Critical Fedora 39 Cockpit Security Advisory Addresses Privilege Escalation
Summary
The Cockpit Web Console enables users to administer GNU/Linux servers using a
web browser.
It offers network configuration, log inspection, diagnostic reports, SELinux
troubleshooting, interactive command-line sessions, and more.
Update Information:
Automatic update for cockpit-320-1.fc39.
Changelog for cockpit
* Wed Jul 03 2024 Packit
Change Log
* Wed Jul 3 2024 Packit
References
[ 1 ] Bug #2290859 - [CVE-2024-6126] authenticated user can kill any process when enabling pam_env's user_readenv option
https://bugzilla.redhat.com/show_bug.cgi?id=2290859
Update Instructions
This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-9eb3674b7c' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label