概述
Low: nano security update
类型/严重性
Security Advisory: Low
Red Hat Lightspeed patch analysis
标题
An update for nano is now available for Red Hat Enterprise Linux 9.
Red Hat Product Security has rated this update as having a security impact of Low. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
描述
GNU nano is a small and friendly text editor.
Security Fix(es):
- nano: running `chmod` and `chown` on the filename allows malicious user to replace the emergency file with a malicious symlink to a root-owned file (CVE-2024-5742)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Additional Changes:
For detailed information on changes in this release, see the Red Hat Enterprise Linux 9.5 Release Notes linked from the References section.
受影响的产品
-
Red Hat Enterprise Linux for x86_64 9 x86_64
-
Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.6 x86_64
-
Red Hat Enterprise Linux Server - AUS 9.6 x86_64
-
Red Hat Enterprise Linux for IBM z Systems 9 s390x
-
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.6 s390x
-
Red Hat Enterprise Linux for Power, little endian 9 ppc64le
-
Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.6 ppc64le
-
Red Hat Enterprise Linux for ARM 64 9 aarch64
-
Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.6 aarch64
-
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.6 ppc64le
-
Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.6 x86_64
-
Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.6 aarch64
-
Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.6 s390x
修复
-
BZ - 2278574
- CVE-2024-5742 nano: running `chmod` and `chown` on the filename allows malicious user to replace the emergency file with a malicious symlink to a root-owned file
注::
可能有这些软件包的更新版本。
点击软件包名称查看详情。
Red Hat Enterprise Linux for x86_64 9
| SRPM |
|
nano-5.6.1-6.el9.src.rpm
|
SHA-256: 62e0067624ffd78295375294aaa33beb94f337e1093fcbd6255f73c6846cc286 |
| x86_64 |
|
nano-5.6.1-6.el9.x86_64.rpm
|
SHA-256: ddd18efe8af4c5a1a865e295656f6e67a907843184061c1c93051d5ca1e4b272 |
|
nano-debuginfo-5.6.1-6.el9.x86_64.rpm
|
SHA-256: 1ab3f9a8de2888cedd29d8b5badb4903c28c4e60052d9f762aeab507254775cb |
|
nano-debugsource-5.6.1-6.el9.x86_64.rpm
|
SHA-256: d8b552830efb44360fb52392e577e7548eec5294f94459008895894c4de132bf |
Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.6
| SRPM |
|
nano-5.6.1-6.el9.src.rpm
|
SHA-256: 62e0067624ffd78295375294aaa33beb94f337e1093fcbd6255f73c6846cc286 |
| x86_64 |
|
nano-5.6.1-6.el9.x86_64.rpm
|
SHA-256: ddd18efe8af4c5a1a865e295656f6e67a907843184061c1c93051d5ca1e4b272 |
|
nano-debuginfo-5.6.1-6.el9.x86_64.rpm
|
SHA-256: 1ab3f9a8de2888cedd29d8b5badb4903c28c4e60052d9f762aeab507254775cb |
|
nano-debugsource-5.6.1-6.el9.x86_64.rpm
|
SHA-256: d8b552830efb44360fb52392e577e7548eec5294f94459008895894c4de132bf |
Red Hat Enterprise Linux Server - AUS 9.6
| SRPM |
|
