Linux Servers Security Updates 04 August 2022

Red Hat, Ubuntu, and Debian released security updates to address vulnerabilities affecting multiple products.

The addressed vulnerabilities could allow the remote attacker to take control of the affected system, disclose information, escalate privileges and cause a denial of service.

Sample of the addressed vulnerabilities:

  1. Git client Plugin man-in-the-middle (CVE-2022-36881):
    • CVSS: 8.1
    • Attack Vector: Network
    • Attack Complexity: High
    • Privileges Required: None
    • User Interaction: None
    • Consequences: Gain Access

  2. Rsync security bypass (CVE-2022-29154):
    • CVSS: 7.5
    • Attack Vector: Network
    • Attack Complexity: Low
    • Privileges Required: None
    • User Interaction: None
    • Consequences: Gain Access
Vulnerabilities
Mitigations

References