util-linux could be made to run programs as an administrator.
Software Description:
- util-linux: miscellaneous system utilities
Details:
It was discovered that the util-linux su utility did not drop capabilities
when being used with the --pty option. While not a security issue by
itself, a local attacker could possibly use the su tool to exploit
vulnerabilities in other applications.
The problem can be corrected by updating your system to the following
package versions:
Ubuntu 25.10
util-linux 2.41-4ubuntu4.2
Ubuntu 24.04 LTS
util-linux 2.39.3-9ubuntu6.5
Ubuntu 22.04 LTS
util-linux 2.37.2-4ubuntu3.5
Ubuntu 20.04 LTS
util-linux 2.34-0.1ubuntu9.6+esm1
Available with Ubuntu Pro
In general, a standard system update will make all the necessary changes.https://ubuntu.com/security/notices/USN-8091-1
https://launchpad.net/bugs/2143850
Get the latest Linux and open source security news straight to your inbox.