Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 492
Alerts This Week
Warning Icon 1 492

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 5 articles for you...
87

Debian: DSA-2362-1 Critical: Acpid Denial of Service and Escalation

Multiple vulnerabilities were found in the acpid, the Advanced Configuration and Power Interface event daemon: CVE-2011-1159 . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - ------------------------------------------------------------------------- Debian Security Advisory DSA-2362-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Moritz Muehlenhoff December 10, 2011 http://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : acpid Vulnerability : several Problem type : remote Debian-specific: partly CVE ID : CVE-2011-1159 CVE-2011-2777 CVE-2011-4578 Multiple vulnerabilities were found in the acpid, the Advanced Configuration and Power Interface event daemon: CVE-2011-1159 Vasiliy Kulikov of OpenWall discovered that the socket handling is vulnerable to denial of service. CVE-2011-2777 Oliver-Tobias Ripka discovered that incorrect process handling in the Debian-specific powerbtn.sh script could lead to local privilege escalation. This issue doesn't affect oldstable. The script is only shipped as an example in /usr/share/doc/acpid/examples. See /usr/share/doc/acpid/README.Debian for details. CVE-2011-4578 Helmut Grohne and Michael Biebl discovered that acpid sets a umask of 0 when executing scripts, which could result in local privilege escalation. For the oldstable distribution (lenny), this problem has been fixed in version 1.0.8-1lenny4. For the stable distribution (squeeze), this problem has been fixed in version 1:2.0.7-1squeeze3. For the unstable distribution (sid), this problem will be fixed soon. We recommend that you upgrade your acpid packages. Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: http://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . The Debian security advisoryDSA-2362-2 discusses flaws found in acpid which could lead to Denial of Service (DoS) and raise concerns over privilege escalation vulnerabilities.. Debian Acpid Security, Security Updates, Remote Threats. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Dec 10, 2011 Critical Debian
172

Ubuntu 11.10: USN-1296-1 Critical: acpid Local Code Execution

Several security issues were fixed in acpid.. =========================================================================Ubuntu Security Notice USN-1296-1 December 08, 2011 acpid vulnerabilities ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 11.10 - Ubuntu 11.04 - Ubuntu 10.10 - Ubuntu 10.04 LTS Summary: Several security issues were fixed in acpid. Software Description: - acpid: Advanced Configuration and Power Interface daemon Details: Oliver-Tobias Ripka discovered that an ACPI script incorrectly handled power button events. A local attacker could use this to execute arbitrary code, and possibly escalate privileges. (CVE-2011-2777) Helmut Grohne and Michael Biebl discovered that ACPI scripts were executed with a permissive file mode creation mask (umask). A local attacker could read files and modify directories created by ACPI scripts that did not set a strict umask. (CVE-2011-4578) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 11.10: acpid 1:2.0.10-1ubuntu2.3 Ubuntu 11.04: acpid 1:2.0.7-1ubuntu2.4 Ubuntu 10.10: acpid 1.0.10-5ubuntu4.4 Ubuntu 10.04 LTS: acpid 1.0.10-5ubuntu2.5 In general, a standard system update will make all the necessary changes. References: CVE-2011-2777, CVE-2011-4578 Package Information: https://launchpad.net/ubuntu/+source/acpid/1:2.0.10-1ubuntu2.3 https://launchpad.net/ubuntu/+source/acpid/1:2.0.7-1ubuntu2.4 https://launchpad.net/ubuntu/+source/acpid/1.0.10-5ubuntu4.4 https://launchpad.net/ubuntu/+source/acpid/1.0.10-5ubuntu2.5 . Recent patches address vital acpid vulnerabilities impacting various Ubuntu distributions, mitigating risks of possible local code execution.. Ubuntu Updates, acpid Security, Local Code Execution, Power Management Vulnerabilities. . Severity:Critical. LinuxSecurity.com Team

