Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
GnuTLS could be made to crash if it received specially crafted network
traffic.
Software Description:
- gnutls26: GNU TLS library
Details:
It was discovered that GnuTLS incorrectly handled certain padding bytes. A
remote attacker could use this flaw to cause an application using GnuTLS to
crash, leading to a denial of service.
The problem can be corrected by updating your system to the following package versions: Ubuntu 13.04: libgnutls26 2.12.23-1ubuntu1.1 Ubuntu 12.10: libgnutls26 2.12.14-5ubuntu4.3 Ubuntu 12.04 LTS: libgnutls26 2.12.14-5ubuntu3.4 Ubuntu 10.04 LTS: libgnutls26 2.8.5-2ubuntu0.4 In general, a standard system update will make all the necessary changes.
https://ubuntu.com/security/notices/USN-1843-1
CVE-2013-2116
Get the latest Linux and open source security news straight to your inbox.