Get a Pentest and security assessment of your IT network.

Advisories

Mandriva Linux Security Advisory 2009-041

Mandriva Linux Security Advisory 2009-041 – Security vulnerabilities have been identified and fixed in jhead. Buffer overflow in the DoCommand function in jhead before 2.84 might allow context-dependent attackers to cause a denial of service (crash). Jhead before 2.84 allows local users to overwrite arbitrary files via a symlink attack on a temporary file. Jhead 2.84 and earlier allows local users to delete arbitrary files via vectors involving a modified input filename. jhead 2.84 and earlier allows attackers to execute arbitrary commands via shell metacharacters in unspecified input. This update provides the latest Jhead to correct these issues.

 

You can download this advisory from the following link: https://packetstormsecurity.com/files/download/75008/MDVSA-2009-041.txt

Source: https://packetstormsecurity.com/files/75008/Mandriva-Linux-Security-Advisory-2009-041.html

Related posts
Advisories

Secunia Security Advisory 15017

Advisories

Secunia Security Advisory 18394

Advisories

Secunia Security Advisory 21136

Advisories

Secunia Security Advisory 24114