Calendar%202 Dec 08, 2011 Critical Ubuntu
172

Ubuntu 13.10: USN-5678-1 Critical: apache2 Security Flaw

acpid could be made to stall under certain conditions.. =========================================================================Ubuntu Security Notice USN-1234-1 October 20, 2011 acpid vulnerability ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 11.04 - Ubuntu 10.10 - Ubuntu 10.04 LTS Summary: acpid could be made to stall under certain conditions. Software Description: - acpid: Advanced Configuration and Power Interface event daemon Details: Vasiliy Kulikov discovered that acpid did not properly handle connections from poorly behaving clients. A local attacker could potentially exploit this to cause a denial of service. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 11.04: acpid 1:2.0.7-1ubuntu2.1 Ubuntu 10.10: acpid 1.0.10-5ubuntu4.1 Ubuntu 10.04 LTS: acpid 1.0.10-5ubuntu2.2 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-1234-1 CVE-2011-1159 Package Information: https://launchpad.net/ubuntu/+source/acpid/1:2.0.7-1ubuntu2.1 https://launchpad.net/ubuntu/+source/acpid/1.0.10-5ubuntu4.1 https://launchpad.net/ubuntu/+source/acpid/1.0.10-5ubuntu2.2 . Keep your Ubuntu installation fortified by applying the newest patches for acpid, safeguarding against possible denial of service vulnerabilities.. Ubuntu Security Update, acpid Exploit, Denial of Service. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Oct 20, 2011 Important Ubuntu
87

Debian 4: DSA-1960-1 Critical: Acpid Weak Permissions Local Threat

It was discovered that acpid, the Advanced Configuration and Power Interface event daemon, on the oldstable distribution (etch) creates its log file with weak permissions, which might expose sensible information or might be abused by a local user to consume all free disk . - ------------------------------------------------------------------------ Debian Security Advisory DSA-1960-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Raphael Geissert December 19, 2009 http://www.debian.org/security/faq - ------------------------------------------------------------------------ Package : acpid Vulnerability : programming error Problem type : local Debian-specific: no CVE Id : CVE-2009-4235 It was discovered that acpid, the Advanced Configuration and Power Interface event daemon, on the oldstable distribution (etch) creates its log file with weak permissions, which might expose sensible information or might be abused by a local user to consume all free disk space on the same partition of the file. For the oldstable distribution (etch), this problem has been fixed in version 1.0.4-5etch2. The stable distribution (lenny) in version 1.0.8-1lenny2 and the unstable distribution (sid) in version 1.0.10-5, have been updated to fix the weak file permissions of the log file created by older versions. We recommend that you upgrade your acpid packages. Upgrade instructions - -------------------- wget url will fetch the file for you dpkg -i file.deb will install the referenced file. If you are using the apt-get package manager, use the line for sources.list as given below: apt-get update will update the internal database apt-get upgrade will install corrected packages You may use an automated update by adding the resources from the footer to the proper configuration. Debian GNU/Linux 4.0 alias etch - ------------------------------- Debian (oldstable) - ------------------ Oldstable updates are availablefor alpha, amd64, arm, hppa, i386, ia64, mips, mipsel, powerpc, s390 and sparc. Source archives: Size/MD5 checksum: 12642 576b3f99b475f0e984714d2dba996206 Size/MD5 checksum: 23416 3aff94e92186e99ed5fd6dcee2db7c74 Size/MD5 checksum: 624 3b758a4454f405522ba8ee5b73e3a22b amd64 architecture (AMD x86_64 (AMD64)) Size/MD5 checksum: 27162 b945487fde2ab7450bcd8feb0594838d i386 architecture (Intel ia32) Size/MD5 checksum: 25530 8ccef2fa763433abf0f6273e54803254 ia64 architecture (Intel ia64) Size/MD5 checksum: 33764 1403c833448f94d9cfda9e3d065ad6e3 Debian GNU/Linux 5.0 alias lenny - -------------------------------- Debian (stable) - --------------- Stable updates are available for alpha, amd64, arm, armel, hppa, i386, ia64, mips, mipsel, powerpc, s390 and sparc. Source archives: Size/MD5 checksum: 18805 5939243de9ac3c4199ab0b40ecdf4406 Size/MD5 checksum: 1290 91e92e7e0e45e556bdf32b46193f3d29 Size/MD5 checksum: 25308 ee48ff966292ec517ba83b37dd0a3256 amd64 architecture (AMD x86_64 (AMD64)) Size/MD5 checksum: 38026 dc5bf0d06eab4173ff4372d2e4204333 i386 architecture (Intel ia32) Size/MD5 checksum: 38026 37ff1d2999cccef9e4e88478be7043f4 ia64 architecture (Intel ia64) Size/MD5 checksum: 42950 3c751d888490df8bcf726f2faf7d15c5 These files will probably be moved into the stable distribution on its next update. - --------------------------------------------------------------------------------- For apt-get: deb https://www.debian.org/security/ stable/updates main For dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. Package info: `apt-cache show ' and https://www.debian.org/distrib/packages . Debian Security Notice DSA-1961-2 resolves inadequate access controls in apache2, mitigating potential local vulnerabilities and enhancing overall system integrity.. acpid update, Debian advisory, file permissions fix, local security, system upgrade. . Severity:Critical. LinuxSecurity.com Team

