drucken bookmarks versenden konfigurieren admin pdf Sicherheit: Preisgabe von Informationen in Audacity
| Name: |
Preisgabe von Informationen in Audacity |
|
| ID: |
USN-7211-1 |
|
| Distribution: |
Ubuntu |
|
| Plattformen: |
Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, Ubuntu 20.04 LTS |
|
| Datum: |
Do, 16. Januar 2025, 22:38 |
|
| Referenzen: |
https://www.cve.org/CVERecord?id=CVE-2020-11867 |
|
| Applikationen: |
Audacity |
|
Originalnachricht |
This is an OpenPGP/MIME signed message (RFC 4880 and 3156) --===============2109825700253641485== Content-Language: en-US Content-Type: multipart/signed; micalg=pgp-sha256; protocol="application/pgp-signature"; boundary="------------BsfL0jq3cRbgFhMMewnFhst0"
This is an OpenPGP/MIME signed message (RFC 4880 and 3156) --------------BsfL0jq3cRbgFhMMewnFhst0 Content-Type: multipart/mixed; boundary="------------jAfG1Y00amyqQ2bREz8Ifz3V"; protected-headers="v1" From: Hlib Korzhynskyy <hlib.korzhynskyy@canonical.com> Reply-To: security@ubuntu.com To: ubuntu-security-announce@lists.ubuntu.com Message-ID: <f56390a8-a95f-4296-935e-cb0d82197bb2@canonical.com> Subject: [USN-7211-1] Audacity vulnerability
--------------jAfG1Y00amyqQ2bREz8Ifz3V Content-Type: text/plain; charset=UTF-8; format=flowed Content-Transfer-Encoding: base64
========================================================================== Ubuntu Security Notice USN-7211-1 January 16, 2025
audacity vulnerability ==========================================================================
A security issue affects these releases of Ubuntu and its derivatives:
- Ubuntu 20.04 LTS - Ubuntu 18.04 LTS - Ubuntu 16.04 LTS
Summary:
Audacity could expose sensitive information.
Software Description: - audacity: fast, cross-platform audio editor
Details:
Mike Salvatore discovered that Audacity incorrectly handled default permissions of temporary files created by the application. An attacker could possibly use this issue to obtain sensitive information.
Update instructions:
The problem can be corrected by updating your system to the following package versions:
Ubuntu 20.04 LTS audacity 2.3.3-1ubuntu0.1~esm1 Available with Ubuntu Pro
Ubuntu 18.04 LTS audacity 2.2.1-1ubuntu0.1~esm1 Available with Ubuntu Pro
Ubuntu 16.04 LTS audacity 2.1.2-1ubuntu0.1~esm1 Available with Ubuntu Pro
In general, a standard system update will make all the necessary changes.
References: https://ubuntu.com/security/notices/USN-7211-1 CVE-2020-11867
--------------jAfG1Y00amyqQ2bREz8Ifz3V--
--------------BsfL0jq3cRbgFhMMewnFhst0 Content-Type: application/pgp-signature; name="OpenPGP_signature.asc" Content-Description: OpenPGP digital signature Content-Disposition: attachment; filename="OpenPGP_signature.asc"
-----BEGIN PGP SIGNATURE-----
wsF5BAABCAAjFiEELOLXZEFYQHcSWEHiyfW2m9Ldu6sFAmeJHscFAwAAAAAACgkQyfW2m9Ldu6vB KQ/8Cm4MYjoFmLwJzkdM8UKfAgsVF/SkH4RHua8RHhMyeV3pwelA8BP6MxFlcupV7mauzQMWqggN H3Egq5Fz3DPNEiXSXPz65YDMp8vC0aSRnk8xWwDhyRln1RYSYYE9kMxBmNWPmZHJEt1KRJEB0rgg OtUMLV+M6hiNJv2MOK6x8Wxq1vPtCadiQhFS5AFQtzNNaPNJYKcEIpFuYRBXUXJZXd06V7QtV+t7 aSvbNYYqf622ChDD7zdLadSQRjIpFk6j8Z2o6pECymK3JOcCOeytt/IU4T5u3ZLN/ik5OGZpuHrR aUfZAsCQ4x9WLPvZ8Lj9B14nA8c0oICgXUEFRiwkdDetZI2MP6pe3KHcVnBbACnqNvsGPRmraAwF 3WkPbrdOKyskVM5d+/hwdP2CWCBTd8kZ8OWI3bPRYGH30Qq87uuhoKCrQdIiswyh4P+AhgXr3ga8 +0HMLL1VjvB8xGbA/Ss6y4sJdy0WyN76pWHCkPQh/cRaIECnEFgT+flseYjrzQwGY2kaRbsOrWcX 3NONfa440pxjgN5Jtrd2Uy2/3SaSDrdSqApGeoq4cFVP9/7tw0B2X2hJ9xE/Ydi4zssaSr33UrRu u3Q78Tt38CmZZbPoM/XmoifGzDXGqj6HoKA57TKYx3linP0Ow3CWSxpPqONfg/MEEgihthmqOq3m RV4= =Zbj8 -----END PGP SIGNATURE-----
--------------BsfL0jq3cRbgFhMMewnFhst0--
--===============2109825700253641485== Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: base64 Content-Disposition: inline
Cg==
--===============2109825700253641485==--
|
|
|
|