Please read this before reporting a bug:
https://wiki.archlinux.org/title/Bug_reporting_guidelines
Do NOT report bugs when a package is just outdated, or it is in the AUR. Use the 'flag out of date' link on the package page, or the Mailing List.
REPEAT: Do NOT report bugs for outdated packages!
https://wiki.archlinux.org/title/Bug_reporting_guidelines
Do NOT report bugs when a package is just outdated, or it is in the AUR. Use the 'flag out of date' link on the package page, or the Mailing List.
REPEAT: Do NOT report bugs for outdated packages!
FS#59620 - [lxc] [Security] arbitrary filesystem access (CVE-2018-6556)
Attached to Project:
Community Packages
Opened by Morten Linderud (Foxboron) - Saturday, 11 August 2018, 22:40 GMT
Last edited by Sergej Pupykin (sergej) - Friday, 17 August 2018, 11:26 GMT
Opened by Morten Linderud (Foxboron) - Saturday, 11 August 2018, 22:40 GMT
Last edited by Sergej Pupykin (sergej) - Friday, 17 August 2018, 11:26 GMT
|
DetailsSummary
======= The package lxc is vulnerable to arbitrary filesystem access via CVE-2018-6556. Guidance ======== Update to 3.0.2 or apply patch from upstream. https://github.com/lxc/lxc/commit/f26dc127bf5d66e8c29f8584c64bd97c9bbbc574 References ========== https://security.archlinux.org/AVG-754 https://bugzilla.suse.com/show_bug.cgi?id=988348 http://seclists.org/oss-sec/2018/q3/81 |
This task depends upon