[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

[SECURITY] [DLA 261-1] aptdaemon security update



Package        : aptdaemon
Version        : 0.31+bzr413-1.1+deb6u1
CVE ID         : CVE-2015-1323
Debian Bug     : 789162

Tavis Ormandy discovered that Aptdeamon incorrectly handled the simulate
dbus method. A local attacker could use this issue to possibly expose
sensitive information, or perform other file access as the root user.

For Debian 6 “Squeeze”, this problem has been fixed in version
0.31+bzr413-1.1+deb6u1 of aptdaemon. We recommend that you upgrade
yout aptdaemon package.

-- 
Raphaël Hertzog ◈ Debian Developer

Support Debian LTS: http://www.freexian.com/services/debian-lts.html
Learn to master Debian: http://debian-handbook.info/get/

Attachment: signature.asc
Description: Digital signature


Reply to: