Lucene search

K
oraclelinuxOracleLinuxELSA-2024-2132
HistoryMay 02, 2024 - 12:00 a.m.

fence-agents security and bug fix update

2024-05-0200:00:00
linux.oracle.com
6
fence-agents
security update
bug fix
unix

6.1 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

7.3 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

41.3%

[4.10.0-62]

  • bundled urllib3: fix CVE-2023-45803
    Resolves: RHEL-18139
  • bundled pycryptodome: fix CVE-2023-52323
    Resolves: RHEL-20917
  • bundled jinja2: fix CVE-2024-22195
    Resolves: RHEL-21345
    [4.10.0-61]
  • fence_zvmip: document required user permissions in metadata/manpage
    Resolves: RHEL-14344
    [4.10.0-60]
  • all agents: update metadata in non-I/O agents to Power or Network
    fencing
    Resolves: RHEL-14030
    [4.10.0-57]
  • bundled urllib3: fix CVE-2023-43804
    Resolves: RHEL-11999
    [4.10.0-56]
  • fence_scsi: fix registration handling if ISID conflicts
    Resolves: RHEL-5396
  • bundled certifi: fix CVE-2023-37920
    Resolves: RHEL-9446

6.1 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

7.3 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

41.3%