An issue has been found in btrbk, a backup tool for btrfs subvolumes. Due to mishandling of remote hosts filtering SSH commands using ssh_filter_btrbk.sh in authorized_keys an arbitrary code execution would . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-2755-1
- update to 1.1.20 - fixes CVE-2017-7572. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2017-8dce7a3940 2017-04-22 03:35:57.949371 --------------------------------------------------------------------------------Name : backintime Product : Fedora 25 Version : 1.1.20 Release : 1.fc25 URL : Summary : Simple backup tool inspired from the Flyback project and TimeVault Description : Back In Time is a simple backup system for Linux inspired from flyback project and TimeVault. The backup is done by taking snapshots of a specified set of directories. --------------------------------------------------------------------------------Update Information: - update to 1.1.20 - fixes CVE-2017-7572 --------------------------------------------------------------------------------References: [ 1 ] Bug #1441585 - CVE-2017-7572 backintime: Race condition in the checkPolkitPrivilege function [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1441585 [ 2 ] Bug #1440556 - backintime-1.1.20 is available https://bugzilla.redhat.com/show_bug.cgi?id=1440556 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade backintime' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list --
- update to 1.1.20 - fixes CVE-2017-7572. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2017-36eb9502b0 2017-04-17 15:53:05.972985 --------------------------------------------------------------------------------Name : backintime Product : Fedora 26 Version : 1.1.20 Release : 1.fc26 URL : Summary : Simple backup tool inspired from the Flyback project and TimeVault Description : Back In Time is a simple backup system for Linux inspired from flyback project and TimeVault. The backup is done by taking snapshots of a specified set of directories. --------------------------------------------------------------------------------Update Information: - update to 1.1.20 - fixes CVE-2017-7572 --------------------------------------------------------------------------------References: [ 1 ] Bug #1441585 - CVE-2017-7572 backintime: Race condition in the checkPolkitPrivilege function [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1441585 [ 2 ] Bug #1440556 - backintime-1.1.20 is available https://bugzilla.redhat.com/show_bug.cgi?id=1440556 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade backintime' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list --
. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2009-9282 2009-09-04 03:31:33 -------------------------------------------------------------------------------- Name : backintime Product : Fedora 11 Version : 0.9.26 Release : 3.fc11 URL : Summary : Simple backup tool Description : Back In Time is a simple backup system for Linux inspired from “flyback project” and “TimeVault”. The backup is done by taking snapshots of a specified set of directories. -------------------------------------------------------------------------------- ChangeLog: -------------------------------------------------------------------------------- References: [ 1 ] Bug #520210 - backintime: makes all files world-readable in snapshot when removing it https://bugzilla.redhat.com/show_bug.cgi?id=520210 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update backintime' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ Fedora-package-announce mailing list
. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2009-9298 2009-09-04 03:31:57 -------------------------------------------------------------------------------- Name : backintime Product : Fedora 10 Version : 0.9.26 Release : 3.fc10 URL : Summary : Simple backup tool Description : Back In Time is a simple backup system for Linux inspired from “flyback project” and “TimeVault”. The backup is done by taking snapshots of a specified set of directories. -------------------------------------------------------------------------------- References: [ 1 ] Bug #520210 - backintime: makes all files world-readable in snapshot when removing it https://bugzilla.redhat.com/show_bug.cgi?id=520210 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update backintime' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ Fedora-package-announce mailing list
Updated dump packages contain fixes for unintentional writes to target partition and other bugfixes. The updated dump also contains support for Extended Attributes/Access Control Lists.. ---------------------------------------------------------------------Fedora Update Notification FEDORA-2005-100 2005-02-02 ---------------------------------------------------------------------Product : Fedora Core 3 Name : dump Version : 0.4b39 Release : 1.FC3 Summary : Programs for backing up and restoring ext2/ext3 filesystems. Description : The dump package contains both dump and restore. Dump examines files in a filesystem, determines which ones need to be backed up, and copies those files to a specified disk, tape, or other storage medium. The restore command performs the inverse function of dump; it can restore a full backup of a filesystem. Subsequent incremental backups can then be layered on top of the full backup. Single files and directory subtrees may also be restored from full or partial backups. Install dump if you need a system for both backing up filesystems and restoring filesystems after backups. ---------------------------------------------------------------------Update Information: Updated dump packages contain fixes for unintentional writes to target partition and other bugfixes. The updated dump also contains support for Extended Attributes/Access Control Lists. ---------------------------------------------------------------------* Mon Jan 31 2005 Jindrich Novy 0.4b39-1.FC3 - Updated to dump-0.4b39. - Add patch for EA/ACL support. ---------------------------------------------------------------------This update can be downloaded from: 659d47ddef2e51b464ebbfd79aea8c4e SRPMS/dump-0.4b39-1.FC3.src.rpm f845ddadb8fc98963a5a9769069b5a8d x86_64/dump-0.4b39-1.FC3.x86_64.rpm d614d23c55414573d2a3350e760a1831 x86_64/rmt-0.4b39-1.FC3.x86_64.rpm df110c56be18f012714828aaa000cb13 x86_64/debug/dump-debuginfo-0.4b39-1.FC3.x86_64.rpm 75bce0eaa97ebb82d409af1e064d238a i386/dump-0.4b39-1.FC3.i386.rpm bd1b770bcc929c5c7169574024d5ee43 i386/rmt-0.4b39-1.FC3.i386.rpm ef9148270a30d0c6299892e9250e527c i386/debug/dump-debuginfo-0.4b39-1.FC3.i386.rpm This update can also be installed with the Update Agent; you can launch the Update Agent with the 'up2date' command. -----------------------------------------------------------------------fedora-announce-list mailing list
Get the latest Linux and open source security news straight to your inbox.