Alerts This Week
Warning Icon 1 677
Alerts This Week
Warning Icon 1 677

Gentoo: 200308-03.1 Moderate: Insecure Symlink in VMware

gentoo
Calendar Grey September 1, 2003
Dist Gentoo Esm H88
Debian alerts users to insecure directory in docker; recommended to patch to mitigate risk of local attacks.
The previous GLSA 200308-03 was wrong when it stated thatvmware-workstation-4.0.1-5289 would fix the problems described in theadvisory.

Summary


- - ---------------------------------------------------------------------
GENTOO LINUX SECURITY ANNOUNCEMENT 200308-03.1
- - ---------------------------------------------------------------------

- - ---------------------------------------------------------------------
The previous GLSA 200308-03 was wrong when it stated that vmware-workstation-4.0.1-5289 would fix the problems described in the advisory.
SOLUTION
It is recommended that all Gentoo Linux users who are running app-emulation/vmware-workstation-4.x upgrade to vmware-workstation-4.0.1-5289 as follows
emerge sync emerge \=app-emulation/vmware-workstation/vmware-workstation-4.0.2.5592 emerge clean
- - --------------------------------------------------------------------- aliz@gentoo.org - GnuPG key is available at - - ---------------------------------------------------------------------

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

� � � � � PACKAGE : vmware
� � � � � SUMMARY : insecure symbolic links
� � � � � � �DATE : 2003-09-01 13:42 UTC
� � � � � EXPLOIT : local
VERSIONS AFFECTED : =vmware-workstation-4.0.2.5592
� � � � � � � CVE :

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Related News

Your message here