nano-5.6.1-6.el9.src.rpm
|
SHA-256: 62e0067624ffd78295375294aaa33beb94f337e1093fcbd6255f73c6846cc286 |
| x86_64 |
|
nano-5.6.1-6.el9.x86_64.rpm
|
SHA-256: ddd18efe8af4c5a1a865e295656f6e67a907843184061c1c93051d5ca1e4b272 |
|
nano-debuginfo-5.6.1-6.el9.x86_64.rpm
|
SHA-256: 1ab3f9a8de2888cedd29d8b5badb4903c28c4e60052d9f762aeab507254775cb |
|
nano-debugsource-5.6.1-6.el9.x86_64.rpm
|
SHA-256: d8b552830efb44360fb52392e577e7548eec5294f94459008895894c4de132bf |
Red Hat Enterprise Linux for IBM z Systems 9
| SRPM |
|
nano-5.6.1-6.el9.src.rpm
|
SHA-256: 62e0067624ffd78295375294aaa33beb94f337e1093fcbd6255f73c6846cc286 |
| s390x |
|
nano-5.6.1-6.el9.s390x.rpm
|
SHA-256: 714899ceb3e312faf0383caacde4df9f1f776685a4952ffa1ae843d5c8e0348e |
|
nano-debuginfo-5.6.1-6.el9.s390x.rpm
|
SHA-256: 52e102a5320b58897af083c0a9d5f1896cffa7dba42301837d2f8ce5fefb9480 |
|
nano-debugsource-5.6.1-6.el9.s390x.rpm
|
SHA-256: f012efa835a70ccdc072e35893e669eed7f05052b1d932c664e2ae18ec605276 |
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.6
| SRPM |
|
nano-5.6.1-6.el9.src.rpm
|
SHA-256: 62e0067624ffd78295375294aaa33beb94f337e1093fcbd6255f73c6846cc286 |
| s390x |
|
nano-5.6.1-6.el9.s390x.rpm
|
SHA-256: 714899ceb3e312faf0383caacde4df9f1f776685a4952ffa1ae843d5c8e0348e |
|
nano-debuginfo-5.6.1-6.el9.s390x.rpm
|
SHA-256: 52e102a5320b58897af083c0a9d5f1896cffa7dba42301837d2f8ce5fefb9480 |
|
nano-debugsource-5.6.1-6.el9.s390x.rpm
|
SHA-256: f012efa835a70ccdc072e35893e669eed7f05052b1d932c664e2ae18ec605276 |
Red Hat Enterprise Linux for Power, little endian 9
| SRPM |
|
nano-5.6.1-6.el9.src.rpm
|
SHA-256: 62e0067624ffd78295375294aaa33beb94f337e1093fcbd6255f73c6846cc286 |
| ppc64le |
|
nano-5.6.1-6.el9.ppc64le.rpm
|
SHA-256: 974962099b99ed2cc83921c4644d8c162f3d2487b5d9ceff12d4c82776e96a12 |
|
nano-debuginfo-5.6.1-6.el9.ppc64le.rpm
|
SHA-256: 9a5e6874669aa9fabf80b0d916bcdf77118a4d06a6c6b17146b8d3ac358551be |
|
nano-debugsource-5.6.1-6.el9.ppc64le.rpm
|
SHA-256: 864b79d8781e0b5e296b9977e759abfa802dfbfb78bc798d510d2b68409f0310 |
Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.6
| SRPM |
|
nano-5.6.1-6.el9.src.rpm
|
SHA-256: 62e0067624ffd78295375294aaa33beb94f337e1093fcbd6255f73c6846cc286 |
| ppc64le |
|
nano-5.6.1-6.el9.ppc64le.rpm
|
SHA-256: 974962099b99ed2cc83921c4644d8c162f3d2487b5d9ceff12d4c82776e96a12 |
|
nano-debuginfo-5.6.1-6.el9.ppc64le.rpm
|
SHA-256: 9a5e6874669aa9fabf80b0d916bcdf77118a4d06a6c6b17146b8d3ac358551be |
|
nano-debugsource-5.6.1-6.el9.ppc64le.rpm
|
SHA-256: 864b79d8781e0b5e296b9977e759abfa802dfbfb78bc798d510d2b68409f0310 |
Red Hat Enterprise Linux for ARM 64 9
| SRPM |
|
nano-5.6.1-6.el9.src.rpm
|
SHA-256: 62e0067624ffd78295375294aaa33beb94f337e1093fcbd6255f73c6846cc286 |
| aarch64 |
|
nano-5.6.1-6.el9.aarch64.rpm
|
SHA-256: ab4b522d10060d1964c4acd746fe78d7ef93fa08d41f0ab703f531209820df9c |
|
nano-debuginfo-5.6.1-6.el9.aarch64.rpm
