Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.1.13.2009.111.02
Category:Slackware Local Security Checks
Title:Slackware: Security Advisory (SSA:2009-111-02)
Summary:The remote host is missing an update for the 'udev' package(s) announced via the SSA:2009-111-02 advisory.
Description:Summary:
The remote host is missing an update for the 'udev' package(s) announced via the SSA:2009-111-02 advisory.

Vulnerability Insight:
Updated udev packages are available for Slackware 12.2, and -current to fix
a serial device ownership regression in 12.2, adjust the perms on /dev/rtc0,
and make sure that the /dev/root symlink is properly created.


Here are the details from the Slackware 12.2 ChangeLog:
+--------------------------+
patches/packages/udev-141-i486-2_slack12.2.tgz:
Fixed a regression with serial/dialout device ownership.
Slackware 12.2 uses the 'uucp' group for these devices, but the newer
version of udev has changed them to 'dialout', leading to log errors and
an incorrect group ownership for serial devices since the 'dialout' group
does not exist on Slackware 12.2.
This update changes the serial device group ownership back to 'uucp'.
Thanks to Alexander Pravdin for the fast bug report.
Changed the permissions on the real time clock (/dev/rtc0) so that all
users can read it.
Modified rc.udev so that the /dev/root symlink is created.
Thanks to Piter Punk!
+--------------------------+

Here are the details from the Slackware -current ChangeLog:
+--------------------------+
a/udev-141-i486-2.tgz: Changed the permissions on the real time clock
(/dev/rtc0) so that all users can read it.
Modified rc.udev so that the /dev/root symlink is created.
Thanks to Piter Punk!
+--------------------------+

Affected Software/OS:
'udev' package(s) on Slackware 12.2, Slackware current.

Solution:
Please install the updated package(s).

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:N/A:N

CopyrightCopyright (C) 2022 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.