{"id":1586,"date":"2017-08-04T10:58:57","date_gmt":"2017-08-04T14:58:57","guid":{"rendered":"https:\/\/easy-admin.ca\/?p=1586"},"modified":"2017-08-04T10:58:57","modified_gmt":"2017-08-04T14:58:57","slug":"centos-7-security-update-patches-five-critical-vulnerabilities","status":"publish","type":"post","link":"https:\/\/easy-admin.ca\/index.php\/2017\/08\/04\/centos-7-security-update-patches-five-critical-vulnerabilities\/","title":{"rendered":"CentOS 7 security update patches five critical vulnerabilities"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-1587\" src=\"https:\/\/easy-admin.ca\/wp-content\/uploads\/2017\/08\/CentOS-img.jpg\" alt=\"\" width=\"800\" height=\"525\" srcset=\"https:\/\/easy-admin.ca\/wp-content\/uploads\/2017\/08\/CentOS-img.jpg 800w, https:\/\/easy-admin.ca\/wp-content\/uploads\/2017\/08\/CentOS-img-300x197.jpg 300w, https:\/\/easy-admin.ca\/wp-content\/uploads\/2017\/08\/CentOS-img-768x504.jpg 768w\" sizes=\"auto, (max-width: 800px) 100vw, 800px\" \/><\/p>\n<p>CentOS has received a new update that fixes important kernel vulnerabilities. The update has been specifically designed for systems running on CentOS 7.<\/p>\n<p>Johnny Hughes, the maintainer of CentOS, has published a security advisory detailing the five vulnerabilities addressed by the latest update. Hughes highlights that the update fixes a remote code execution vulnerability (CVE-2017-7477). The vulnerability could allow remote attackers escalate privileges by allocating heap memory in Linux kernel to build the scatter gather list from fragment list in the socket buffer.<\/p>\n<p>Another remote code execution vulnerability (CVE-2017-7645) has been patched in the update. The vulnerability affected NFS2\/3 RPC client that could let users send long arguments to the NFS server and let an attacker crash the kernel.<\/p>\n<p>Third important vulnerability (CVE-2017-7895) patched in this security release was discovered in NFSv2 and NFSv3 server implementations. Another vulnerability (CVE-2017-2583) was found in virtual machine support in the kernel while the last important security flaw (CVE-2017-6214) was found in the kernel\u2019s packet handling with URG flags. A remote attacker could force the kernel to enter an infinite loop using this vulnerability.<\/p>\n<p>The CentOS maintainer has <a href=\"https:\/\/rhn.redhat.com\/errata\/RHSA-2017-1615.html\" target=\"_blank\" rel=\"noopener\">pushed<\/a> the update kernel-3.10.0-514.26.1.el7 in the stable repository of the OS. All the CentOS 7 users are recommended to update their systems immediately.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>CentOS has received a new update that fixes important kernel vulnerabilities. The update has been specifically designed for systems running on CentOS 7. Johnny Hughes, the maintainer of CentOS, has published a security advisory detailing the five vulnerabilities addressed by the latest update. Hughes highlights that the update fixes a remote code execution vulnerability (CVE-2017-7477). &hellip; <a href=\"https:\/\/easy-admin.ca\/index.php\/2017\/08\/04\/centos-7-security-update-patches-five-critical-vulnerabilities\/\" class=\"more-link\">Continue reading <span class=\"screen-reader-text\">CentOS 7 security update patches five critical vulnerabilities<\/span><\/a><\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"slim_seo":{"title":"CentOS 7 security update patches five critical vulnerabilities - HP Server","description":"CentOS has received a new update that fixes important kernel vulnerabilities. The update has been specifically designed for systems running on CentOS 7. Johnny"},"footnotes":""},"categories":[1],"tags":[],"class_list":["post-1586","post","type-post","status-publish","format-standard","hentry","category-general"],"_links":{"self":[{"href":"https:\/\/easy-admin.ca\/index.php\/wp-json\/wp\/v2\/posts\/1586","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/easy-admin.ca\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/easy-admin.ca\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/easy-admin.ca\/index.php\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/easy-admin.ca\/index.php\/wp-json\/wp\/v2\/comments?post=1586"}],"version-history":[{"count":0,"href":"https:\/\/easy-admin.ca\/index.php\/wp-json\/wp\/v2\/posts\/1586\/revisions"}],"wp:attachment":[{"href":"https:\/\/easy-admin.ca\/index.php\/wp-json\/wp\/v2\/media?parent=1586"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/easy-admin.ca\/index.php\/wp-json\/wp\/v2\/categories?post=1586"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/easy-admin.ca\/index.php\/wp-json\/wp\/v2\/tags?post=1586"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}