ELSA-2020-5773

ELSA-2020-5773 - fuse security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2020-07-27

Description


[2.9.4-1.0.7.el7]
- \n- bump release number to 2.9.4-1.0.7 (Lans Hung) \n- fix missing Patch1,
Patch2, Patch3 declaration in spec file after using
%setup -q




/usr/bin/cat /usr/src/redhat/SOURCES/fuse-0001-fix-int64_t-conflict-on-aarch64.patch |
/usr/bin/patch -p1 -s

/usr/bin/cat /usr/src/redhat/SOURCES/fuse-0002-fusermount-refuse-unknown-options.patch |
/usr/bin/patch -p1 -s

/usr/bin/cat /usr/src/redhat/SOURCES/fuse-0003-fusermount-don-t-feed-escaped-commas-into-mount-opti.patch |
/usr/bin/patch -p1 -s

[2.9.4-1.0.6.el7]
- Reviewed-by: Laurence Rochfort (Lans Hung)
- add signed-off-by (Lans Hung)
- Security Update based on ELSA-2018-3324 fuse: bypass of the 'user_allow_other' restriction when SELinux is active. [OraBugzilla: 43547][CVE-2018-10906] (Lans Hung)

[2.9.4-1.0.5.el7]
- update to 2.9.4-1.0.5.el7 (lans.hung@oracle.com)
- update changelog in .spec file (lans.hung@oracle.com)
- move patch to buildrpm/ to fix build failure (lans.hung@oracle.com)
- Fix int64_t & uint64_t conflict issue on aarch64. This issue doesn't happen in x86_64 because its bits/sigcontext.h does not include asm/sigcontext.h, which it does on arm64, causing the __s64 definition conflict. This fix uses linux/types.h over manually defined int*_t and uint*_t in fuse_kernel.h. (Lans Hung) [Orabug: 27889694]


