Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 461
Alerts This Week
Warning Icon 1 461

Debian: DSA-3079-1 Moderate: PPP Local Privilege Escalation Risk

debian
Calendar Grey November 29, 2014
Scroller Debian
A severe buffer overflow flaw in netutils could enable unauthorized users to escalate to administrative access. Immediate patching advisable.
A vulnerability was discovered in ppp, an implementation of the Point-to-Point Protocol: an integer overflow in the routine responsible for parsing user-supplied options potentiall...

Summary

For the stable distribution (wheezy), this problem has been fixed in
version 2.4.5-5.1+deb7u1.

For the upcoming stable distribution (jessie) and unstable
distribution (sid), this problem has been fixed in version 2.4.6-3.

We recommend that you upgrade your ppp packages.

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Package: ppp
CVE ID: CVE-2014-3158

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.