Release Info

Advisory: CLSA-2023:1679349729

OS: Ubuntu 16.04 ELS

Public date: 2023-03-20 00:00:00

Project: systemd

Version: 229-4ubuntu21.33+tuxcare.els1

Errata link: https://errata.cloudlinux.com/ubuntu16-els/CLSA-2023-1679349729.html

Changelog

* SECURITY UPDATE: buffer overrun vulnerability in format_timespan() - debian/patches/CVE-2022-3821.patch: fix buffer-over-run - CVE-2022-3821 * SECURITY UPDATE: a local privelege escalation for some sudo configs was not blocked adequately - debian/patches/CVE-2023-26604.patch: use only less as a pager and restrict its functionality (e.g stop running external shell) unless environment variable SYSTEMD_PAGERSECURE is defined - CVE-2023-26604

Update

Update command: apt-get update apt-get --only-upgrade install systemd*

Packages list

libnss-myhostname_229-4ubuntu21.33+tuxcare.els1_amd64.deb libnss-mymachines_229-4ubuntu21.33+tuxcare.els1_amd64.deb libnss-resolve_229-4ubuntu21.33+tuxcare.els1_amd64.deb libpam-systemd_229-4ubuntu21.33+tuxcare.els1_amd64.deb libsystemd-dev_229-4ubuntu21.33+tuxcare.els1_amd64.deb libsystemd0_229-4ubuntu21.33+tuxcare.els1_amd64.deb libudev-dev_229-4ubuntu21.33+tuxcare.els1_amd64.deb libudev1_229-4ubuntu21.33+tuxcare.els1_amd64.deb systemd_229-4ubuntu21.33+tuxcare.els1_amd64.deb systemd-container_229-4ubuntu21.33+tuxcare.els1_amd64.deb systemd-coredump_229-4ubuntu21.33+tuxcare.els1_amd64.deb systemd-journal-remote_229-4ubuntu21.33+tuxcare.els1_amd64.deb systemd-sysv_229-4ubuntu21.33+tuxcare.els1_amd64.deb udev_229-4ubuntu21.33+tuxcare.els1_amd64.deb

CVEs

CVE-2022-3821
CVE-2023-26604