-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2022-6919a53ea9 2022-12-23 01:18:55.136324 --------------------------------------------------------------------------------
Name : systemd Product : Fedora 37 Version : 251.10 Release : 588.fc37 URL : https://www.freedesktop.org/wiki/Software/systemd Summary : System and Service Manager Description : systemd is a system and service manager that runs as PID 1 and starts the rest of the system. It provides aggressive parallelization capabilities, uses socket and D-Bus activation for starting services, offers on-demand starting of daemons, keeps track of processes using Linux control groups, maintains mount and automount points, and implements an elaborate transactional dependency-based service control logic. systemd supports SysV and LSB init scripts and works as a replacement for sysvinit. Other parts of this package are a logging daemon, utilities to control basic system configuration like the hostname, date, locale, maintain a list of logged-in users, system accounts, runtime directories and settings, and a logging daemons.
This package was built from the 251.10-stable branch of systemd.
-------------------------------------------------------------------------------- Update Information:
Bugfix release for CVE-2022-4415. No need to log out or reboot. -------------------------------------------------------------------------------- ChangeLog:
* Tue Dec 20 2022 Zbigniew J��drzejewski-Szmek zbyszek@in.waw.pl - Version 251.10 - CVE-2022-4415: systemd: coredump not respecting fs.suid_dumpable kernel setting -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2155522 - CVE-2022-4415 systemd: local information leak due to systemd-coredump not respecting fs.suid_dumpable kernel setting [fedora-37] https://bugzilla.redhat.com/show_bug.cgi?id=2155522 --------------------------------------------------------------------------------
This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2022-6919a53ea9' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label
All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys --------------------------------------------------------------------------------
package-announce@lists.fedoraproject.org