Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
Several security issues were fixed in libxext.. =========================================================================Ubuntu Security Notice USN-1857-1 June 05, 2013 libxext vulnerability ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 13.04 - Ubuntu 12.10 - Ubuntu 12.04 LTS - Ubuntu 10.04 LTS Summary: Several security issues were fixed in libxext. Software Description: - libxext: X11 miscellaneous extensions library Details: Ilja van Sprundel discovered multiple security issues in various X.org libraries and components. An attacker could use these issues to cause applications to crash, resulting in a denial of service, or possibly execute arbitrary code. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 13.04: libxext6 2:1.3.1-2ubuntu0.13.04.1 Ubuntu 12.10: libxext6 2:1.3.1-2ubuntu0.12.10.1 Ubuntu 12.04 LTS: libxext6 2:1.3.0-3ubuntu0.1 Ubuntu 10.04 LTS: libxext6 2:1.1.1-2ubuntu0.1 After a standard system update you need to restart your session to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-1857-1 CVE-2013-1982 Package Information: https://launchpad.net/ubuntu/+source/libxext/2:1.3.1-2ubuntu0.13.04.1 https://launchpad.net/ubuntu/+source/libxext/2:1.3.1-2ubuntu0.12.10.1 https://launchpad.net/ubuntu/+source/libxext/2:1.3.0-3ubuntu0.1 https://launchpad.net/ubuntu/+source/libxext/2:1.1.1-2ubuntu0.1 . Patching process initiated to address libxext security flaw within Ubuntu releases to prevent potential outages.. libxext Update, Ubuntu Security, Denial Of Service Fix. . Severity: Important. LinuxSecurity.com Team
Ilja van Sprundel of IOActive discovered several security issues in multiple components of the X.org graphics stack and the related libraries: Various integer overflows, sign handling errors in integer conversions, buffer overflows, memory corruption and missing input . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - ------------------------------------------------------------------------- Debian Security Advisory DSA-2682-1
Get the latest Linux and open source security news straight to your inbox.