|
SHA-256: a342aa405969033e82e43af1cc4a6c0ba88b007b783b3aa609615412a6af8736 |
|
nano-debugsource-5.6.1-6.el9.aarch64.rpm
|
SHA-256: b5dd1142d1b351c6b5cba02fa8175ddfa520fdc3f1aa4d1b40b0a7d15acb5999 |
Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.6
| SRPM |
|
nano-5.6.1-6.el9.src.rpm
|
SHA-256: 62e0067624ffd78295375294aaa33beb94f337e1093fcbd6255f73c6846cc286 |
| aarch64 |
|
nano-5.6.1-6.el9.aarch64.rpm
|
SHA-256: ab4b522d10060d1964c4acd746fe78d7ef93fa08d41f0ab703f531209820df9c |
|
nano-debuginfo-5.6.1-6.el9.aarch64.rpm
|
SHA-256: a342aa405969033e82e43af1cc4a6c0ba88b007b783b3aa609615412a6af8736 |
|
nano-debugsource-5.6.1-6.el9.aarch64.rpm
|
SHA-256: b5dd1142d1b351c6b5cba02fa8175ddfa520fdc3f1aa4d1b40b0a7d15acb5999 |
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.6
| SRPM |
|
nano-5.6.1-6.el9.src.rpm
|
SHA-256: 62e0067624ffd78295375294aaa33beb94f337e1093fcbd6255f73c6846cc286 |
| ppc64le |
|
nano-5.6.1-6.el9.ppc64le.rpm
|
SHA-256: 974962099b99ed2cc83921c4644d8c162f3d2487b5d9ceff12d4c82776e96a12 |
|
nano-debuginfo-5.6.1-6.el9.ppc64le.rpm
|
SHA-256: 9a5e6874669aa9fabf80b0d916bcdf77118a4d06a6c6b17146b8d3ac358551be |
|
nano-debugsource-5.6.1-6.el9.ppc64le.rpm
|
SHA-256: 864b79d8781e0b5e296b9977e759abfa802dfbfb78bc798d510d2b68409f0310 |
Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.6
| SRPM |
|
nano-5.6.1-6.el9.src.rpm
|
SHA-256: 62e0067624ffd78295375294aaa33beb94f337e1093fcbd6255f73c6846cc286 |
| x86_64 |
|
nano-5.6.1-6.el9.x86_64.rpm
|
SHA-256: ddd18efe8af4c5a1a865e295656f6e67a907843184061c1c93051d5ca1e4b272 |
|
nano-debuginfo-5.6.1-6.el9.x86_64.rpm
|
SHA-256: 1ab3f9a8de2888cedd29d8b5badb4903c28c4e60052d9f762aeab507254775cb |
|
nano-debugsource-5.6.1-6.el9.x86_64.rpm
|
SHA-256: d8b552830efb44360fb52392e577e7548eec5294f94459008895894c4de132bf |
Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.6
| SRPM |
|
nano-5.6.1-6.el9.src.rpm
|
SHA-256: 62e0067624ffd78295375294aaa33beb94f337e1093fcbd6255f73c6846cc286 |
| aarch64 |
|
nano-5.6.1-6.el9.aarch64.rpm
|
SHA-256: ab4b522d10060d1964c4acd746fe78d7ef93fa08d41f0ab703f531209820df9c |
|
nano-debuginfo-5.6.1-6.el9.aarch64.rpm
|
SHA-256: a342aa405969033e82e43af1cc4a6c0ba88b007b783b3aa609615412a6af8736 |
|
nano-debugsource-5.6.1-6.el9.aarch64.rpm
|
SHA-256: b5dd1142d1b351c6b5cba02fa8175ddfa520fdc3f1aa4d1b40b0a7d15acb5999 |
Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.6
| SRPM |
|
nano-5.6.1-6.el9.src.rpm
|
SHA-256: 62e0067624ffd78295375294aaa33beb94f337e1093fcbd6255f73c6846cc286 |
| s390x |
|
nano-5.6.1-6.el9.s390x.rpm
|
SHA-256: 714899ceb3e312faf0383caacde4df9f1f776685a4952ffa1ae843d5c8e0348e |
|
nano-debuginfo-5.6.1-6.el9.s390x.rpm
|
SHA-256: 52e102a5320b58897af083c0a9d5f1896cffa7dba42301837d2f8ce5fefb9480 |
|
nano-debugsource-5.6.1-6.el9.s390x.rpm
|
SHA-256: f012efa835a70ccdc072e35893e669eed7f05052b1d932c664e2ae18ec605276 |