RHSA-2021:4385MediumCVSS 5.5
Red Hat Security Advisory: glib2 security and bug fix update
🔗 CVE IDs covered (2)
📋 Description
CVE-2021-3800 — glib2: Possible privilege escalation thourgh pkexec and aliases CVE-2021-28153 — glib: g_file_replace() with G_FILE_CREATE_REPLACE_DESTINATION creates empty target for dangling symlink
🔗 References (8)
- selfhttps://access.redhat.com/errata/RHSA-2021:4385
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttps://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/8/html/8.5_release_notes/
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1938284
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1938291
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1948988
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1971533
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2021/rhsa-2021_4385.json