Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
This release fixes an insecure permissins of shared memory semgentes created by an x11vnc server. Previously the segments were readable and writable for any local user. Now they are accessible only to the user who executed the x11vnc server.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2021-069c0c3950 2021-03-19 19:51:22.363525 --------------------------------------------------------------------------------Name : x11vnc Product : Fedora 34 Version : 0.9.16 Release : 6.fc34 URL : https://github.com/LibVNC/x11vnc Summary : VNC server for the current X11 session Description : What WinVNC is to Windows x11vnc is to X Window System, i.e. a server which serves the current X Window System desktop via RFB (VNC) protocol to the user. Based on the ideas of x0rfbserver and on LibVNCServer it has evolved into a versatile and productive while still easy to use program. --------------------------------------------------------------------------------Update Information: This release fixes an insecure permissins of shared memory semgentes created by an x11vnc server. Previously the segments were readable and writable for any local user. Now they are accessible only to the user who executed the x11vnc server. --------------------------------------------------------------------------------ChangeLog: * Mon Mar 1 2021 Petr Pisar - 0.9.16-6 - Fix CVE-2020-29074 (insecure permissions on a shared memory) (bug #1933603) --------------------------------------------------------------------------------References: [ 1 ] Bug #1933602 - CVE-2020-29074 x11vnc: insecure permissions on shm https://bugzilla.redhat.com/show_bug.cgi?id=1933602 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2021-069c0c3950' at the command line. For more information, refer to the dnfdocumentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
An update that fixes one vulnerability is now available.. openSUSE Security Update: Security update for rubygem-bundler ______________________________________________________________________________ Announcement ID: openSUSE-SU-2020:0803-1 Rating: moderate References: #1143436 Cross-References: CVE-2019-3881 Affected Products: openSUSE Leap 15.1 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for rubygem-bundler fixes the following issue: - CVE-2019-3881: Fixed insecure permissions on a directory in /tmp/ that allowed malicious code execution (bsc#1143436). This update was imported from the SUSE:SLE-15:Update update project. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.1: zypper in -t patch openSUSE-2020-803=1 Package List: - openSUSE Leap 15.1 (x86_64): ruby2.5-rubygem-bundler-1.16.1-lp151.3.3.1 ruby2.5-rubygem-bundler-doc-1.16.1-lp151.3.3.1 References: https://www.suse.com/security/cve/CVE-2019-3881.html https://bugzilla.suse.com/1143436 -- . This patch addresses a significant vulnerability in rubygem-bundler for openSUSE, correcting improper permissions that could lead to unauthorized code execution.. openSUSE Security, rubygem-bundler Update, moderate Threat, Code Execution Risk. . LinuxSecurity.com Team
An update that fixes one vulnerability is now available. . SUSE Security Update: Security update for rubygem-bundler ______________________________________________________________________________ Announcement ID: SUSE-SU-2020:1582-1 Rating: moderate References: #1143436 Cross-References: CVE-2019-3881 Affected Products: SUSE Linux Enterprise Module for Basesystem 15-SP1 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for rubygem-bundler fixes the following issue: - CVE-2019-3881: Fixed insecure permissions on a directory in /tmp/ that allowed malicious code execution (bsc#1143436). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Module for Basesystem 15-SP1: zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP1-2020-1582=1 Package List: - SUSE Linux Enterprise Module for Basesystem 15-SP1 (aarch64 ppc64le s390x x86_64): ruby2.5-rubygem-bundler-1.16.1-3.3.1 References: https://www.suse.com/security/cve/CVE-2019-3881.html https://bugzilla.suse.com/1143436 _______________________________________________ sle-security-updates mailing list
Moderate: qt security update. Date: Thu, 21 Mar 2013 15:31:19 -0500 Reply-To: Pat Riehecky Sender: Security Errata for Scientific Linux From: Pat Riehecky Subject: Security ERRATA Moderate: qt on SL6.x i386/x86_64 MIME-Version: 1.0 Synopsis: Moderate: qt security update Issue Date: 2013-03-21 CVE Numbers: CVE-2013-0254 -- It was discovered that the QSharedMemory class implementation of the Qt toolkit created shared memory segments with insecure permissions. A local attacker could use this flaw to read or alter the contents of a particular shared memory segment, possibly leading to their ability to obtain sensitive information or influence the behavior of a process that is using the shared memory segment. (CVE-2013-0254) All running applications linked against Qt libraries must be restarted for this update to take effect. -- SL6 x86_64 phonon-backend-gstreamer-4.6.2-26.el6_4.i686.rpm phonon-backend-gstreamer-4.6.2-26.el6_4.x86_64.rpm qt-4.6.2-26.el6_4.i686.rpm qt-4.6.2-26.el6_4.x86_64.rpm qt-debuginfo-4.6.2-26.el6_4.i686.rpm qt-debuginfo-4.6.2-26.el6_4.x86_64.rpm qt-mysql-4.6.2-26.el6_4.i686.rpm qt-mysql-4.6.2-26.el6_4.x86_64.rpm qt-odbc-4.6.2-26.el6_4.i686.rpm qt-odbc-4.6.2-26.el6_4.x86_64.rpm qt-postgresql-4.6.2-26.el6_4.i686.rpm qt-postgresql-4.6.2-26.el6_4.x86_64.rpm qt-sqlite-4.6.2-26.el6_4.i686.rpm qt-sqlite-4.6.2-26.el6_4.x86_64.rpm