Login


 
Newsletter
Werbung
Sicherheit: Mangelnde Rechteprüfung in Linux
Aktuelle Meldungen Distributionen
Name: Mangelnde Rechteprüfung in Linux
ID: USN-1739-1
Distribution: Ubuntu
Plattformen: Ubuntu 11.10
Datum: Fr, 22. Februar 2013, 09:54
Referenzen: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-0871

Originalnachricht

This is an OpenPGP/MIME signed message (RFC 2440 and 3156)
--===============5585121616857073337==
Content-Type: multipart/signed; micalg=pgp-sha512;
protocol="application/pgp-signature";
boundary="------------enig9A97E6F84C4051A252EF0D1C"

This is an OpenPGP/MIME signed message (RFC 2440 and 3156)
--------------enig9A97E6F84C4051A252EF0D1C
Content-Type: multipart/mixed;
boundary="------------010003020601050803030108"

This is a multi-part message in MIME format.
--------------010003020601050803030108
Content-Type: text/plain; charset=ISO-8859-
Content-Transfer-Encoding: quoted-printable

==========================================================================
Ubuntu Security Notice USN-1739-1
February 22, 2013

linux vulnerability
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 11.10

Summary:

The system could be made to run programs as an administrator.

Software Description:
- linux: Linux kernel

Details:

Suleiman Souhlal, Salman Qazi, Aaron Durbin and Michael Davidson discovered
a race condition in the Linux kernel's ptrace syscall. An unprivileged
local attacker could exploit this flaw to run programs as an administrator.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 11.10:
linux-image-3.0.0-31-generic 3.0.0-31.49
linux-image-3.0.0-31-generic-pae 3.0.0-31.49
linux-image-3.0.0-31-omap 3.0.0-31.49
linux-image-3.0.0-31-powerpc 3.0.0-31.49
linux-image-3.0.0-31-powerpc-smp 3.0.0-31.49
linux-image-3.0.0-31-powerpc64-smp 3.0.0-31.49
linux-image-3.0.0-31-server 3.0.0-31.49
linux-image-3.0.0-31-virtual 3.0.0-31.49

After a standard system update you need to reboot your computer to make
all the necessary changes.

References:
http://www.ubuntu.com/usn/usn-1739-1
CVE-2013-0871

Package Information:
https://launchpad.net/ubuntu/+source/linux/3.0.0-31.49


--------------010003020601050803030108
Content-Type: text/plain; charset=UTF-8;
name="Attached Message Part"
Content-Transfer-Encoding: base64
Content-Disposition: attachment;
filename="Attached Message Part"


--------------010003020601050803030108--

--------------enig9A97E6F84C4051A252EF0D1C
Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: OpenPGP digital signature
Content-Disposition: attachment; filename="signature.asc"

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)
Comment: Using GnuPG with undefined - http://www.enigmail.net/
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=8z7M
-----END PGP SIGNATURE-----

--------------enig9A97E6F84C4051A252EF0D1C--


--===============5585121616857073337==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

--
ubuntu-security-announce mailing list
ubuntu-security-announce@lists.ubuntu.com
Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-security-announce

--===============5585121616857073337==--
Pro-Linux
Frohe Ostern
Neue Nachrichten
Werbung