Security Fixes 11.08.290
Chromium
- Fixed forbidden file access. If enabled, downloads, bookmarks and printing in Chromium are disabled.
Fixed Chromium browser security issues
- Updated Chromium browser to version 110.0.5481.177.
Network
- Fixed privilege escalation in network management.
Base System
Fixed privilege escalation in
setup_cmd
tool.
Changed: For security reasons, the default password protection value for the System Information accessory is set to Administrator.IGEL Setup Accessories > System Information
Parameter Password protection Registry sessions.device_manager0.pwprotected
Value Administrator (default) - Fixed empty password entry for floppy group.
- Fixed sysstat security issue CVE-2022-39377.
- Fixed binutils security issue CVE-2022-38533.
- Fixed libarchive security issues CVE-2022-36227 and CVE-2022-28066.
Fixed curl security issues
- Fixed xorg-server security issues CVE-2022-46344, CVE-2022-46343, CVE-2022-46342, CVE-2022-46341, CVE-2022-46340, and CVE-2022-46283.
- Fixed libksba security issue CVE-2022-47629.
- Fixed nautilus security issue CVE-2022-37290.
- Fixed python2.7 security issue CVE-2022-45061.
- Fixed python3.6 security issue CVE-2022-45061.
- Fixed net-snmp security issues CVE-2022-44793, CVE-2022-44792, and CVE-2022-4479.
- Fixed tiff security issue CVE-2022-3970.
Fixed webkit2gtk security issues
- Fixed qemu security issues CVE-2022-4172 and CVE-2022-3165.
- Fixed vim security issue CVE-2022-0392.
- Fixed sudo security issue CVE-2023-22809.
- Fixed libxpm security issues CVE-2022-4883, CVE-2022-46285, and CVE-2022-44617.
- Fixed zulu8-ca security issues CVE-2023-21830, CVE-2023-21835, and CVE-2023-21843.
- Fixed heimdal security issues CVE-2022-45142, CVE-2022-44640, CVE-2022-42898, CVE-2022-41916, CVE-2022-3437, and CVE-2021-44758.
- Fixed python-setuptools security issue CVE-2022-40897.
- Fixed pam security issue CVE-2022-28321.
- Fixed mysql-5.7 security issue CVE-2023-21840.
- Fixed xorg-server security issue CVE-2023-0494.
- Fixed e2fsprogs security issue CVE-2022-1304.
- Fixed openssl1.0 security issues CVE-2023-0286 and CVE-2023-0215.
- Fixed openssl security issues CVE-2023-0286, CVE-2023-0215, CVE-2022-4450, and CVE-2022-4304.
- Fixed tpm2-tss security issue CVE-2023-22745.
- Fixed nss security issue CVE-2023-0767.
- Fixed python3.6 security issue CVE-2022-37454.
Fixed tiff security issues
- Fixed rsync security issue CVE-2022-29154.
- Fixed tar security issue CVE-2022-48303.
- Updated ca-certificates to version 20230311.