Lucene search
Basic search
Lucene search
Search by product
Subscribe
K
Start 30-day trial
Database
Vendors
Products
Years
CVSS
Scanner
Agent Scanning
API Scanning
Manual Audit
Perimeter Scanner
Scanning
Projects
Email
Webhook
Plugins
Resources
Documents
Blog
Glossary
FAQ
Pricing
Contacts
About Us
Partners
Branding Guideline
SIGN IN
OracleLinux
ELSA-2023-2459
History
May 15, 2023 - 12:00 a.m.
Vulners
/
Oraclelinux
/
device-mapper-multipath security and bug fix update
device-mapper-multipath security and bug fix update
2023-05-15
00:00:00
linux.oracle.com
27
installation directory change
bug fixes
security update
memory leak fix
path handling fix
protocol handling fix
0.0004 Low
EPSS
Percentile
10.1%
JSON
[0.8.7-20]
Add 0083-multipath.rules-fix-smart-bug-with-failed-valid-path.patch
Add 0084-libmultipath-limit-paths-that-can-get-wwid-from-envi.patch
Change how the installation dir for kpartx_id is specified
Resolves: bz #1926147
[0.8.7-19]
Fix bugzilla linked to the changes (was previously linked to
the wrong bug, 2162536)
Resolves: bz #2166467
[0.8.7-18]
Add 0079-libmultipath-use-select_reload_action-in-select_acti.patch
Add 0080-libmultipath-select-resize-action-even-if-reload-is-.patch
Add 0081-libmultipath-cleanup-ACT_CREATE-code-in-select_actio.patch
Add 0082-libmultipath-keep-renames-from-stopping-other-multip.patch
Resolves: bz #2166467
[0.8.7-17]
Add 0077-libmultipath-don-t-leak-memory-on-invalid-strings.patch
Add 0078-libmutipath-validate-the-argument-count-of-config-st.patch
Resolves: bz #2145225
[0.8.7-16]
Add 0076-multipath.conf-5-remove-io-affinity-information.patch
Resolves: bz #2143125
[0.8.7-15]
Add 0067-kpartx-hold-device-open-until-partitions-have-been-c.patch
Fixes bz #2141860
Add 0068-libmultipath-cleanup-remove_feature.patch
Add 0069-libmultipath-cleanup-add_feature.patch
Add 0070-multipath-tests-tests-for-adding-and-removing-featur.patch
Add 0071-libmultipath-fix-queue_mode-feature-handling.patch
Add 0072-multipath-tests-tests-for-reconcile_features_with_qu.patch
Add 0073-libmultipath-prepare-proto_id-for-use-by-non-scsi-de.patch
Add 0074-libmultipath-get-nvme-path-transport-protocol.patch
Add 0075-libmultipath-enforce-queue_mode-bio-for-nmve-tcp-pat.patch
Fixes bz #2033080
Resolves: bz #2033080, #2141860
[0.8.7-14]
Add 0065-multipathd-ignore-duplicated-multipathd-command-keys.patch
Fixes bz #2133999
Add 0066-multipath-tools-use-run-instead-of-dev-shm.patch
Fixes bz #2133989
Resolves: bz #2133989, #2133999
[0.8.7-13]
Add 0062-multipathd-factor-out-the-code-to-flush-a-map-with-n.patch
Add 0063-libmultipath-return-success-if-we-raced-to-remove-a-.patch
Add 0064-multipathd-Handle-losing-all-path-in-update_map.patch
Resolves: bz #2125357
Affected Package
OS
Version
Architecture
Package
Version
Filename
oracle linux
9
src
device-mapper-multipath
<Β 0.8.7-20.el9
device-mapper-multipath-0.8.7-20.el9.src.rpm
oracle linux
9
aarch64
device-mapper-multipath
<Β 0.8.7-20.el9
device-mapper-multipath-0.8.7-20.el9.aarch64.rpm
oracle linux
9
aarch64
device-mapper-multipath-devel
<Β 0.8.7-20.el9
device-mapper-multipath-devel-0.8.7-20.el9.aarch64.rpm
