Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2024:4529 - Security Advisory
Issued:
2024-07-15
Updated:
2024-07-15

RHSA-2024:4529 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: less security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for less is now available for Red Hat Enterprise Linux 9.2 Extended Update Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

The "less" utility is a text file browser that resembles "more", but allows users to move backwards in the file as well as forwards. Since "less" does not read the entire input file at startup, it also starts more quickly than ordinary text editors.

Security Fix(es):

  • less: OS command injection (CVE-2024-32487)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.2 x86_64
  • Red Hat Enterprise Linux Server - AUS 9.2 x86_64
  • Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.2 s390x
  • Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.2 ppc64le
  • Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.2 aarch64
  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.2 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.2 x86_64
  • Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.2 aarch64
  • Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.2 s390x

Fixes

  • BZ - 2274980 - CVE-2024-32487 less: OS command injection

CVEs

  • CVE-2024-32487

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.2

SRPM
less-590-3.el9_2.src.rpm SHA-256: d2c3b6e76cef949f8a6194aed3e841deb4b7558807ccbca458b3a1038bdb8161
x86_64
less-590-3.el9_2.x86_64.rpm SHA-256: 15491df2f43fe849a602e67934c65697bbfb4c388353e41d53f537ee7ec89f7a
less-debuginfo-590-3.el9_2.x86_64.rpm SHA-256: 23077446d837db9986fcb614d35d5d1fde7bf80a6507776e5f288ffc1928cef4
less-debugsource-590-3.el9_2.x86_64.rpm SHA-256: 95b4f63d1c397285b5295ae6c4c9be6587de2efc43fd74102fe1648de9a84294

Red Hat Enterprise Linux Server - AUS 9.2

SRPM
less-590-3.el9_2.src.rpm SHA-256: d2c3b6e76cef949f8a6194aed3e841deb4b7558807ccbca458b3a1038bdb8161
x86_64
less-590-3.el9_2.x86_64.rpm SHA-256: 15491df2f43fe849a602e67934c65697bbfb4c388353e41d53f537ee7ec89f7a
less-debuginfo-590-3.el9_2.x86_64.rpm SHA-256: 23077446d837db9986fcb614d35d5d1fde7bf80a6507776e5f288ffc1928cef4
less-debugsource-590-3.el9_2.x86_64.rpm SHA-256: 95b4f63d1c397285b5295ae6c4c9be6587de2efc43fd74102fe1648de9a84294

Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.2

SRPM
less-590-3.el9_2.src.rpm SHA-256: d2c3b6e76cef949f8a6194aed3e841deb4b7558807ccbca458b3a1038bdb8161
s390x
less-590-3.el9_2.s390x.rpm SHA-256: 2d89929bb2b56f67c0700b03ec3085cd49d1ab127e7fbc844987317b0050a37a
less-debuginfo-590-3.el9_2.s390x.rpm SHA-256: 3d2b7f584aa0c9b9c921bdd17af2c25526a37be2103a1ef9ba81c1d88fd95a26
less-debugsource-590-3.el9_2.s390x.rpm SHA-256: bc06d4d224599db1afdcacc481aed61b6a105b6c1cc2ed56ff674c14ada0a8de

Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.2

SRPM
less-590-3.el9_2.src.rpm SHA-256: d2c3b6e76cef949f8a6194aed3e841deb4b7558807ccbca458b3a1038bdb8161
ppc64le
less-590-3.el9_2.ppc64le.rpm SHA-256: 6a1b7c303cb92f482cc2795515361e5ae171fb3fecd414be6ae95dca8e683df8
less-debuginfo-590-3.el9_2.ppc64le.rpm SHA-256: 96e0d7925dfa31313807c277db1fcfa52c228e6564379edb7d58063a55f9df89
less-debugsource-590-3.el9_2.ppc64le.rpm SHA-256: f64146496cfda80fa86143f315e7a5da612fb19e03ab8c584d0bf91ef5781bb9

Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.2

SRPM
less-590-3.el9_2.src.rpm SHA-256: d2c3b6e76cef949f8a6194aed3e841deb4b7558807ccbca458b3a1038bdb8161
aarch64
less-590-3.el9_2.aarch64.rpm SHA-256: 599f85ac51f4034317c8a689d6225ed1a0742268f2972db1b9697e83e1fde301
less-debuginfo-590-3.el9_2.aarch64.rpm SHA-256: dab3dab5cbbba1d576423103d7542d505b387525b5b2dd7a53a1c7c5e0582f3c
less-debugsource-590-3.el9_2.aarch64.rpm SHA-256: d03282c41d81586ead459fe642e93b1e47217643c90e43c87683361c9e9ad1aa

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.2

SRPM
less-590-3.el9_2.src.rpm SHA-256: d2c3b6e76cef949f8a6194aed3e841deb4b7558807ccbca458b3a1038bdb8161
ppc64le
less-590-3.el9_2.ppc64le.rpm SHA-256: 6a1b7c303cb92f482cc2795515361e5ae171fb3fecd414be6ae95dca8e683df8
less-debuginfo-590-3.el9_2.ppc64le.rpm SHA-256: 96e0d7925dfa31313807c277db1fcfa52c228e6564379edb7d58063a55f9df89
less-debugsource-590-3.el9_2.ppc64le.rpm SHA-256: f64146496cfda80fa86143f315e7a5da612fb19e03ab8c584d0bf91ef5781bb9

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.2

SRPM
less-590-3.el9_2.src.rpm SHA-256: d2c3b6e76cef949f8a6194aed3e841deb4b7558807ccbca458b3a1038bdb8161
x86_64
less-590-3.el9_2.x86_64.rpm SHA-256: 15491df2f43fe849a602e67934c65697bbfb4c388353e41d53f537ee7ec89f7a
less-debuginfo-590-3.el9_2.x86_64.rpm SHA-256: 23077446d837db9986fcb614d35d5d1fde7bf80a6507776e5f288ffc1928cef4
less-debugsource-590-3.el9_2.x86_64.rpm SHA-256: 95b4f63d1c397285b5295ae6c4c9be6587de2efc43fd74102fe1648de9a84294

Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.2

SRPM
less-590-3.el9_2.src.rpm SHA-256: d2c3b6e76cef949f8a6194aed3e841deb4b7558807ccbca458b3a1038bdb8161
aarch64
less-590-3.el9_2.aarch64.rpm SHA-256: 599f85ac51f4034317c8a689d6225ed1a0742268f2972db1b9697e83e1fde301
less-debuginfo-590-3.el9_2.aarch64.rpm SHA-256: dab3dab5cbbba1d576423103d7542d505b387525b5b2dd7a53a1c7c5e0582f3c
less-debugsource-590-3.el9_2.aarch64.rpm SHA-256: d03282c41d81586ead459fe642e93b1e47217643c90e43c87683361c9e9ad1aa

Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.2

SRPM
less-590-3.el9_2.src.rpm SHA-256: d2c3b6e76cef949f8a6194aed3e841deb4b7558807ccbca458b3a1038bdb8161
s390x
less-590-3.el9_2.s390x.rpm SHA-256: 2d89929bb2b56f67c0700b03ec3085cd49d1ab127e7fbc844987317b0050a37a
less-debuginfo-590-3.el9_2.s390x.rpm SHA-256: 3d2b7f584aa0c9b9c921bdd17af2c25526a37be2103a1ef9ba81c1d88fd95a26
less-debugsource-590-3.el9_2.s390x.rpm SHA-256: bc06d4d224599db1afdcacc481aed61b6a105b6c1cc2ed56ff674c14ada0a8de

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility