Summary
Ubuntu Update for Linux kernel vulnerabilities USN-439-2
Solution
Please Install the Updated Packages.
Insight
USN-439-1 fixed a vulnerability in file. The original fix did not fully solve the problem. This update provides a more complete solution.
Original advisory details:
Jean-Sebastien Guay-Leroux discovered that "
file"
did not correctly
check the size of allocated heap memory. If a user were tricked into examining a specially crafted file with the "
file"
utility, a remote
attacker could execute arbitrary code with user privileges.
Affected
file vulnerability on Ubuntu 6.06 LTS ,
Ubuntu 6.10 ,
Ubuntu 7.04
Severity
Classification
-
CVE CVE-2007-2799 -
CVSS Base Score: 5.1
AV:N/AC:H/Au:N/C:P/I:P/A:P
Related Vulnerabilities