qt-x11-4.6.2-26.el6_4.i686.rpm qt-x11-4.6.2-26.el6_4.x86_64.rpm qt-demos-4.6.2-26.el6_4.x86_64.rpm qt-devel-4.6.2-26.el6_4.i686.rpm qt-devel-4.6.2-26.el6_4.x86_64.rpm qt-examples-4.6.2-26.el6_4.x86_64.rpm i386 phonon-backend-gstreamer-4.6.2-26.el6_4.i686.rpm qt-4.6.2-26.el6_4.i686.rpm qt-debuginfo-4.6.2-26.el6_4.i686.rpm qt-mysql-4.6.2-26.el6_4.i686.rpm qt-odbc-4.6.2-26.el6_4.i686.rpm qt-postgresql-4.6.2-26.el6_4.i686.rpm qt-sqlite-4.6.2-26.el6_4.i686.rpm qt-x11-4.6.2-26.el6_4.i686.rpm qt-demos-4.6.2-26.el6_4.i686.rpm qt-devel-4.6.2-26.el6_4.i686.rpm qt-examples-4.6.2-26.el6_4.i686.rpm noarch qt-doc-4.6.2-26.el6_4.noarch.rpm -Scientific Linux Development Team . A minor security patch for qt in Scientific Linux addresses concerns associated with memory sharing vulnerabilities.. qt Security Update, Scientific Linux Update, Shared Memory Security Fix. . Severity: Important. LinuxSecurity.com Team
It was discovered that OpenIPMI, the Intelligent Platform Management Interface library and tools, used too wide permissions PID file, which allows local users to kill arbitrary processes by writing to this file. . - ------------------------------------------------------------------------- Debian Security Advisory DSA-2376-2
It was discovered that multipathd of multipath-tools, a tool-chain to manage disk multipath device maps, uses insecure permissions on its unix domain control socket which enables local attackers to issue commands to multipathd . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - -------------------------------------------------------------------------- Debian Security Advisory DSA-1767-1
Fix insecure permissions on multipathd.sock (CVE-2009-0115). --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2009-3453 2009-04-09 15:25:22 --------------------------------------------------------------------------------Name : device-mapper-multipath Product : Fedora 9 Version : 0.4.7 Release : 17.fc9 URL : http://christophe.varoqui.free.fr/ Summary : Tools to manage multipath devices using device-mapper Description : device-mapper-multipath provides tools to manage multipath devices by instructing the device-mapper multipath kernel module what to do. The tools are : * multipath : Scan the system for multipath devices and assemble them. * multipathd : Detects when paths fail and execs multipath to update things. --------------------------------------------------------------------------------Update Information: Fix insecure permissions on multipathd.sock (CVE-2009-0115) --------------------------------------------------------------------------------ChangeLog: * Tue Apr 7 2009 Milan Broz - 0.4.8-17 - Fix insecure permissions on multipathd.sock (CVE-2009-0115) * Mon Jun 23 2008 Benjamin Marzinski -0.4.7-16 - Fix for bz #451415 - /sbin/multipath.static in no longer a symlink to the non-static version. However, it still dynamically loads all libraries except libsysfs. libsysfs is now statically linked. * Wed May 21 2008 Benjamin Marzinski -0.4.7-15 - Switch multipath to check "subsystem" instead of "bus" - Make static versions of multipath and kpartx symlinks to non-static versions * Fri Feb 29 2008 Tom "spot" Callaway - 0.4.7-14 - fix sparc64 - fix license tag * Tue Feb 19 2008 Fedora Release Engineering - 0.4.7-13 - Autorebuild for GCC 4.3 * Wed Nov 14 2007 Benjamin Marzinski - 0.4.7-12 - Fixed the dist tag so building will work properly. --------------------------------------------------------------------------------References: [ 1 ] Bug #493330 -CVE-2009-0115 device-mapper-multipath: insecure permissions on multipathd.sock https://bugzilla.redhat.com/show_bug.cgi?id=493330 --------------------------------------------------------------------------------This update can be installed with the "yum" update program. Use su -c 'yum update device-mapper-multipath' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ Fedora-package-announce mailing list
SPE files are installed with world-writeable permissions, potentially leading to privilege escalation.. - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 200510-13 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - https://security.gentoo.org/ - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Severity: Normal Title: SPE: Insecure file permissions Date: October 15, 2005 Bugs: #108538 ID: 200510-13 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Synopsis ======= SPE files are installed with world-writeable permissions, potentially leading to privilege escalation. Background ========= SPE is a cross-platform Python Integrated Development Environment (IDE). Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 dev-util/spe < 0.7.5c-r1 > = 0.7.5c-r1 *> = 0.5.1f-r1 Description ========== It was reported that due to an oversight all SPE's files are set as world-writeable. Impact ===== A local attacker could modify the executable files, causing arbitrary code to be executed with the permissions of the user running SPE. Workaround ========= There is no known workaround at this time. Resolution ========= All SPE users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose dev-util/spe Availability =========== This GLSA and any updates to it are available for viewing at the Gentoo Security Website: https://security.gentoo.org/glsa/200510-13 Concerns? ======== Security is a primary focus of Gentoo Linux and ensuring the confidentiality and security of our usersmachines is of utmost importance to us. Any security concerns should be addressed to
Get the latest Linux and open source security news straight to your inbox.