Calendar%202 Dec 20, 2009 Critical Debian
200

Scientific Linux 5.x: 2009-4033 Important: acpid Log Permissions Issue

Important: acpid security update. Date: Tue, 8 Dec 2009 11:08:25 -0600 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA Important: acpid on SL5.x i386/x86_64 Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it." Synopsis: Important: acpid security update Issue date: 2009-12-07 CVE Names: CVE-2009-4033 CVE-2009-4033 acpid: log file created with random permissions It was discovered that acpid could create its log file ("/var/log/acpid") with random permissions on some systems. A local attacker could use this flaw to escalate their privileges if the log file was created as world-writable and with the setuid or setgid bit set. (CVE-2009-4033) Please note that this flaw was due to a specific patch (acpid-1.0.4-fd.patch) included in the Scientific Linux 5 acpid package. SL 5.x SRPMS: acpid-1.0.4-9.el5_4.1.src.rpm i386: acpid-1.0.4-9.el5_4.1.i386.rpm x86_64: acpid-1.0.4-9.el5_4.1.x86_64.rpm -Connie Sieh -Troy Dawson . A critical privilege escalation vulnerability in Scientific Linux 5.x has been patched. The update improves security and addresses unauthorized access risks, urging users to update now. acpid update, security advisories, Scientific Linux security. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Dec 08, 2009 Important Scientific Linux
98

Red Hat Enterprise Linux 5: RHSA-2009:1642-02 Important: Acpid Security Fix

An updated acpid package that fixes one security issue is now available for Red Hat Enterprise Linux 5. This update has been rated as having important security impact by the Red Hat Security Response Team.. ==================================================================== Red Hat Security Advisory Synopsis: Important: acpid security update Advisory ID: RHSA-2009:1642-02 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2009:1642.html Issue date: 2009-12-07 CVE Names: CVE-2009-4033 ==================================================================== 1. Summary: An updated acpid package that fixes one security issue is now available for Red Hat Enterprise Linux 5. This update has been rated as having important security impact by the Red Hat Security Response Team. 2. Relevant releases/architectures: Red Hat Enterprise Linux (v. 5 server) - i386, ia64, x86_64 Red Hat Enterprise Linux Desktop (v. 5 client) - i386, x86_64 3. Description: acpid is a daemon that dispatches ACPI (Advanced Configuration and Power Interface) events to user-space programs. It was discovered that acpid could create its log file ("/var/log/acpid") with random permissions on some systems. A local attacker could use this flaw to escalate their privileges if the log file was created as world-writable and with the setuid or setgid bit set. (CVE-2009-4033) Please note that this flaw was due to a Red Hat-specific patch (acpid-1.0.4-fd.patch) included in the Red Hat Enterprise Linux 5 acpid package. Users are advised to upgrade to this updated package, which contains a backported patch to correct this issue. 4. Solution: Before applying this update, make sure that all previously-released errata relevant to your system have been applied. This update is available via Red Hat Network. Details on how to use the Red Hat Network to apply this update are available at 5. Bugs fixed (http://bugzilla.redhat.com/): 515062 - /var/log/acpidhas improper permissions 542926 - CVE-2009-4033 acpid: log file created with random permissions 6. Package List: Red Hat Enterprise Linux Desktop (v. 5 client): Source: i386: acpid-1.0.4-9.el5_4.1.i386.rpm acpid-debuginfo-1.0.4-9.el5_4.1.i386.rpm x86_64: acpid-1.0.4-9.el5_4.1.x86_64.rpm acpid-debuginfo-1.0.4-9.el5_4.1.x86_64.rpm Red Hat Enterprise Linux (v. 5 server): Source: i386: acpid-1.0.4-9.el5_4.1.i386.rpm acpid-debuginfo-1.0.4-9.el5_4.1.i386.rpm ia64: acpid-1.0.4-9.el5_4.1.ia64.rpm acpid-debuginfo-1.0.4-9.el5_4.1.ia64.rpm x86_64: acpid-1.0.4-9.el5_4.1.x86_64.rpm acpid-debuginfo-1.0.4-9.el5_4.1.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key#package 7. References: https://www.cve.org/CVERecord?id=CVE-2009-4033 https://access.redhat.com/security/updates/classification#important 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2009 Red Hat, Inc. . Significant acpid patch for Red Hat Enterprise Linux 5 addresses a privilege escalation vulnerability caused by inadequate log file permissions.. Red Hat, acpid, important update, privilege escalation, security fix. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Dec 07, 2009 Important Red Hat
89

