Summary
Ubuntu Update for Linux kernel vulnerabilities USN-985-1
Solution
Please Install the Updated Packages.
Insight
Alasdair MacGregor discovered that mountall created a udev rule file with world-writable permissions. A local attacker could exploit this under certain conditions to cause udev to execute arbitrary commands as the root user.
Affected
mountall vulnerability on Ubuntu 10.04 LTS
Severity
Classification
-
CVE CVE-2010-2961 -
CVSS Base Score: 6.9
AV:L/AC:M/Au:N/C:C/I:C/A:C
Related Vulnerabilities