Alerts This Week
Warning Icon 1 540
Alerts This Week
Warning Icon 1 540

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
89

Fedora 11 2009-8816 Critical: Afuse Automounting Update for CVE-2008-2232

Fixes CVE-2008-2232: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2008-2232. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2009-8816 2009-08-20 20:34:04 -------------------------------------------------------------------------------- Name : afuse Product : Fedora 11 Version : 0.2 Release : 4.fc11 URL : Summary : An automounter implemented with FUSE Description : Afuse is an automounting file system implemented in user-space using FUSE. Afuse currently implements the most basic functionality that can be expected by an automounter; that is it manages a directory of virtual directories. If one of these virtual directories is accessed and is not already automounted, afuse will attempt to mount a filesystem onto that directory. If the mount succeeds the requested access proceeds as normal, otherwise it will fail with an error. -------------------------------------------------------------------------------- Update Information: Fixes CVE-2008-2232: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2008-2232 -------------------------------------------------------------------------------- ChangeLog: * Mon Aug 17 2009 Tom "spot" Callaway - 0.2-4 - fix CVS-2008-2232 * Fri Jul 24 2009 Fedora Release Engineering - 0.2-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update afuse' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ Fedora-package-announce mailinglist This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . Fedora 11 patches a critical vulnerability CVE-2008-2232 in the afuse package, improving automounting capabilities.. critical issues, Fedora updates, afuse, automounting. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Aug 20, 2009 Critical Fedora
89

Fedora: FEDORA-2023-5841 Moderate: SystemD Privilege Escalation Risk

Fixes CVE-2008-2232: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2008-2232. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2009-8792 2009-08-20 20:33:40 -------------------------------------------------------------------------------- Name : afuse Product : Fedora 10 Version : 0.2 Release : 4.fc10 URL : Summary : An automounter implemented with FUSE Description : Afuse is an automounting file system implemented in user-space using FUSE. Afuse currently implements the most basic functionality that can be expected by an automounter; that is it manages a directory of virtual directories. If one of these virtual directories is accessed and is not already automounted, afuse will attempt to mount a filesystem onto that directory. If the mount succeeds the requested access proceeds as normal, otherwise it will fail with an error. -------------------------------------------------------------------------------- Update Information: Fixes CVE-2008-2232: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2008-2232 -------------------------------------------------------------------------------- ChangeLog: -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update afuse' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at -------------------------------------------------------------------------------- _______________________________________________ Fedora-package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . This patch addresses a vulnerability within the afuse module, improving the functionalities and security features of Fedora10's file management system.. Fedora Update, afuse Package, Automounter Software, Security Enhancements. . LinuxSecurity.com Team

Calendar 2 Aug 20, 2009 Fedora
87

Debian: DSA-1611-1 Critical: Afuse Privilege Escalation Fix

Anders Kaseorg discovered that afuse, an automounting file system in user-space, did not properly escape meta characters in paths. This allowed a local attacker with read access to the filesystem to execute commands as the owner of the filesystem.. - ------------------------------------------------------------------------Debian Security Advisory DSA-1611-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Thijs Kinkhorst July 16, 2008 http://www.debian.org/security/faq - ------------------------------------------------------------------------Package : afuse Vulnerability : privilege escalation Problem type : local Debian-specific: no CVE Id(s) : CVE-2008-2232 Debian Bug : 490921 Anders Kaseorg discovered that afuse, an automounting file system in user-space, did not properly escape meta characters in paths. This allowed a local attacker with read access to the filesystem to execute commands as the owner of the filesystem. For the stable distribution (etch), this problem has been fixed in version 0.1.1-1+etch1. For the unstable distribution (sid), this problem has been fixed in version 0.2-3. We recommend that you upgrade your afuse (0.1.1-1+etch1) package. Upgrade instructions - --------------------wget url will fetch the file for you dpkg -i file.deb will install the referenced file. If you are using the apt-get package manager, use the line for sources.list as given below: apt-get update will update the internal database apt-get upgrade will install corrected packages You may use an automated update by adding the resources from the footer to the proper configuration. Debian GNU/Linux 4.0 alias etch - -------------------------------Source archives: Size/MD5 checksum: 3699 645246f8f338b76b6d6785fff9997c5a Size/MD5 checksum: 657 fe408099626f3bad3bc68d2717df2a9b Size/MD5 checksum: 9817195cce7d6ed8e984d0ff2d650e6beb167 alpha architecture (DEC Alpha) Size/MD5 checksum: 15476 465baebb172ecda5ed1e7bdd174fddac amd64 architecture (AMD x86_64 (AMD64)) Size/MD5 checksum: 14224 5e5dca72cb191bf0d435f770c62e07f5 arm architecture (ARM) Size/MD5 checksum: 12448 f39bc75bceec2e8979a514bda07164d6 hppa architecture (HP PA RISC) Size/MD5 checksum: 14602 603022ee85f781d0c8c155936d432484 i386 architecture (Intel ia32) Size/MD5 checksum: 13086 b422ac9cb737dd1fb7827eb6ea222bba ia64 architecture (Intel ia64) Size/MD5 checksum: 17730 9fc41e69a8df1ddee15831b971ededb1 mips architecture (MIPS (Big Endian)) Size/MD5 checksum: 14232 69ebaa63e04dd9a16ad8ff5a772dc576 mipsel architecture (MIPS (Little Endian)) Size/MD5 checksum: 14282 9dabd8530851c9588c4927f53cf923d2 powerpc architecture (PowerPC) Size/MD5 checksum: 13582 c6c86e8600353b4ff4ed66c9608fd7d0 s390 architecture (IBM S/390) Size/MD5 checksum: 14154 b36cc8bab5a28d13430a18697bb4b85c sparc architecture (Sun SPARC/UltraSPARC) Size/MD5 checksum: 12562 ff0fd7531cc011d032f74c78ae17ca0e These files will probably be moved into the stable distribution on its next update. - ---------------------------------------------------------------------------------For apt-get: deb https://www.debian.org/security/ stable/updates main For dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Ubuntu Security Notice USN-1234-1 highlights a vulnerability in gnupg, recommending immediate updates.. Afuse Privilege Escalation, Debian Security Advisory, Local Attack, Software Update, Linux User-Space Exploits. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jul 16, 2008 Critical Debian
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here