Scientific Linux alert SLSA-2016:0189-1 (polkit)
| From: | Pat Riehecky <riehecky@fnal.gov> | |
| To: | <scientific-linux-errata@listserv.fnal.gov> | |
| Subject: | Security ERRATA Moderate: polkit on SL7.x x86_64 | |
| Date: | Tue, 16 Feb 2016 16:30:23 +0000 | |
| Message-ID: | <20160216163023.8841.24957@slpackages.fnal.gov> |
Synopsis: Moderate: polkit security update Advisory ID: SLSA-2016:0189-1 Issue Date: 2016-02-16 CVE Numbers: CVE-2015-3256 -- A denial of service flaw was found in how polkit handled authorization requests. A local, unprivileged user could send malicious requests to polkit, which could then cause the polkit daemon to corrupt its memory and crash. (CVE-2015-3256) The system must be rebooted for this update to take effect. -- SL7 x86_64 polkit-0.112-6.el7_2.i686.rpm polkit-0.112-6.el7_2.x86_64.rpm polkit-debuginfo-0.112-6.el7_2.i686.rpm polkit-debuginfo-0.112-6.el7_2.x86_64.rpm polkit-devel-0.112-6.el7_2.i686.rpm polkit-devel-0.112-6.el7_2.x86_64.rpm noarch polkit-docs-0.112-6.el7_2.noarch.rpm - Scientific Linux Development Team