Get a Pentest and security assessment of your IT network.

Advisories

Ubuntu Security Notice 906-1

Ubuntu Security Notice 906-1 – It was discovered that the CUPS scheduler did not properly handle certain network operations. A remote attacker could exploit this flaw and cause the CUPS server to crash, resulting in a denial of service. Ronald Volgers discovered that the CUPS lppasswd tool could be made to load localized message strings from arbitrary files by setting an environment variable. A local attacker could exploit this with a format-string vulnerability leading to a root privilege escalation. The default compiler options for Ubuntu 8.10, 9.04 and 9.10 should reduce this vulnerability to a denial of service.

 

You can download this advisory from the following link: https://packetstormsecurity.com/files/download/86869/USN-906-1.txt

Source: https://packetstormsecurity.com/files/86869/Ubuntu-Security-Notice-906-1.html

Related posts
Advisories

Secunia Security Advisory 15017

Advisories

Secunia Security Advisory 18394

Advisories

Secunia Security Advisory 21136

Advisories

Secunia Security Advisory 24114