CVE-2017-7480 The original patch introduces new regex to better check for allowed download URLs. . Hash: SHA512 Package : rkhunter Version : 1.4.0-1+deb7u1 CVE ID : CVE-2017-7480 CVE-2017-7480 The original patch introduces new regex to better check for allowed download URLs. Other versions of the package in Jessie, Stretch and Sid don't apply that patch but just disable the download of everything by default via rkhunter.conf. In order to make this version consistent with all the other distributions and don't break existing installations, this will be done in Wheezy as well. For Debian 7 "Wheezy", these problems have been fixed in version 1.4.0-1+deb7u1. We recommend that you upgrade your rkhunter packages. Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Enhance the security of your Debian Wheezy system against CVE-2017-7480 by upgrading rkhunter with simple terminal commands and configuration steps. Debian Wheezy Update, rkhunter CVE Fix, security patch. . LinuxSecurity.com Team
The package rkhunter before version 1.4.4-1 is vulnerable to arbitrary code execution. . Arch Linux Security Advisory ASA-201707-24 ========================================= Severity: High Date : 2017-07-18 CVE-ID : CVE-2017-7480 Package : rkhunter Type : arbitrary code execution Remote : Yes Link : https://security.archlinux.org/AVG-334 Summary ====== The package rkhunter before version 1.4.4-1 is vulnerable to arbitrary code execution. Resolution ========= Upgrade to 1.4.4-1. # pacman -Syu "rkhunter> =1.4.4-1" The problem has been fixed upstream in version 1.4.4. Workaround ========= None. Description ========== rkhunter downloads updates over a plain HTTP link with a version certificate that can be faked. A potential man-in-the-middle attack can lead to the execution of arbitrary code. Impact ===== A remote attacker in position of man-in-the-middle is able to execute arbitrary code by injecting a malicious update. References ========= http://openwall.com/lists/oss-security/2017/06/29/2 https://security.archlinux.org/CVE-2017-7480 . The Ubuntu Security Notice USN-2017-01-12 highlights a critical vulnerability in libxcrypt that could allow an unauthorized user to execute arbitrary commands.. Arch Linux Advisory,rkhunter package,arbitrary code execution. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.