Rapid7 Vulnerability & Exploit Database

CentOS Linux: CVE-2021-44568: Moderate: Satellite 6.11 Release (CESA-2022:5498)

Free InsightVM Trial No Credit Card Necessary
2024 Attack Intel Report Latest research by Rapid7 Labs
Back to Search

CentOS Linux: CVE-2021-44568: Moderate: Satellite 6.11 Release (CESA-2022:5498)

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:N/A:P)
Published
02/21/2022
Created
07/16/2022
Added
07/14/2022
Modified
05/25/2023

Description

Two heap-overflow vulnerabilities exist in openSUSE/libsolv libsolv through 13 Dec 2020 in the decisionmap variable via the resolve_dependencies function at src/solver.c (line 1940 & line 1995), which could cause a remote Denial of Service.

Solution(s)

  • centos-upgrade-foreman-cli
  • centos-upgrade-rubygem-amazing_print
  • centos-upgrade-rubygem-apipie-bindings
  • centos-upgrade-rubygem-clamp
  • centos-upgrade-rubygem-domain_name
  • centos-upgrade-rubygem-fast_gettext
  • centos-upgrade-rubygem-foreman_maintain
  • centos-upgrade-rubygem-hammer_cli
  • centos-upgrade-rubygem-hammer_cli_foreman
  • centos-upgrade-rubygem-hammer_cli_foreman_admin
  • centos-upgrade-rubygem-hammer_cli_foreman_ansible
  • centos-upgrade-rubygem-hammer_cli_foreman_azure_rm
  • centos-upgrade-rubygem-hammer_cli_foreman_bootdisk
  • centos-upgrade-rubygem-hammer_cli_foreman_discovery
  • centos-upgrade-rubygem-hammer_cli_foreman_openscap
  • centos-upgrade-rubygem-hammer_cli_foreman_remote_execution
  • centos-upgrade-rubygem-hammer_cli_foreman_tasks
  • centos-upgrade-rubygem-hammer_cli_foreman_templates
  • centos-upgrade-rubygem-hammer_cli_foreman_virt_who_configure
  • centos-upgrade-rubygem-hammer_cli_foreman_webhooks
  • centos-upgrade-rubygem-hammer_cli_katello
  • centos-upgrade-rubygem-hashie
  • centos-upgrade-rubygem-highline
  • centos-upgrade-rubygem-http-cookie
  • centos-upgrade-rubygem-jwt
  • centos-upgrade-rubygem-little-plugger
  • centos-upgrade-rubygem-locale
  • centos-upgrade-rubygem-logging
  • centos-upgrade-rubygem-mime-types
  • centos-upgrade-rubygem-mime-types-data
  • centos-upgrade-rubygem-multi_json
  • centos-upgrade-rubygem-netrc
  • centos-upgrade-rubygem-oauth
  • centos-upgrade-rubygem-powerbar
  • centos-upgrade-rubygem-rest-client
  • centos-upgrade-rubygem-unf
  • centos-upgrade-rubygem-unf_ext
  • centos-upgrade-rubygem-unf_ext-debuginfo
  • centos-upgrade-rubygem-unf_ext-debugsource
  • centos-upgrade-rubygem-unicode
  • centos-upgrade-rubygem-unicode-debuginfo
  • centos-upgrade-rubygem-unicode-debugsource
  • centos-upgrade-rubygem-unicode-display_width
  • centos-upgrade-satellite-cli
  • centos-upgrade-satellite-clone
  • centos-upgrade-satellite-maintain
  • centos-upgrade-tfm-rubygem-amazing_print
  • centos-upgrade-tfm-rubygem-apipie-bindings
  • centos-upgrade-tfm-rubygem-clamp
  • centos-upgrade-tfm-rubygem-domain_name
  • centos-upgrade-tfm-rubygem-fast_gettext
  • centos-upgrade-tfm-rubygem-hammer_cli
  • centos-upgrade-tfm-rubygem-hammer_cli_foreman
  • centos-upgrade-tfm-rubygem-hammer_cli_foreman_admin
  • centos-upgrade-tfm-rubygem-hammer_cli_foreman_ansible
  • centos-upgrade-tfm-rubygem-hammer_cli_foreman_azure_rm
  • centos-upgrade-tfm-rubygem-hammer_cli_foreman_bootdisk
  • centos-upgrade-tfm-rubygem-hammer_cli_foreman_discovery
  • centos-upgrade-tfm-rubygem-hammer_cli_foreman_openscap
  • centos-upgrade-tfm-rubygem-hammer_cli_foreman_remote_execution
  • centos-upgrade-tfm-rubygem-hammer_cli_foreman_tasks
  • centos-upgrade-tfm-rubygem-hammer_cli_foreman_templates
  • centos-upgrade-tfm-rubygem-hammer_cli_foreman_virt_who_configure
  • centos-upgrade-tfm-rubygem-hammer_cli_foreman_webhooks
  • centos-upgrade-tfm-rubygem-hammer_cli_katello
  • centos-upgrade-tfm-rubygem-hashie
  • centos-upgrade-tfm-rubygem-highline
  • centos-upgrade-tfm-rubygem-http-cookie
  • centos-upgrade-tfm-rubygem-jwt
  • centos-upgrade-tfm-rubygem-little-plugger
  • centos-upgrade-tfm-rubygem-locale
  • centos-upgrade-tfm-rubygem-logging
  • centos-upgrade-tfm-rubygem-mime-types
  • centos-upgrade-tfm-rubygem-mime-types-data
  • centos-upgrade-tfm-rubygem-multi_json
  • centos-upgrade-tfm-rubygem-netrc
  • centos-upgrade-tfm-rubygem-oauth
  • centos-upgrade-tfm-rubygem-powerbar
  • centos-upgrade-tfm-rubygem-rest-client
  • centos-upgrade-tfm-rubygem-unf
  • centos-upgrade-tfm-rubygem-unf_ext
  • centos-upgrade-tfm-rubygem-unf_ext-debuginfo
  • centos-upgrade-tfm-rubygem-unicode
  • centos-upgrade-tfm-rubygem-unicode-debuginfo
  • centos-upgrade-tfm-rubygem-unicode-display_width
  • centos-upgrade-tfm-runtime

With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.

– Scott Cheney, Manager of Information Security, Sierra View Medical Center

;