QID 159540

Date Published: 2022-02-23

QID 159540: Oracle Enterprise Linux Security Update for rpm (ELSA-2021-4785)

Oracle Enterprise Linux has released a security update for rpm to fix the vulnerabilities.

Affected Product:
Oracle Linux 7

This vulnerability could be exploited to gain partial access to sensitive information. Malicious users could also use this vulnerability to change partial contents or configuration on the system. Additionally this vulnerability can also be used to cause a limited denial of service in the form of interruptions in resource availability.

  • CVSS V3 rated as High - 7 severity.
  • CVSS V2 rated as Medium - 5.1 severity.
  • Solution
    To resolve this issue, upgrade to the latest packages which contain a patch. Refer to Oracle Enterprise Linux advisory below for updates and patch information:

    ELSA-2021-4785.
    Vendor References

    CVEs related to QID 159540

    Software Advisories
    Advisory ID Software Component Link
    ELSA-2021-4785 Oracle Linux URL Logo linux.oracle.com/errata/ELSA-2021-4785.html