Fedora 9 - FEDORA-2009-5608 Critical: acpid DoS Issue Resolved

Fixed CVE-2009-0798 (too many open files DoS). -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2009-5608 2009-05-28 07:02:35 -------------------------------------------------------------------------------- Name : acpid Product : Fedora 9 Version : 1.0.6 Release : 8.fc9 URL : https://acpid.sourceforge.net/ Summary : ACPI Event Daemon Description : acpid is a daemon that dispatches ACPI events to user-space programs. -------------------------------------------------------------------------------- Update Information: Fixed CVE-2009-0798 (too many open files DoS) -------------------------------------------------------------------------------- ChangeLog: * Wed May 27 2009 Zdenek Prikryl - 1.0.6-8 - Fixed CVE-2009-0798 (too many open files DoS) (#502583) -------------------------------------------------------------------------------- References: [ 1 ] Bug #502583 - CVE-2009-0798 acpid: too many open files DoS https://bugzilla.redhat.com/show_bug.cgi?id=502583 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update acpid' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ Fedora-package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . Fedora 10 acpid upgrade addresses a DoS vulnerability by rectifying CVE-2009-0799 to improve overall system reliability.. Fedora Update, acpid software, DoS issue, security patch, Linux management. . Severity: Critical.LinuxSecurity.com Team

Calendar%202 May 28, 2009 Critical Fedora
89

Fedora 10 Update FEDORA-2009-5578: Critical acpid Denial of Service Fix

Fixed CVE-2009-0798 (too many open files DoS). -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2009-5578 2009-05-28 07:01:54 -------------------------------------------------------------------------------- Name : acpid Product : Fedora 10 Version : 1.0.6 Release : 11.fc10 URL : https://acpid.sourceforge.net/ Summary : ACPI Event Daemon Description : acpid is a daemon that dispatches ACPI events to user-space programs. -------------------------------------------------------------------------------- Update Information: Fixed CVE-2009-0798 (too many open files DoS) -------------------------------------------------------------------------------- ChangeLog: * Wed May 27 2009 Zdenek Prikryl - 1.0.6-11 - Fixed CVE-2009-0798 (too many open files DoS) (#502583) * Wed Feb 4 2009 Zdenek Prikryl - 1.0.6-10 - power.sh works with KDE 4.* (#483417) -------------------------------------------------------------------------------- References: [ 1 ] Bug #502583 - CVE-2009-0798 acpid: too many open files DoS https://bugzilla.redhat.com/show_bug.cgi?id=502583 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update acpid' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ Fedora-package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . Fedora 10 has rolled out a crucial update addressing a serious DoS vulnerability in the acpid package, enhancing user security andstability. Fedora Update, ACPI Daemon, DoS Patch. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 May 28, 2009 Critical Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200