[Apollo] Advisories Statistics light light Login

RLSA-2023:5061

Security Mirrored from RHSA-2023:5061
Issued at: 2023-09-26
Updated at: 2023-09-26

Synopsis

Moderate: dmidecode security update



Description

The dmidecode packages provide utilities for extracting Intel 64 and Intel Itanium hardware information from the system BIOS or Extensible Firmware Interface (EFI), depending on the SMBIOS/DMI standard. This information typically includes system manufacturer, model name, serial number, BIOS version, and asset tag, as well as other details, depending on the manufacturer.

Security Fix(es):

* dmidecode: dump-bin to overwrite a local file (CVE-2023-30630)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.



Affected products

Rocky Linux 9 aarch64 Rocky Linux 9 x86_64

Fixes

2186669

CVEs

CVE-2023-30630

Affected packages

Rocky Linux 9 aarch64 - BaseOS

dmidecode-1:3.3-7.el9_2.1.aarch64.rpm dmidecode-1:3.3-7.el9_2.1.src.rpm dmidecode-debuginfo-1:3.3-7.el9_2.1.aarch64.rpm dmidecode-debugsource-1:3.3-7.el9_2.1.aarch64.rpm

Rocky Linux 9 x86_64 - BaseOS

dmidecode-1:3.3-7.el9_2.1.src.rpm dmidecode-1:3.3-7.el9_2.1.x86_64.rpm dmidecode-debuginfo-1:3.3-7.el9_2.1.x86_64.rpm dmidecode-debugsource-1:3.3-7.el9_2.1.x86_64.rpm