Alerts This Week
Warning Icon 1 560
Alerts This Week
Warning Icon 1 560

Ubuntu 16.04 ESM: USN-5334-1 Moderate: Man-db Permission Escalation

Ubuntu Large Esm H500
man-db could be made to overwrite file and directory permissions.
=========================================================================Ubuntu Security Notice USN-5334-1
March 17, 2022

man-db vulnerability
=========================================================================
A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 16.04 ESM

Summary:

man-db could be made to overwrite file and directory permissions.

Software Description:
- man-db: on-line manual pager

Details:

It was discovered that man-db incorrectly handled permission changing
operations in its daily cron job, and was therefore affected by a race
condition. An attacker could possibly use this issue to escalate privileges
and execute arbitrary code.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 16.04 ESM:
man-db 2.7.5-1ubuntu0.1~esm1

In general, a standard system update will make all the necessary changes.

References:
https://ubuntu.com/security/notices/USN-5334-1
CVE-2015-1336

Ubuntu 16.04 ESM: USN-5334-1 Moderate: Man-db Permission Escalation

ubuntu
Calendar Grey March 17, 2022
Dist Ubuntu Esm H88
Impacts Ubuntu 16.04 ESM: man-db could permit permission overrides and elevated privileges via a race condition.
man-db could be made to overwrite file and directory permissions.

Summary

Update Instructions

The problem can be corrected by updating your system to the following package versions: Ubuntu 16.04 ESM: man-db 2.7.5-1ubuntu0.1~esm1 In general, a standard system update will make all the necessary changes.

References

https://ubuntu.com/security/notices/USN-5334-1

CVE-2015-1336

Severity
important
Lowest
Low
Medium
High
Critical

March 17, 2022

Package Information

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here