Login
Newsletter
Werbung

Sicherheit: Ausführen beliebiger Kommandos in Linux
Aktuelle Meldungen Distributionen
Name: Ausführen beliebiger Kommandos in Linux
ID: USN-2267-1
Distribution: Ubuntu
Plattformen: Ubuntu 10.04 LTS
Datum: So, 6. Juli 2014, 12:02
Referenzen: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-4699
Applikationen: Linux

Originalnachricht

This is an OpenPGP/MIME signed message (RFC 4880 and 3156)
--===============4093046016507555335==
Content-Type: multipart/signed; micalg=pgp-sha512;
protocol="application/pgp-signature";
boundary="G2Bo05D2J1p4xxtQ4GE89hK9Gob5UKbBn"

This is an OpenPGP/MIME signed message (RFC 4880 and 3156)
--G2Bo05D2J1p4xxtQ4GE89hK9Gob5UKbBn
Content-Type: text/plain; charset=UTF-
Content-Transfer-Encoding: quoted-printable

==========================================================================
Ubuntu Security Notice USN-2267-1
July 05, 2014

linux-ec2 vulnerability
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 10.04 LTS

Summary:

The system could be made to crash or run programs as an administrator.

Software Description:
- linux-ec2: Linux kernel for EC2

Details:

Andy Lutomirski discovered a flaw with the Linux kernel's ptrace syscall on
x86_64 processors. An attacker could exploit this flaw to cause a denial of
service (System Crash) or potential gain administrative privileges.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 10.04 LTS:
linux-image-2.6.32-366-ec2 2.6.32-366.81

After a standard system update you need to reboot your computer to make
all the necessary changes.

References:
http://www.ubuntu.com/usn/usn-2267-1
CVE-2014-4699

Package Information:
https://launchpad.net/ubuntu/+source/linux-ec2/2.6.32-366.81



--G2Bo05D2J1p4xxtQ4GE89hK9Gob5UKbBn
Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: OpenPGP digital signature
Content-Disposition: attachment; filename="signature.asc"

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
Comment: Using GnuPG with Thunderbird - http://www.enigmail.net/
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=WwN0
-----END PGP SIGNATURE-----

--G2Bo05D2J1p4xxtQ4GE89hK9Gob5UKbBn--


--===============4093046016507555335==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

--
ubuntu-security-announce mailing list
ubuntu-security-announce@lists.ubuntu.com
Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-security-announce

--===============4093046016507555335==--
Pro-Linux
Pro-Linux @Facebook
Neue Nachrichten
Werbung