oracle linux
9
aarch64
device-mapper-multipath-libs
<Β 0.8.7-20.el9
device-mapper-multipath-libs-0.8.7-20.el9.aarch64.rpm
oracle linux
9
aarch64
kpartx
<Β 0.8.7-20.el9
kpartx-0.8.7-20.el9.aarch64.rpm
oracle linux
9
src
device-mapper-multipath
<Β 0.8.7-20.el9
device-mapper-multipath-0.8.7-20.el9.src.rpm
oracle linux
9
x86_64
device-mapper-multipath
<Β 0.8.7-20.el9
device-mapper-multipath-0.8.7-20.el9.x86_64.rpm
oracle linux
9
i686
device-mapper-multipath-devel
<Β 0.8.7-20.el9
device-mapper-multipath-devel-0.8.7-20.el9.i686.rpm
oracle linux
9
x86_64
device-mapper-multipath-devel
<Β 0.8.7-20.el9
device-mapper-multipath-devel-0.8.7-20.el9.x86_64.rpm
oracle linux
9
i686
device-mapper-multipath-libs
<Β 0.8.7-20.el9
device-mapper-multipath-libs-0.8.7-20.el9.i686.rpm
Rows per page:
10
β
1-10 of 12
1
Related
osv 7
redhat 8
cbl_mariner 2
nessus 54
veracode 2
oraclelinux 1
almalinux 2
openvas 28
prion 3
redhatcve 3
suse 2
debian 2
nvd 3
gentoo 1
cve 3
ubuntu 1
photon 4
rosalinux 1
alpinelinux 2
f5 2
ubuntucve 2
packetstorm 2
fedora 1
cvelist 3
debiancve 2
mageia 1
hivepro 1
cloudfoundry 1
amazon 1
qualysblog 4
thn 1
zdt 1
osv
osv
7
Moderate: device-mapper-multipath security and bug fix update
2023-05-16 00:00:00
Moderate: device-mapper-multipath security and bug fix update
2023-05-09 00:00:00
multipath-tools vulnerabilities
2022-11-17 13:14:45
redhat
redhat
8
(RHSA-2023:2948) Moderate: device-mapper-multipath security and bug fix update
2023-05-16 05:58:58
(RHSA-2023:2459) Moderate: device-mapper-multipath security and bug fix update
2023-05-09 05:11:25
(RHSA-2024:1110) Moderate: device-mapper-multipath security update
2024-03-05 10:45:01
cbl_mariner
cbl_mariner
CVE-2022-41973 affecting package device-mapper-multipath for versions less than 0.8.6-4
2023-01-17 16:46:46
CVE-2022-41973 affecting package device-mapper-multipath 0.8.6-1
2024-07-06 16:06:12
nessus
nessus
54
RHEL 8 : device-mapper-multipath (RHSA-2023:2948)
2023-05-16 00:00:00
RHEL 9 : device-mapper-multipath (RHSA-2023:2459)
2023-05-12 00:00:00
RHEL 8 : device-mapper-multipath (RHSA-2024:1110)
2024-03-05 00:00:00
veracode
veracode
Privilege Escalation
2022-11-19 14:27:14
Privilege Escalation
2023-01-18 00:45:31
oraclelinux
oraclelinux
device-mapper-multipath security and bug fix update
2023-05-24 00:00:00
almalinux
almalinux
Moderate: device-mapper-multipath security and bug fix update
2023-05-16 00:00:00
Moderate: device-mapper-multipath security and bug fix update
2023-05-09 00:00:00
openvas
openvas
28
Debian: Security Advisory (DSA-5366-1)
2023-03-03 00:00:00
Huawei EulerOS: Security Advisory for multipath-tools (EulerOS-SA-2023-1477)
2023-03-09 00:00:00
Huawei EulerOS: Security Advisory for multipath-tools (EulerOS-SA-2023-1413)
2023-03-07 00:00:00
prion
prion
Privilege escalation
2023-03-29 21:15:00
Privilege escalation
2022-10-29 19:15:00
Privilege escalation
2022-10-29 18:15:00
redhatcve
redhatcve
CVE-2022-41974
2022-10-24 20:18:58
CVE-2022-41973
2022-10-24 20:18:50
CVE-2022-3787
2022-11-07 21:56:14
suse
suse
Security update for multipath-tools (important)
2022-10-24 00:00:00
