]> git.ipfire.org Git - people/teissler/ipfire-2.x.git/commit
Added a Patch to fix a local privilege escalation in udev.
authorStefan Schantl <Stevee@ipfire.org>
Sun, 3 May 2009 09:06:53 +0000 (11:06 +0200)
committerStefan Schantl <Stevee@ipfire.org>
Sun, 3 May 2009 09:06:53 +0000 (11:06 +0200)
commit835b323eff9ae1acea77d9f372260d5ce7fcb385
tree95ca22ae6f899ebe7a3b37d23da03bd0723acccb
parente8b7789107108bedec9d62fa67b337983054fa39
Added a Patch to fix a local privilege escalation in udev.

CVE-2009-1185: udev did not check the origin of the netlink
messages. A local attacker could fake device create events
and so gain root privileges.

More information on:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1186
lfs/udev
src/patches/udev-CVE-2009-1186.patch [new file with mode: 0644]