Disk Manager
Go to file
RHEL Packaging Agent 2377271ea0 Fix CVE-2026-7867: as-user caller identity handling in udisks2
Backport fix for CVE-2026-7867 to udisks2-2.11.1. The patch
addresses improper caller identity handling when the 'as-user'
option is used in filesystem mount/unmount operations. Four
upstream commits are cherry-picked: separating real caller
identity from the as-user target, using real caller identity
for mount authorization and unmount checks, and adding an
authorization check for the as-user option.

CVE: CVE-2026-7867
Upstream patches:
 - 39891417ff.patch
 - fef8dbc465.patch
 - 5d14b3846c.patch
 - a76016c118.patch
Resolves: RHEL-173438

This commit was backported by Ymir, a Red Hat Enterprise Linux software maintenance AI agent.

Assisted-by: Ymir
2026-08-13 14:41:55 +00:00
.fmf Add fmf gating plans 2024-05-14 13:28:04 +00:00
plans * Thu Nov 06 2025 Tomas Bzatek <tbzatek@redhat.com> - 2.11.0-1 2025-11-07 15:59:37 +01:00
.gitignore * Mon Mar 09 2026 Tomas Bzatek <tbzatek@redhat.com> - 2.11.1-1 2026-03-09 14:54:15 +01:00
ci.fmf Add fmf gating plans 2024-05-14 13:28:04 +00:00
gating.yaml Add fmf gating plans 2024-05-14 13:28:04 +00:00
sources * Mon Mar 09 2026 Tomas Bzatek <tbzatek@redhat.com> - 2.11.1-1 2026-03-09 14:54:15 +01:00
udisks2-2.11.1-CVE-2026-7867.patch Fix CVE-2026-7867: as-user caller identity handling in udisks2 2026-08-13 14:41:55 +00:00
udisks2.spec Fix CVE-2026-7867: as-user caller identity handling in udisks2 2026-08-13 14:41:55 +00:00
udisks-2.11.90-tests_module_ENOENT.patch * Mon Mar 09 2026 Tomas Bzatek <tbzatek@redhat.com> - 2.11.1-1 2026-03-09 14:54:15 +01:00
udisks-2.11.90-tests_sr_mod.patch * Mon Mar 09 2026 Tomas Bzatek <tbzatek@redhat.com> - 2.11.1-1 2026-03-09 14:54:15 +01:00
udisks-2.11.90-udisksdaemonutil_missing_NULL_terminator_in_resolve_links.patch * Mon Mar 09 2026 Tomas Bzatek <tbzatek@redhat.com> - 2.11.1-1 2026-03-09 14:54:15 +01:00
udisks-2.11.90-udisksmodulemanager_Silence_warnings_on_module_not_found.patch * Mon Mar 09 2026 Tomas Bzatek <tbzatek@redhat.com> - 2.11.1-1 2026-03-09 14:54:15 +01:00