ELSA-2020-4687

ELSA-2020-4687 - oddjob security, bug fix, and enhancement update

Type:SECURITY
Impact:MODERATE
Release Date:2020-11-10

Description


[0.34.5-3]
- Support HOME_MODE from /etc/login.defs
Resolves: rhbz#1886362

[0.34.5-2]
- Add gating tests using idm:DL1 module stream and upstream tests
Resolves: rhbz#1682457

[0.34.5-1]
- Upstream release 0.34.5
- Resolves: rhbz#1833289 - Rebase oddjob to 0.34.5
- Resolves: rhbz#1833052 - CVE-2020-10737
oddjob: race condition in oddjob_selinux_mkdir function in mkhomedir.c can lead to symlink attack


Related CVEs


CVE-2020-10737

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) oddjob-0.34.5-3.el8.src.rpmbabe906e18334196787ec31d32719be757f15194a1067c315f89c711f8c2a535-ol8_aarch64_appstream
oddjob-0.34.5-3.el8.aarch64.rpm26aa57aa085ecb1579a8ae9df5fb8ab5bdd8157fcb06778abc88b9947992968d-ol8_aarch64_appstream
oddjob-mkhomedir-0.34.5-3.el8.aarch64.rpmdbc32f7b174ddb7e42503026f90238e8332c4c3f6fb2ff3dcf2eb8ddb2d69b24-ol8_aarch64_appstream
Oracle Linux 8 (x86_64) oddjob-0.34.5-3.el8.src.rpmbabe906e18334196787ec31d32719be757f15194a1067c315f89c711f8c2a535-ol8_x86_64_appstream
oddjob-0.34.5-3.el8.x86_64.rpm49a0dcb5bba83aca1a00e8b4069c690542667ed3e8bbe6785f23bad8ac647476-ol8_x86_64_appstream
oddjob-mkhomedir-0.34.5-3.el8.x86_64.rpm8721f0d8a015a02b3a89abad5c1fee43fefdd75a9afe9e6b7cd5f4ba72bff59e-ol8_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete