Alerts This Week
Warning Icon 1 664
Alerts This Week
Warning Icon 1 664

Debian: 2020-0010 Moderate: Local DoS Vulnerability in mc cons.saver

debian
Calendar Grey November 25, 2000
Debian Logo
Debian security bulletin concerning mc package due to a potential local denial of service through cons.saver. Complete details and necessary fixes included.
cons.saver does not check if it is started with a valid stdout, potentially causing a denial of service.

Summary


Package : mc
Problem type : local DoS
Debian-specific: no

Maurycy Prodeus found a problem in cons.saver, a screensaver for
the console that is included in the mc package. cons.saver does not
check if it is started with a valid stdout, which combined with a
bug in its check to see if its argument is a tty (it forgot to
close the file-descriptor after opening the supposed tty) causes it
to write a NUL character to the file given as its parameter.

This has been fixed in version 4.5.42-11.

wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.


Debian GNU/Linux 2.2 alias potato

Potato was released for alpha, arm, i386, m68k, powerpc and sparc.

Source archives:

MD5 checksum: 98428eb4284349e15b21b2cd36fbf55d

MD5 checksum: f6bfd1c1c458247e49ec1f73a8da5a47

MD5 checksum: 0d2e63dd4b0c0a3d4d6c5933187ba222

Alpha architecture:

MD5 checksum: 778a5121ae88e6dd5921ce65159a8f62

MD5 checksum: b33dab94b...

Read the Full Advisory

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here