跳转到帖子

SUSE: CVE-2024-0217: SUSE Linux Security Advisory

recommended_posts

发布于
  • Members

SUSE: CVE-2024-0217: SUSE Linux Security Advisory

Severity
2
CVSS
(AV:L/AC:L/Au:S/C:N/I:N/A:P)
Published
01/03/2024
Created
03/23/2024
Added
03/22/2024
Modified
01/28/2025

Description

A use-after-free flaw was found in PackageKitd. In some conditions, the order of cleanup mechanics for a transaction could be impacted. As a result, some memory access could occur on memory regions that were previously freed. Once freed, a memory region can be reused for other allocations and any previously stored data in this memory region is considered lost.

Solution(s)

  • suse-upgrade-libpackagekit-glib2-18
  • suse-upgrade-libpackagekit-glib2-18-32bit
  • suse-upgrade-libpackagekit-glib2-devel
  • suse-upgrade-libpackagekit-glib2-devel-32bit
  • suse-upgrade-libyui-devel
  • suse-upgrade-libyui-ncurses-devel
  • suse-upgrade-libyui-ncurses-pkg-devel
  • suse-upgrade-libyui-ncurses-pkg11
  • suse-upgrade-libyui-ncurses-pkg15
  • suse-upgrade-libyui-ncurses-rest-api-devel
  • suse-upgrade-libyui-ncurses-rest-api15
  • suse-upgrade-libyui-ncurses-tools
  • suse-upgrade-libyui-ncurses15
  • suse-upgrade-libyui-qt-devel
  • suse-upgrade-libyui-qt-graph-devel
  • suse-upgrade-libyui-qt-graph15
  • suse-upgrade-libyui-qt-pkg-devel
  • suse-upgrade-libyui-qt-pkg11
  • suse-upgrade-libyui-qt-pkg15
  • suse-upgrade-libyui-qt-rest-api-devel
  • suse-upgrade-libyui-qt-rest-api15
  • suse-upgrade-libyui-qt15
  • suse-upgrade-libyui-rest-api-devel
  • suse-upgrade-libyui-rest-api11
  • suse-upgrade-libyui-rest-api15
  • suse-upgrade-libyui11
  • suse-upgrade-libyui15
  • suse-upgrade-libzypp
  • suse-upgrade-libzypp-devel
  • suse-upgrade-packagekit
  • suse-upgrade-packagekit-backend-dnf
  • suse-upgrade-packagekit-backend-zypp
  • suse-upgrade-packagekit-branding-sle
  • suse-upgrade-packagekit-branding-upstream
  • suse-upgrade-packagekit-devel
  • suse-upgrade-packagekit-gstreamer-plugin
  • suse-upgrade-packagekit-gtk3-module
  • suse-upgrade-packagekit-lang
  • suse-upgrade-typelib-1_0-packagekitglib-1_0
  • suse-upgrade-yast2-pkg-bindings
  • suse-upgrade-zypper
  • suse-upgrade-zypper-log
  • suse-upgrade-zypper-needs-restarting

References

  • https://attackerkb.com/topics/cve-2024-0217
  • CVE - 2024-0217
  • 查看数 705
  • 已创建
  • 最后回复

参与讨论

你可立刻发布并稍后注册。 如果你有帐户,立刻登录发布帖子。
注意:你的帖子需要版主批准后才能看到。

游客
回帖…