Summary
The remote host is missing updates announced in
advisory GLSA 200510-14.
Solution
All Perl users should upgrade to the latest version:
# emerge --sync
# emerge --ask --oneshot --verbose dev-lang/perl
All Qt-UnixODBC users should upgrade to the latest version:
# emerge --sync
# emerge --ask --oneshot --verbose '>=dev-db/qt-unixodbc-3.3.4-r1'
All CMake users should upgrade to the latest version:
# emerge --sync
# emerge --ask --oneshot --verbose dev-util/cmake
http://www.securityspace.com/smysecure/catid.html?in=GLSA%20200510-14 http://bugs.gentoo.org/show_bug.cgi?id=105719
http://bugs.gentoo.org/show_bug.cgi?id=105721
http://bugs.gentoo.org/show_bug.cgi?id=106678
Insight
Multiple packages suffer from RUNPATH issues that may allow users in the 'portage' group to escalate privileges.
Severity
Classification
-
CVE CVE-2005-4278, CVE-2005-4279, CVE-2005-4280 -
CVSS Base Score: 7.2
AV:L/AC:L/Au:N/C:C/I:C/A:C
Related Vulnerabilities