|
|
>> Fedora Security Update Fixes util-linux Privilege Escalation Vulnerability
|
Title : Fedora Security Update Fixes util-linux Privilege Escalation Vulnerability VUPEN ID : VUPEN/ADV-2007-3517 CVE ID : CVE-2007-5191
Rated as : Low Risk 
Remotely Exploitable : No Locally Exploitable : Yes Release Date : 2007-10-17
|
A vulnerability has been identified in Fedora, which could be exploited by local attackers to bypass security restrictions and gain elevated privileges. This issue is caused by errors in util-linux. For additional information, see : VUPEN/ADV-2007-3417
Affected Products
Fedora Core 6
Solution
Upgrade the affected packages :
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/6/
89f69bd6c692a6ae650fa0b9fee178b2c959596f SRPMS/util-linux-2.13-0.49.fc6.src.rpm
89f69bd6c692a6ae650fa0b9fee178b2c959596f noarch/util-linux-2.13-0.49.fc6.src.rpm
88748be58e688de7f09ee499f6696048ea932365 ppc/debug/util-linux-debuginfo-2.13-0.49.fc6.ppc.rpm
02217f50460aa38b48f50f0c801ddbdb4facddf5 ppc/util-linux-2.13-0.49.fc6.ppc.rpm
7d04c07578783324feba70972c23d1e5bdd3e212 x86_64/util-linux-2.13-0.49.fc6.x86_64.rpm
f2e3f30f4c3d872fae0f10ab05e735a04ca58813 x86_64/debug/util-linux-debuginfo-2.13-0.49.fc6.x86_64.rpm
c0afb3085aa23636e88f13323ce22de5812e0ee5 i386/util-linux-2.13-0.49.fc6.i386.rpm
06a152ded9fa4188721963c2afbdcdab13ea083f i386/debug/util-linux-debuginfo-2.13-0.49.fc6.i386.rpm
References
http://www.vupen.com/english/advisories/2007/3517 https://www.redhat.com/archives/fedora-package-announce/2007-October/msg00216.html
ChangeLog
2007-10-17 : Initial release
Vulnerability Management
Subscribe to VUPEN VNS and receive real-time alerts when new advisories or patches relevant to your systems and network configurations are available.
Feedback
If you have additional information or corrections for this security advisory please submit them via our contact form. | |
|