Oval Definition:oval:com.redhat.rhsa:def:20150301
Revision Date:2015-03-05Version:641
Title:RHSA-2015:0301: hivex security, bug fix, and enhancement update (Moderate)
Description:Hive files are undocumented binary files that Windows uses to store the Windows Registry on disk. Hivex is a library that can read and write to these files.

  • It was found that hivex attempted to read beyond its allocated buffer when reading a hive file with a very small size or with a truncated or improperly formatted content. An attacker able to supply a specially crafted hive file to an application using the hivex library could possibly use this flaw to execute arbitrary code with the privileges of the user running that application. (CVE-2014-9273)

    Red Hat would like to thank Mahmoud Al-Qudsi of NeoSmart Technologies for reporting this issue.

  • The hivex package has been upgraded to upstream version 1.3.10, which provides a number of bug fixes and enhancements over the previous version. (BZ#1023978)

    This update also fixes the following bugs:

  • Due to an error in the hivex_value_data_cell_offset() function, the hivex utility could, in some cases, print an "Argument list is too long" message and terminate unexpectedly when processing hive files from the Windows Registry. This update fixes the underlying code and hivex now processes hive files as expected. (BZ#1145056)

  • A typographical error in the Win::Hivex.3pm manual page has been corrected. (BZ#1099286)

    Users of hivex are advised to upgrade to these updated packages, which correct these issues and adds these enhancements.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2014-9273
    RHSA-2015:0301
    RHSA-2015:0301-00
    RHSA-2015:0301-02
    Platform(s):Red Hat Enterprise Linux 7
    Red Hat Enterprise Linux 7 (please do not use for >= RHEL-7.5)
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 7 is installed
  • AND
  • hivex is earlier than 0:1.3.10-5.7.el7
  • AND hivex is signed with Red Hat redhatrelease2 key
  • hivex-devel is earlier than 0:1.3.10-5.7.el7
  • AND hivex-devel is signed with Red Hat redhatrelease2 key
  • ocaml-hivex is earlier than 0:1.3.10-5.7.el7
  • AND ocaml-hivex is signed with Red Hat redhatrelease2 key
  • ocaml-hivex-devel is earlier than 0:1.3.10-5.7.el7
  • AND ocaml-hivex-devel is signed with Red Hat redhatrelease2 key
  • perl-hivex is earlier than 0:1.3.10-5.7.el7
  • AND perl-hivex is signed with Red Hat redhatrelease2 key
  • python-hivex is earlier than 0:1.3.10-5.7.el7
  • AND python-hivex is signed with Red Hat redhatrelease2 key
  • ruby-hivex is earlier than 0:1.3.10-5.7.el7
  • AND ruby-hivex is signed with Red Hat redhatrelease2 key
  • Definition Synopsis
  • Release Information
  • Red Hat Enterprise Linux 7 Client is installed
  • OR Red Hat Enterprise Linux 7 Server is installed
  • OR Red Hat Enterprise Linux 7 Workstation is installed
  • OR Red Hat Enterprise Linux 7 ComputeNode is installed
  • AND Package Information
  • perl-hivex is earlier than 0:1.3.10-5.7.el7
  • AND perl-hivex is signed with Red Hat redhatrelease2 key
  • OR
  • hivex is earlier than 0:1.3.10-5.7.el7
  • AND hivex is signed with Red Hat redhatrelease2 key
  • OR
  • ruby-hivex is earlier than 0:1.3.10-5.7.el7
  • AND ruby-hivex is signed with Red Hat redhatrelease2 key
  • OR
  • ocaml-hivex is earlier than 0:1.3.10-5.7.el7
  • AND ocaml-hivex is signed with Red Hat redhatrelease2 key
  • OR
  • hivex-devel is earlier than 0:1.3.10-5.7.el7
  • AND hivex-devel is signed with Red Hat redhatrelease2 key
  • OR
  • ocaml-hivex-devel is earlier than 0:1.3.10-5.7.el7
  • AND ocaml-hivex-devel is signed with Red Hat redhatrelease2 key
  • OR
  • python-hivex is earlier than 0:1.3.10-5.7.el7
  • AND python-hivex is signed with Red Hat redhatrelease2 key
  • BACK