ELSA-2024-3843

ELSA-2024-3843 - cockpit security update

Type:SECURITY
Severity:MODERATE
Release Date:2024-06-11

Description


[311.2-1.0.1]
- Replaced upstream urls in documentation with oracle links [Orabug: 36528753]
- Drop subscription-manager-cockpit requirement for ol [Orabug: 34681110]
- Remove duplicate reference to server in cockpit [Orabug: 34030494]
- Update documentation links [Orabug: 30271413], [Orabug: 32013095],
[Orabug: 32795691], [Orabug: 34398512], [Orabug: 34742876]
- Update spec file for new release

[311.2]
- Remove recommends on subscription-manager-cockpit if applicable

[311.2-1]
- sosreport: Fix command injection with crafted report names [CVE-2024-2947]
(jira#RHEL-31074)


Related CVEs


CVE-2024-2947

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) cockpit-311.2-1.0.1.el9_4.src.rpm46b6ec3537dbdff3ea114c1313b04d01-ol9_aarch64_appstream
cockpit-311.2-1.0.1.el9_4.src.rpm46b6ec3537dbdff3ea114c1313b04d01-ol9_aarch64_baseos_latest
cockpit-311.2-1.0.1.el9_4.src.rpm46b6ec3537dbdff3ea114c1313b04d01-ol9_aarch64_u4_baseos_patch
cockpit-311.2-1.0.1.el9_4.aarch64.rpm3899c55ad1605e6ae20cc4a4f4c7be91-ol9_aarch64_baseos_latest
cockpit-311.2-1.0.1.el9_4.aarch64.rpm3899c55ad1605e6ae20cc4a4f4c7be91-ol9_aarch64_u4_baseos_patch
cockpit-bridge-311.2-1.0.1.el9_4.aarch64.rpmcdc9d7018ea6e03ad78d10edb5b087f1-ol9_aarch64_baseos_latest
cockpit-bridge-311.2-1.0.1.el9_4.aarch64.rpmcdc9d7018ea6e03ad78d10edb5b087f1-ol9_aarch64_u4_baseos_patch
cockpit-doc-311.2-1.0.1.el9_4.noarch.rpm38f05b8f5a7c97881dec2cba387193fb-ol9_aarch64_baseos_latest
cockpit-doc-311.2-1.0.1.el9_4.noarch.rpm38f05b8f5a7c97881dec2cba387193fb-ol9_aarch64_u4_baseos_patch
cockpit-packagekit-311.2-1.0.1.el9_4.noarch.rpm1d7020ecbc5e78825a22bf88bbc61ab6-ol9_aarch64_appstream
cockpit-pcp-311.2-1.0.1.el9_4.aarch64.rpme7fe58b1deb9bccd049bfb4f86dd91d6-ol9_aarch64_appstream
cockpit-storaged-311.2-1.0.1.el9_4.noarch.rpmb1c330e8f3377da91c23e387c8e6b78c-ol9_aarch64_appstream
cockpit-system-311.2-1.0.1.el9_4.noarch.rpm7a3965e58cb1bb0be268a60ef66102ab-ol9_aarch64_baseos_latest
cockpit-system-311.2-1.0.1.el9_4.noarch.rpm7a3965e58cb1bb0be268a60ef66102ab-ol9_aarch64_u4_baseos_patch
cockpit-ws-311.2-1.0.1.el9_4.aarch64.rpm574c9487098a8dbc06c126ccd3a05d9e-ol9_aarch64_baseos_latest
cockpit-ws-311.2-1.0.1.el9_4.aarch64.rpm574c9487098a8dbc06c126ccd3a05d9e-ol9_aarch64_u4_baseos_patch
Oracle Linux 9 (x86_64) cockpit-311.2-1.0.1.el9_4.src.rpm46b6ec3537dbdff3ea114c1313b04d01-ol9_x86_64_appstream
cockpit-311.2-1.0.1.el9_4.src.rpm46b6ec3537dbdff3ea114c1313b04d01-ol9_x86_64_baseos_latest
cockpit-311.2-1.0.1.el9_4.src.rpm46b6ec3537dbdff3ea114c1313b04d01-ol9_x86_64_u4_baseos_patch
cockpit-311.2-1.0.1.el9_4.x86_64.rpm0cddd41e6b4a1e72224b0a05c4d73bcf-ol9_x86_64_baseos_latest
cockpit-311.2-1.0.1.el9_4.x86_64.rpm0cddd41e6b4a1e72224b0a05c4d73bcf-ol9_x86_64_u4_baseos_patch
cockpit-bridge-311.2-1.0.1.el9_4.x86_64.rpmb5d8ddb71d2ab8c4d7f0d1859d0065b8-ol9_x86_64_baseos_latest
cockpit-bridge-311.2-1.0.1.el9_4.x86_64.rpmb5d8ddb71d2ab8c4d7f0d1859d0065b8-ol9_x86_64_u4_baseos_patch
cockpit-doc-311.2-1.0.1.el9_4.noarch.rpm38f05b8f5a7c97881dec2cba387193fb-ol9_x86_64_baseos_latest
cockpit-doc-311.2-1.0.1.el9_4.noarch.rpm38f05b8f5a7c97881dec2cba387193fb-ol9_x86_64_u4_baseos_patch
cockpit-packagekit-311.2-1.0.1.el9_4.noarch.rpm1d7020ecbc5e78825a22bf88bbc61ab6-ol9_x86_64_appstream
cockpit-pcp-311.2-1.0.1.el9_4.x86_64.rpm9402b37a73d5d9173d13a5cf83cd17b6-ol9_x86_64_appstream
cockpit-storaged-311.2-1.0.1.el9_4.noarch.rpmb1c330e8f3377da91c23e387c8e6b78c-ol9_x86_64_appstream
cockpit-system-311.2-1.0.1.el9_4.noarch.rpm7a3965e58cb1bb0be268a60ef66102ab-ol9_x86_64_baseos_latest
cockpit-system-311.2-1.0.1.el9_4.noarch.rpm7a3965e58cb1bb0be268a60ef66102ab-ol9_x86_64_u4_baseos_patch
cockpit-ws-311.2-1.0.1.el9_4.x86_64.rpm0d33b8482d3f829114df56af7278d964-ol9_x86_64_baseos_latest
cockpit-ws-311.2-1.0.1.el9_4.x86_64.rpm0d33b8482d3f829114df56af7278d964-ol9_x86_64_u4_baseos_patch



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete