RHSA-2024:1106: Moderate: fwupd security update
Moderate: fwupd security update
Other sources
The fwupd packages provide a service that allows session software to update device firmware.Security Fix(es): fwupd: world readable password in /etc/fwupd/redfish.conf (CVE-2022-3287) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:1106?
The severity of RHSA-2024:1106 is classified as moderate.
How do I fix RHSA-2024:1106?
To fix RHSA-2024:1106, update the fwupd package to version 1.7.4-3.el8_6 or later.
What does RHSA-2024:1106 address?
RHSA-2024:1106 addresses a security vulnerability where a password in /etc/fwupd/redfish.conf is world readable.
Which products are affected by RHSA-2024:1106?
RHSA-2024:1106 affects various Red Hat Enterprise Linux products across different architectures.
What is the CVE associated with RHSA-2024:1106?
The CVE associated with RHSA-2024:1106 is CVE-2022-3287.