rpm package
suse/policycoreutils&distro=SUSE Linux Enterprise Server for SAP Applications 11 SP4
pkg:rpm/suse/policycoreutils&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2011%20SP4
Vulnerabilities (2)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2018-1063 | Med | 4.4 | < 2.0.79-4.9.3.3 | 2.0.79-4.9.3.3 | Mar 2, 2018 | Context relabeling of filesystems is vulnerable to symbolic link attack, allowing a local, unprivileged malicious entity to change the SELinux context of an arbitrary file to a context with few restrictions. This only happens when the relabeling process is done, usually when taki | |
| CVE-2016-7545 | Hig | 8.8 | < 2.0.79-4.8.1 | 2.0.79-4.8.1 | Jan 19, 2017 | SELinux policycoreutils allows local users to execute arbitrary commands outside of the sandbox via a crafted TIOCSTI ioctl call. |
- affected < 2.0.79-4.9.3.3fixed 2.0.79-4.9.3.3
Context relabeling of filesystems is vulnerable to symbolic link attack, allowing a local, unprivileged malicious entity to change the SELinux context of an arbitrary file to a context with few restrictions. This only happens when the relabeling process is done, usually when taki
- affected < 2.0.79-4.8.1fixed 2.0.79-4.8.1
SELinux policycoreutils allows local users to execute arbitrary commands outside of the sandbox via a crafted TIOCSTI ioctl call.