SHA-256: 567bb2b3ad4d3c03db401f0abd1438ca81f5839cbe59cdfa2c8bf644153d20c7 |
ppc64le |
setup-2.8.71-10.el7.noarch.rpm
|
SHA-256: 851c20aec23552c563704a8e05bdf85ab502b7b11690c2619f904f3bc95514d8 |