Related CVEs


CVE-2018-10906

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 7 (x86_64) fuse-2.9.4-1.0.7.el7.src.rpm467673bc250f778d463c5096f6183276be4e5ea61e0d03e89dec5a4142a1639cELBA-2021-9072ol7_x86_64_latest
fuse-2.9.4-1.0.7.el7.src.rpm467673bc250f778d463c5096f6183276be4e5ea61e0d03e89dec5a4142a1639cELBA-2021-9072ol7_x86_64_u8_patch
fuse-2.9.4-1.0.7.el7.x86_64.rpm4fea473f7b760b6800c9a899dd63a5e4012d3fa987c55328bf7bad4da7f173c1ELBA-2021-9072exadata_dbserver_19.2.18.0.0_x86_64_base
fuse-2.9.4-1.0.7.el7.x86_64.rpm4fea473f7b760b6800c9a899dd63a5e4012d3fa987c55328bf7bad4da7f173c1ELBA-2021-9072exadata_dbserver_19.2.19.0.0_x86_64_base
fuse-2.9.4-1.0.7.el7.x86_64.rpm4fea473f7b760b6800c9a899dd63a5e4012d3fa987c55328bf7bad4da7f173c1ELBA-2021-9072exadata_dbserver_19.3.12.0.0_x86_64_base
fuse-2.9.4-1.0.7.el7.x86_64.rpm4fea473f7b760b6800c9a899dd63a5e4012d3fa987c55328bf7bad4da7f173c1ELBA-2021-9072exadata_dbserver_19.3.13.0.0_x86_64_base
fuse-2.9.4-1.0.7.el7.x86_64.rpm4fea473f7b760b6800c9a899dd63a5e4012d3fa987c55328bf7bad4da7f173c1ELBA-2021-9072exadata_dbserver_20.1.2.0.0_x86_64_base
fuse-2.9.4-1.0.7.el7.x86_64.rpm4fea473f7b760b6800c9a899dd63a5e4012d3fa987c55328bf7bad4da7f173c1ELBA-2021-9072exadata_dbserver_20.1.3.0.0_x86_64_base
fuse-2.9.4-1.0.7.el7.x86_64.rpm4fea473f7b760b6800c9a899dd63a5e4012d3fa987c55328bf7bad4da7f173c1ELBA-2021-9072ol7_x86_64_latest
fuse-2.9.4-1.0.7.el7.x86_64.rpm4fea473f7b760b6800c9a899dd63a5e4012d3fa987c55328bf7bad4da7f173c1ELBA-2021-9072ol7_x86_64_u8_patch
fuse-devel-2.9.4-1.0.7.el7.i686.rpm9c935fed8be79d34b5e881a909d816036f062a9727f429aec5d945a2c124363eELBA-2021-9072ol7_x86_64_latest
fuse-devel-2.9.4-1.0.7.el7.i686.rpm9c935fed8be79d34b5e881a909d816036f062a9727f429aec5d945a2c124363eELBA-2021-9072ol7_x86_64_u8_patch
fuse-devel-2.9.4-1.0.7.el7.x86_64.rpm389e443e5c63ed9214b46878daef400cb05d3b5622417e254918f9789c540a44ELBA-2021-9072exadata_dbserver_19.2.18.0.0_x86_64_base
fuse-devel-2.9.4-1.0.7.el7.x86_64.rpm389e443e5c63ed9214b46878daef400cb05d3b5622417e254918f9789c540a44ELBA-2021-9072exadata_dbserver_19.2.19.0.0_x86_64_base
fuse-devel-2.9.4-1.0.7.el7.x86_64.rpm389e443e5c63ed9214b46878daef400cb05d3b5622417e254918f9789c540a44ELBA-2021-9072exadata_dbserver_19.3.12.0.0_x86_64_base
fuse-devel-2.9.4-1.0.7.el7.x86_64.rpm389e443e5c63ed9214b46878daef400cb05d3b5622417e254918f9789c540a44ELBA-2021-9072exadata_dbserver_19.3.13.0.0_x86_64_base
fuse-devel-2.9.4-1.0.7.el7.x86_64.rpm389e443e5c63ed9214b46878daef400cb05d3b5622417e254918f9789c540a44ELBA-2021-9072exadata_dbserver_20.1.2.0.0_x86_64_base
fuse-devel-2.9.4-1.0.7.el7.x86_64.rpm389e443e5c63ed9214b46878daef400cb05d3b5622417e254918f9789c540a44ELBA-2021-9072exadata_dbserver_20.1.3.0.0_x86_64_base
fuse-devel-2.9.4-1.0.7.el7.x86_64.rpm389e443e5c63ed9214b46878daef400cb05d3b5622417e254918f9789c540a44ELBA-2021-9072ol7_x86_64_latest
fuse-devel-2.9.4-1.0.7.el7.x86_64.rpm389e443e5c63ed9214b46878daef400cb05d3b5622417e254918f9789c540a44ELBA-2021-9072ol7_x86_64_u8_patch
fuse-libs-2.9.4-1.0.7.el7.i686.rpm83e801c663c35116009c1749d89632b71699d6450ebd6bd9ae4b60a2cd2ab061ELBA-2021-9072ol7_x86_64_latest
fuse-libs-2.9.4-1.0.7.el7.i686.rpm83e801c663c35116009c1749d89632b71699d6450ebd6bd9ae4b60a2cd2ab061ELBA-2021-9072ol7_x86_64_u8_patch
fuse-libs-2.9.4-1.0.7.el7.x86_64.rpme856bd8d7360b823fb234d1d718035afd8137d8bd22313369013ee5a0ccae537ELBA-2021-9072exadata_dbserver_19.2.18.0.0_x86_64_base
fuse-libs-2.9.4-1.0.7.el7.x86_64.rpme856bd8d7360b823fb234d1d718035afd8137d8bd22313369013ee5a0ccae537ELBA-2021-9072exadata_dbserver_19.2.19.0.0_x86_64_base
fuse-libs-2.9.4-1.0.7.el7.x86_64.rpme856bd8d7360b823fb234d1d718035afd8137d8bd22313369013ee5a0ccae537ELBA-2021-9072exadata_dbserver_19.3.12.0.0_x86_64_base
fuse-libs-2.9.4-1.0.7.el7.x86_64.rpme856bd8d7360b823fb234d1d718035afd8137d8bd22313369013ee5a0ccae537ELBA-2021-9072exadata_dbserver_19.3.13.0.0_x86_64_base
fuse-libs-2.9.4-1.0.7.el7.x86_64.rpme856bd8d7360b823fb234d1d718035afd8137d8bd22313369013ee5a0ccae537ELBA-2021-9072exadata_dbserver_20.1.2.0.0_x86_64_base
fuse-libs-2.9.4-1.0.7.el7.x86_64.rpme856bd8d7360b823fb234d1d718035afd8137d8bd22313369013ee5a0ccae537ELBA-2021-9072exadata_dbserver_20.1.3.0.0_x86_64_base
fuse-libs-2.9.4-1.0.7.el7.x86_64.rpme856bd8d7360b823fb234d1d718035afd8137d8bd22313369013ee5a0ccae537ELBA-2021-9072ol7_x86_64_latest
fuse-libs-2.9.4-1.0.7.el7.x86_64.rpme856bd8d7360b823fb234d1d718035afd8137d8bd22313369013ee5a0ccae537ELBA-2021-9072ol7_x86_64_u8_patch



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete