=========================================================================Ubuntu Security Notice USN-5447-1
May 26, 2022

logrotate vulnerability
=========================================================================
A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 22.04 LTS
- Ubuntu 21.10

Summary:

logrotate could be made to stop processing log files.

Software Description:
- logrotate: Log rotation utility

Details:

It was discovered that logrotate incorrectly handled the state file. A
local attacker could possibly use this issue to keep a lock on the state
file and cause logrotate to stop working, leading to a denial of service.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 22.04 LTS:
  logrotate                       3.19.0-1ubuntu1.1

Ubuntu 21.10:
  logrotate                       3.18.0-2ubuntu1.1

In general, a standard system update will make all the necessary changes.

References:
  https://ubuntu.com/security/notices/USN-5447-1
  CVE-2022-1348

Package Information:
  https://launchpad.net/ubuntu/+source/logrotate/3.19.0-1ubuntu1.1
  https://launchpad.net/ubuntu/+source/logrotate/3.18.0-2ubuntu1.1

Ubuntu 5447-1: logrotate vulnerability

May 26, 2022
logrotate could be made to stop processing log files.

Summary

Update Instructions

The problem can be corrected by updating your system to the following package versions: Ubuntu 22.04 LTS: logrotate 3.19.0-1ubuntu1.1 Ubuntu 21.10: logrotate 3.18.0-2ubuntu1.1 In general, a standard system update will make all the necessary changes.

References

https://ubuntu.com/security/notices/USN-5447-1

CVE-2022-1348

Severity
May 26, 2022

Package Information

https://launchpad.net/ubuntu/+source/logrotate/3.19.0-1ubuntu1.1 https://launchpad.net/ubuntu/+source/logrotate/3.18.0-2ubuntu1.1

Related News