Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

Mandriva: Subject: [Security Announce] [ MDVSA-2008:208 ] pam_mount

BugsAlert Home > Mandriva: Subject: [Security Announce] [ MDVSA-2008:208 ] pam_mount
 
 

LinuxSecurity.com: pam_mount 0.10 through 0.45, when luserconf is enabled, does not verify mountpoint and source ownership before mounting a user-defined volume, which allows local users to bypass intended access restrictions via a local mount. The updated packages have been patched to fix the issue.




Original Source: http://www.linuxsecurity.com/content/view/142769?rdf

Learn more about Mandriva: Subject: [Security Announce] [ MDVSA-2008:208 ] pam_mount
 
Tags: mandriva subject security announce mdvsa-2008 208 pam
 mount

Related Items

      Bugtraq: Realplayer 11 DOS attack when processing a malformed AU file on MS Vista and XP

      Firefox 3 Improves Handling of Invalid SSL Certificates

      apache 2.2 install issue

      Firefox 3.1 will Have a Private Browsing Mode

      CVE-2008-1241 (Firefox, SeaMonkey)

      Microsoft Security Advisory (932596): Update to Improve Kernel Patch Protection

      Joomla Component Contact Info 1.0 SQL Injection Vulnerability

 

Pixel