An update for libcap is now available for openEuler-20.03-LTS-SP1
Security Advisory
openeuler-security@openeuler.org
openEuler security committee
openEuler-SA-2023-1343
Final
1.0
1.0
2023-06-10
Initial
2023-06-10
2023-06-10
openEuler SA Tool V1.0
2023-06-10
libcap security update
An update for libcap is now available for openEuler-20.03-LTS-SP1.
This is a library for getting and setting POSIX.1e (formerly POSIX 6) draft 15 capabilities.
Security Fix(es):
A vulnerability was found in libcap. This issue occurs in the _libcap_strdup() function and can lead to an integer overflow if the input string is close to 4GiB.(CVE-2023-2603)
An update for libcap is now available for openEuler-20.03-LTS-SP1.
openEuler Security has rated this update as having a security impact of medium. A Common Vunlnerability Scoring System(CVSS)base score,which gives a detailed severity rating, is available for each vulnerability from the CVElink(s) in the References section.
Medium
libcap
https://www.openeuler.org/en/security/safety-bulletin/detail.html?id=openEuler-SA-2023-1343
https://www.openeuler.org/en/security/cve/detail.html?id=CVE-2023-2603
https://nvd.nist.gov/vuln/detail/CVE-2023-2603
openEuler-20.03-LTS-SP1
libcap-2.32-6.oe1.aarch64.rpm
libcap-debuginfo-2.32-6.oe1.aarch64.rpm
libcap-devel-2.32-6.oe1.aarch64.rpm
libcap-debugsource-2.32-6.oe1.aarch64.rpm
libcap-help-2.32-6.oe1.noarch.rpm
libcap-2.32-6.oe1.src.rpm
libcap-devel-2.32-6.oe1.x86_64.rpm
libcap-debuginfo-2.32-6.oe1.x86_64.rpm
libcap-debugsource-2.32-6.oe1.x86_64.rpm
libcap-2.32-6.oe1.x86_64.rpm
A vulnerability was found in libcap. This issue occurs in the _libcap_strdup() function and can lead to an integer overflow if the input string is close to 4GiB.
2023-06-10
CVE-2023-2603
openEuler-20.03-LTS-SP1
Medium
4.4
AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L
libcap security update
2023-06-10
https://www.openeuler.org/en/security/safety-bulletin/detail.html?id=openEuler-SA-2023-1343