{"type":"TYPE_SECURITY","shortCode":"RL","name":"RLSA-2024:1610","synopsis":"Moderate: less security update","severity":"SEVERITY_MODERATE","topic":"An update is available for less.\nThis update affects Rocky Linux 8.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list","description":"The \"less\" utility is a text file browser that resembles \"more\", but allows users to move backwards in the file as well as forwards. Since \"less\" does not read the entire input file at startup, it also starts more quickly than ordinary text editors.\n\nSecurity Fix(es):\n\n* less: missing quoting of shell metacharacters in LESSCLOSE handling (CVE-2022-48624)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.","solution":null,"affectedProducts":["Rocky Linux 8"],"fixes":[{"ticket":"2265081","sourceBy":"Red Hat","sourceLink":"https:\/\/bugzilla.redhat.com\/show_bug.cgi?id=2265081","description":""}],"cves":[{"name":"CVE-2022-48624","sourceBy":"MITRE","sourceLink":"https:\/\/cve.mitre.org\/cgi-bin\/cvename.cgi?name=CVE-2022-48624","cvss3ScoringVector":"UNKNOWN","cvss3BaseScore":"UNKNOWN","cwe":"UNKNOWN"}],"references":[],"publishedAt":"2024-04-05T14:55:53.600745Z","rpms":{"Rocky Linux 8":{"nvras":["less-0:530-2.el8_9.aarch64.rpm","less-0:530-2.el8_9.src.rpm","less-0:530-2.el8_9.x86_64.rpm","less-debuginfo-0:530-2.el8_9.aarch64.rpm","less-debuginfo-0:530-2.el8_9.x86_64.rpm","less-debugsource-0:530-2.el8_9.aarch64.rpm","less-debugsource-0:530-2.el8_9.x86_64.rpm"]}},"rebootSuggested":false,"buildReferences":[]}

Rocky Linux: RLSA-2024:1610 less security update

April 5, 2024
An update is available for less. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list

Summary

An update is available for less. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


The "less" utility is a text file browser that resembles "more", but allows users to move backwards in the file as well as forwards. Since "less" does not read the entire input file at startup, it also starts more quickly than ordinary text editors. Security Fix(es): * less: missing quoting of shell metacharacters in LESSCLOSE handling (CVE-2022-48624) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

RPMs

less-0:530-2.el8_9.aarch64.rpm

less-0:530-2.el8_9.src.rpm

less-0:530-2.el8_9.x86_64.rpm

less-debuginfo-0:530-2.el8_9.aarch64.rpm

less-debuginfo-0:530-2.el8_9.x86_64.rpm

less-debugsource-0:530-2.el8_9.aarch64.rpm

less-debugsource-0:530-2.el8_9.x86_64.rpm

References

No References

CVEs

https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-48624

Severity
Name: RLSA-2024:1610
Affected Products: Rocky Linux 8

Fixes

https://bugzilla.redhat.com/show_bug.cgi?id=2265081


Related News