Abuse 多个本地提权漏洞

漏洞信息详情

Abuse 多个本地提权漏洞

漏洞简介

The SDL port of abuse (abuse-SDL) 2.00之前版本在创建特定文件前没有正确授权,本地用户可以创建或覆盖任意文件。

漏洞公告

目前厂商已经发布了升级补丁以修复这个安全问题,补丁下载链接:

Abuse Abuse 2.0

Debian abuse_2.00+-3woody4_alpha.deb

Debian GNU/Linux 3.0 alias woody

http://security.debian.org/pool/updates/main/a/abuse/abuse_2.00+-3woody4_alpha.deb

Debian abuse_2.00+-3woody4_arm.deb

Debian GNU/Linux 3.0 alias woody

http://security.debian.org/pool/updates/main/a/abuse/abuse_2.00+-3woody4_arm.deb

Debian abuse_2.00+-3woody4_hppa.deb

Debian GNU/Linux 3.0 alias woody

http://security.debian.org/pool/updates/main/a/abuse/abuse_2.00+-3woody4_hppa.deb

Debian abuse_2.00+-3woody4_i386.deb

Debian GNU/Linux 3.0 alias woody

http://security.debian.org/pool/updates/main/a/abuse/abuse_2.00+-3woody4_i386.deb

Debian abuse_2.00+-3woody4_ia64.deb

Debian GNU/Linux 3.0 alias woody

http://security.debian.org/pool/updates/main/a/abuse/abuse_2.00+-3woody4_ia64.deb

Debian abuse_2.00+-3woody4_m68k.deb

Debian GNU/Linux 3.0 alias woody

http://security.debian.org/pool/updates/main/a/abuse/abuse_2.00+-3woody4_m68k.deb

Debian abuse_2.00+-3woody4_mips.deb

Debian GNU/Linux 3.0 alias woody

http://security.debian.org/pool/updates/main/a/abuse/abuse_2.00+-3woody4_mips.deb

Debian abuse_2.00+-3woody4_mipsel.deb

Debian GNU/Linux 3.0 alias woody

http://security.debian.org/pool/updates/main/a/abuse/abuse_2.00+-3woody4_mipsel.deb

Debian abuse_2.00+-3woody4_powerpc.deb

Debian GNU/Linux 3.0 alias woody

http://security.debian.org/pool/updates/main/a/abuse/abuse_2.00+-3woody4_powerpc.deb

Debian abuse_2.00+-3woody4_s390.deb

Debian GNU/Linux 3.0 alias woody

http://security.debian.org/pool/updates/main/a/abuse/abuse_2.00+-3woody4_s390.deb

Debian abuse_2.00+-3woody4_sparc.deb

Debian GNU/Linux 3.0 alias woody

http://security.debian.org/pool/updates/main/a/abuse/abuse_2.00+-3woody4_sparc.deb

参考网址

来源: DEBIAN

名称: DSA-691

链接:http://www.debian.org/security/2005/dsa-691

来源: SECUNIA

名称: 14495

链接:http://secunia.com/advisories/14495

来源: OSVDB

名称: 14610

链接:http://www.osvdb.org/14610

受影响实体

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享