Summary
Ubuntu Update for Linux kernel vulnerabilities USN-919-1
Solution
Please Install the Updated Packages.
Insight
Dan Rosenberg discovered that the email helper in Emacs did not correctly check file permissions. A local attacker could perform a symlink race to read or append to another user's mailbox if it was stored under a group-writable group-"
mail"
directory.
Affected
emacs22, emacs23 vulnerability on Ubuntu 8.04 LTS , Ubuntu 8.10 ,
Ubuntu 9.04 ,
Ubuntu 9.10
Severity
Classification
-
CVE CVE-2010-0825 -
CVSS Base Score: 4.4
AV:L/AC:M/Au:N/C:P/I:P/A:P
Related Vulnerabilities