Alerts This Week
Warning Icon 1 560
Alerts This Week
Warning Icon 1 560

Debian: DSA-2472-1 Critical: Grid Engine Privilege Escalation Issue

debian
Calendar Grey May 16, 2012
Debian Logo
Ubuntu security patch for Grid Engine addresses a vulnerability allowing privilege escalation during user task executions.
Dave Love discovered that users who are allowed to submit jobs to a Grid Engine installation can escalate their privileges to root because the environment is not properly sanitized...

Summary

Dave Love discovered that users who are allowed to submit jobs to a
Grid Engine installation can escalate their privileges to root because
the environment is not properly sanitized before creating processes.

For the stable distribution (squeeze), this problem has been fixed in
version 6.2u5-1squeeze1.

For the unstable distribution (sid), this problem has been fixed in
version 6.2u5-6.

We recommend that you upgrade your gridengine packages.

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: http://www.debian.org/security/



Severity
critical
Lowest
Low
Medium
High
Critical

Package: gridengine
CVE ID: CVE-2012-0208

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here