ELSA-2015-2623

ELSA-2015-2623 - grub2 security and bug fix update

Type:SECURITY
Severity:MODERATE
Release Date:2015-12-15

Description


[2.02-0.33.0.1]
- Fix comparison in patch for 18504756
- Remove symlink to grub environment file during uninstall on EFI platforms
[bug 19231481]
- update Oracle Linux certificates (Alexey Petrenko)
- Put 'with' in menuentry instead of 'using' [bug 18504756]
- Use different titles for UEK and RHCK kernels [bug 18504756]

[2.02-0.33]
- Don't remove 01_users, it's the wrong thing to do.
Related:rhbz1290089

[2.02-0.32]
- Rebuild for .z so the release number is different.
Related: rhbz#1290089

[2.02-0.31]
- More work on handling of GRUB2_PASSWORD
Resolves: rhbz#1290089

[2.02-0.30]
- Fix security issue when reading username and password
Resolves: CVE-2015-8370
- Do a better job of handling GRUB_PASSWORD
Resolves: rhbz#1290089


Related CVEs


CVE-2015-8370

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (x86_64) grub2-2.02-0.33.0.1.el7_2.src.rpm6794adc00201c3b1c93895c0c2891b8eELBA-2021-9158
grub2-2.02-0.33.0.1.el7_2.x86_64.rpm521e12c00591af29b24712ebb9131c65ELBA-2021-9158
grub2-efi-2.02-0.33.0.1.el7_2.x86_64.rpm77c065372e036a05be8a1b81c0dc17f6ELBA-2016-2336
grub2-efi-modules-2.02-0.33.0.1.el7_2.x86_64.rpm10f04170d28f4da0b9bb13633f62f324ELBA-2016-2336
grub2-tools-2.02-0.33.0.1.el7_2.x86_64.rpm7650b3e309acf08e2f01c1a3ff771b1dELBA-2021-9158



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete