| |||||||||||||
| Test Kennung: | 1.3.6.1.4.1.25623.1.0.65748 |
| Kategorie: | Ubuntu Local Security Checks |
| Titel: | Ubuntu USN-841-1 (glib2.0) |
| Zusammenfassung: | Ubuntu USN-841-1 (glib2.0) |
| Beschreibung: | The remote host is missing an update to glib2.0 announced via advisory USN-841-1. Details follow: Arand Nash discovered that applications linked to GLib (e.g. Nautilus) did not correctly copy symlinks. If a user copied symlinks with GLib, the symlink target files would become world-writable, allowing local attackers to gain access to potentially sensitive information. Solution: The problem can be corrected by upgrading your system to the following package versions: Ubuntu 8.04 LTS: libglib2.0-0 2.16.6-0ubuntu1.2 Ubuntu 8.10: libglib2.0-0 2.18.2-0ubuntu2.2 Ubuntu 9.04: libglib2.0-0 2.20.1-0ubuntu2.1 After a standard system upgrade you need to restart your session to effect the necessary changes. http://www.securityspace.com/smysecure/catid.html?in=USN-841-1 |
| Querverweis: |
Common Vulnerability Exposure (CVE) ID: CVE-2009-3289 http://www.openwall.com/lists/oss-security/2009/09/08/8 https://bugzilla.gnome.org/show_bug.cgi?id=593406 SuSE Security Announcement: SUSE-SR:2010:010 (Google Search) http://lists.opensuse.org/opensuse-security-announce/2010-04/msg00006.html http://secunia.com/advisories/39656 http://www.vupen.com/english/advisories/2010/1001 |
| Copyright | Copyright (c) 2009 E-Soft Inc. http://www.securityspace.com |
| Dies ist nur einer von 32582 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus. Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten. |
|