diff options
author | Kåre Thor Olsen <kaare@nightcall.dk> | 2022-06-23 10:38:14 +0200 |
---|---|---|
committer | Kåre Thor Olsen <kaare@nightcall.dk> | 2022-06-23 10:38:14 +0200 |
commit | 34577fe835eb410a7d36c59a5a88babb466c607d (patch) | |
tree | 0a5f2ce75122004ec46680b0652774516597be54 | |
parent | b92c6c2182dc526c8d255ba089065ed49bad1dd2 (diff) |
[SECURITY] [DSA 5167-1] firejail security update
-rw-r--r-- | english/security/2022/dsa-5167.data | 13 | ||||
-rw-r--r-- | english/security/2022/dsa-5167.wml | 23 |
2 files changed, 36 insertions, 0 deletions
diff --git a/english/security/2022/dsa-5167.data b/english/security/2022/dsa-5167.data new file mode 100644 index 00000000000..50e11d10515 --- /dev/null +++ b/english/security/2022/dsa-5167.data @@ -0,0 +1,13 @@ +<define-tag pagetitle>DSA-5167-1 firejail</define-tag> +<define-tag report_date>2022-6-22</define-tag> +<define-tag secrefs>CVE-2022-31214 Bug#1012510</define-tag> +<define-tag packages>firejail</define-tag> +<define-tag isvulnerable>yes</define-tag> +<define-tag fixed>yes</define-tag> +<define-tag fixed-section>no</define-tag> + +#use wml::debian::security + + + +</dl> diff --git a/english/security/2022/dsa-5167.wml b/english/security/2022/dsa-5167.wml new file mode 100644 index 00000000000..91b6f945a8a --- /dev/null +++ b/english/security/2022/dsa-5167.wml @@ -0,0 +1,23 @@ +<define-tag description>security update</define-tag> +<define-tag moreinfo> +<p>Matthias Gerstner discovered that the --join option of Firejail, +a sandbox to restrict an application environment, was susceptible +to local privilege escalation to root.</p> + +<p>For the oldstable distribution (buster), this problem has been fixed +in version 0.9.58.2-2+deb10u3.</p> + +<p>For the stable distribution (bullseye), this problem has been fixed in +version 0.9.64.4-2+deb11u1.</p> + +<p>We recommend that you upgrade your firejail packages.</p> + +<p>For the detailed security status of firejail please refer to +its security tracker page at: +<a href="https://security-tracker.debian.org/tracker/firejail">\ +https://security-tracker.debian.org/tracker/firejail</a></p> +</define-tag> + +# do not modify the following line +#include "$(ENGLISHDIR)/security/2022/dsa-5167.data" +# $Id: $ |