|
From: Kurt Lieber <klieber@gentoo.org>
Date: Thu May 13 2004 - 12:12:51 EDT
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Severity: Normal
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Synopsis
Utempter contains a vulnerability that may allow local users to
Background
Utempter is an application that allows non-privileged apps to write
Affected packages
-------------------------------------------------------------------
Description
Utempter contains a vulnerability that may allow local users to
Impact
This vulnerability may allow arbitrary files to be overwritten with
Workaround
There is no known workaround at this time. All users are advised to
Resolution
All users of utempter should upgrade to the latest stable version:
# emerge sync
# emerge -pv ">=sys-apps/utempter-0.5.5.4"
References
[ 1 ] CAN-2004-0233
Availability
This GLSA and any updates to it are available for viewing at
http://security.gentoo.org/glsa/glsa-200405-05.xml
Concerns?
Security is a primary focus of Gentoo Linux and ensuring the
License
Copyright 2004 Gentoo Technologies, Inc; referenced text
The contents of this document are licensed under the
http://creativecommons.org/licenses/by-sa/1.0
_______________________________________________
This archive was generated by hypermail 2.1.8 : Thu May 13 2004 - 15:06:50 EDT |
Custom Search
|