Security update for multipath-tools (important)
2022-10-24 00:00:00
debian
debian
[SECURITY] [DSA 5366-1] multipath-tools security update
2023-03-01 11:29:12
[SECURITY] [DLA 3250-1] multipath-tools security update
2022-12-29 10:45:35
nvd
nvd
CVE-2022-41974
2022-10-29 19:15:10
CVE-2022-41973
2022-10-29 18:15:12
CVE-2022-3787
2023-03-29 21:15:07
gentoo
gentoo
multipath-tools: Multiple Vulnerabilities
2023-11-25 00:00:00
cve
cve
CVE-2022-41973
2022-10-29 18:15:12
CVE-2022-3787
2023-03-29 21:15:07
CVE-2022-41974
2022-10-29 19:15:10
ubuntu
ubuntu
multipath-tools vulnerabilities
2022-11-17 00:00:00
photon
photon
4
Important Photon OS Security Update - PHSA-2022-0269
2022-10-24 00:00:00
Important Photon OS Security Update - PHSA-2022-4.0-0269
2022-10-24 00:00:00
Important Photon OS Security Update - PHSA-2022-3.0-0476
2022-10-24 00:00:00
rosalinux
rosalinux
Advisory ROSA-SA-2023-2218
2023-08-22 08:47:43
alpinelinux
alpinelinux
CVE-2022-41973
2022-10-29 18:15:12
CVE-2022-41974
2022-10-29 19:15:10
f5
f5
K000133615 : device-mapper-multipath vulnerability CVE-2022-41974
2023-04-28 00:00:00
K000133058 : device-mapper-multipath vulnerability CVE-2022-41973
2023-03-18 00:00:00
ubuntucve
ubuntucve
CVE-2022-41974
2022-10-24 00:00:00
CVE-2022-41973
2022-10-24 00:00:00
packetstorm
packetstorm
Leeloo Multipath Authorization Bypass / Symlink Attack
2022-10-31 00:00:00
snap-confine must_mkdir_and_open_with_perms() Race Condition
2022-12-09 00:00:00
fedora
fedora
[SECURITY] Fedora 36 Update: device-mapper-multipath-0.8.7-9.fc36
2022-11-10 16:19:06
cvelist
cvelist
CVE-2022-41974
2022-10-29 00:00:00
CVE-2022-41973
2022-10-29 00:00:00
CVE-2022-3787
2023-03-29 00:00:00
debiancve
debiancve
CVE-2022-41973
2022-10-29 18:15:12
CVE-2022-41974
2022-10-29 19:15:10
mageia
mageia
Updated multipath-tools packages fix security vulnerabilities
2024-03-18 19:12:23
hivepro
hivepro
Linux flaws could be chained together to achieve root access
2022-12-09 05:58:41
cloudfoundry
cloudfoundry
USN-5731-1: multipath-tools vulnerabilities | Cloud Foundry
2022-12-07 00:00:00
amazon
amazon
Important: device-mapper-multipath
2022-12-01 20:31:00
qualysblog
qualysblog
4
Leeloo Multipath: Authorization bypass and symlink attack in multipathdΒ (CVE-2022-41974 and CVE-2022-41973)
2022-10-26 01:57:00
Snapd Race Condition Vulnerability in snap-confineβs must_mkdir_and_open_with_perms() (CVE-2022-3328)
2022-11-30 23:29:05
Qualys Research Team: Threat Thursdays, October 2022
2022-10-28 00:58:53
thn
thn
Critical Ping Vulnerability Allows Remote Attackers to Take Over FreeBSD Systems
2022-12-05 07:40:00
zdt
zdt
Ubuntu Server snap-confine must_mkdir_and_open_with_perms() Race Condition Vulnerability
2022-12-10 00:00:00
0.0004 Low
EPSS
Percentile
10.1%
JSON
Related for ELSA-2023-2459
osv
7
redhat
8
cbl_mariner
2
nessus
54
veracode
2
oraclelinux
1
almalinux
2
openvas
28
prion
3
redhatcve
3
suse
2
debian
2
nvd
3
gentoo
1
cve
3
ubuntu
1
photon
4
rosalinux
1
alpinelinux
2
f5
2
ubuntucve
2
packetstorm
2
fedora
1
cvelist
3
debiancve
2
mageia
1
hivepro
1
cloudfoundry
1
amazon
1
qualysblog
4
thn
1
zdt
1