[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250363

 
 

909

 
 

196124

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-5366-1 multipath-tools -- multipath-tools

ID: oval:org.secpod.oval:def:610436Date: (C)2023-03-28   (M)2023-11-30
Class: PATCHFamily: unix




The Qualys Research Labs reported an authorization bypass and a symlink attack in multipath-tools, a set of tools to drive the Device Mapper multipathing driver, which may result in local privilege escalation. Please refer to /usr/share/doc/multipath-tools/NEWS.Debian.gz for backwards-incompatible changes in this update.

Platform:
Debian 11.x
Product:
multipath-udeb
kpartx
multipath-tools
Reference:
DSA-5366-1
CVE-2022-41973
CVE-2022-41974
CVE    2
CVE-2022-41973
CVE-2022-41974

© SecPod Technologies