SUSE-SU-2018:2071-1
Dashboard / Vulnerabilities / SUSE-SU-2018:2071-1
SUSE-SU-2018:2071-1
Summary: Security update for util-linux
Details: This update for util-linux fixes the following issues: This non-security issue was fixed: - CVE-2018-7738: bash-completion/umount allowed local users to gain privileges by embedding shell commands in a mountpoint name, which was mishandled during a umount command by a different user (bsc#1084300). These non-security issues were fixed: - Fixed crash loop in lscpu (bsc#1072947). - Fixed possible segfault of umount -a - Fixed mount -a on NFS bind mounts (bsc#1080740). - Fixed lsblk on NVMe (bsc#1078662).
References: https://www.suse.com/support/update/announcement/2018/suse-su-20182071-1/, https://bugzilla.suse.com/1072947, https://bugzilla.suse.com/1078662, https://bugzilla.suse.com/1080740, https://bugzilla.suse.com/1084300, https://www.suse.com/security/cve/CVE-2018-7738
Affected packages
Package
Name: python-libmount
Purl: pkg:rpm/suse/python-libmount&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3
Affected ranges
Type: ECOSYSTEM
Events:
