[CLSA-2025:1761326171] Fix CVE(s): CVE-2019-18276
Type:
security
Severity:
Important
Release date:
2025-10-24 17:16:15 UTC
Description:
* SECURITY UPDATE: privilege escalation vulnerability in privileged mode - debian/patches/CVE-2019-18276.patch: fix setuid/setgid handling when bash is running in privileged mode, use setresuid/setresgid over setuid/setgid when available - CVE-2019-18276
Updated packages:
  • bash_5.0-4+tuxcare.els1_amd64.deb
    sha:04afc0d6dd679af3f9d23177f3a0ac92eccaff24
  • bash-builtins_5.0-4+tuxcare.els1_amd64.deb
    sha:d1eb3f548e5b0930a54571f75c2f90afa15202f5
  • bash-doc_5.0-4+tuxcare.els1_all.deb
    sha:3a09b35a485f8f3c6de1a1c31874e0f650ce89b4
  • bash-static_5.0-4+tuxcare.els1_amd64.deb
    sha:29641db28dc6d03d6520ab31d44bef645edff7d4
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.