Update udev to fix security vulnerability

Bug #374371 reported by Nicola Ferralis
256
This bug affects 1 person
Affects Status Importance Assigned to Milestone
The Dell Mini Project
Fix Released
Undecided
Unassigned

Bug Description

udev has been updated to generic hardy to fix two security vulnerabilities. It should be updated in hardu for the dell-mini. Changelog below.

udev (117-8ubuntu0.2) hardy-security; urgency=low

  * SECURITY UPDATE: root privilege escalation via udev event spoofing.
    - Add debian/patches/81-netlink-owner-check.patch: backport upstream
      fixes (CVE-2009-1185).
  * SECURITY UPDATE: overflow in path name encoding.
    - Add debian/patches/82-encoding-overflow.patch: backport upstream
      fixes (CVE-2009-1186).

 -- Kees Cook <email address hidden> Wed, 08 Apr 2009 17:06:57 -0700

CVE References

security vulnerability: no → yes
Changed in dell-mini:
status: New → Confirmed
Changed in dell-mini:
status: Confirmed → Fix Released
To post a comment you must log in.
This report contains Public Security information  
Everyone can see this security related information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.