ELSA-2020-4687

ELSA-2020-4687 - oddjob security, bug fix, and enhancement update

Type:SECURITY
Severity:MODERATE
Release Date:2020-11-10

Description


[0.34.5-3]
- Support HOME_MODE from /etc/login.defs
Resolves: rhbz#1886362

[0.34.5-2]
- Add gating tests using idm:DL1 module stream and upstream tests
Resolves: rhbz#1682457

[0.34.5-1]
- Upstream release 0.34.5
- Resolves: rhbz#1833289 - Rebase oddjob to 0.34.5
- Resolves: rhbz#1833052 - CVE-2020-10737
oddjob: race condition in oddjob_selinux_mkdir function in mkhomedir.c can lead to symlink attack


Related CVEs


CVE-2020-10737

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 8 (aarch64) oddjob-0.34.5-3.el8.src.rpmeade98fb88d705ddfc5cd285f29700d8-
oddjob-0.34.5-3.el8.aarch64.rpmeb781dbda910059576ca6cc33d0617ae-
oddjob-mkhomedir-0.34.5-3.el8.aarch64.rpm32c62b0aef80b39a45829fb176e07a76-
Oracle Linux 8 (x86_64) oddjob-0.34.5-3.el8.src.rpmeade98fb88d705ddfc5cd285f29700d8-
oddjob-0.34.5-3.el8.x86_64.rpm9758315c43cc3fc3ceaf43ce5fbf5a45-
oddjob-mkhomedir-0.34.5-3.el8.x86_64.rpm96bdb85dc3b06bea8dd57bb7c14fbc85-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete