Alerts This Week
Warning Icon 1 758
Alerts This Week
Warning Icon 1 758

Debian: DSA-1450-1 Critical: Local Escalation Risk in Util-Linux

debian
Calendar Grey January 5, 2008
Debian Logo
Latest security notice released for Debian concerning util-linux addressing local privilege escalation vulnerabilities. Update suggested.
It was discovered that util-linux, Miscellaneous system utilities, didn't drop privileged users and groups in the correct order in the mount and umount commands

Summary


For the stable distribution (etch), this problem has been fixed in version
2.12r-19etch1.

For the old stable distribution (sarge), this problem has been fixed in
version 2.12p-4sarge2.

We recommend that you upgrade your util-linux package.


Upgrade instructions
- --------------------wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.

If you are using the apt-get package manager, use the line for
sources.list as given below:

apt-get update
will update the internal database
apt-get upgrade
will install corrected packages

You may use an automated update by adding the resources from the
footer to the proper configuration.


Debian GNU/Linux 3.1 alias sarge

Size/MD5 checksum: 712 c16f823e59f4e6e844abb42a5d0d74c5
Size/MD5 checksum: 74396 9e13a2463ef33b2bd1596072742f8da8
Size/MD5 checksum: 2001658 d47e820f6880c21c8b4c0c7e8a7376cc

Architecture independent packages:

Size/MD5 checksu...

Read the Full Advisory

Severity
critical
Lowest
Low
Medium
High
Critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here