Summary: | <sys-fs/fuse-2.8.5: symlink attack (CVE-2010-0789) | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Stefan Behte (RETIRED) <craig> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | minor | CC: | genstef, kernel-misc, sping |
Priority: | High | ||
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | https://bugzilla.redhat.com/show_bug.cgi?id=532940 | ||
Whiteboard: | B3 [noglsa] | ||
Package list: | Runtime testing required: | --- |
Description
Stefan Behte (RETIRED)
2010-03-06 16:00:17 UTC
Looks like the current stable version sys-fs/fuse-2.8.1 is vulnerable. We have 2.8.5 in the tree. Anything I could do to speed processing up? (In reply to comment #1) > Looks like the current stable version sys-fs/fuse-2.8.1 is vulnerable. We have > 2.8.5 in the tree. Anything I could do to speed processing up? We could start by doing a stable request. :) Arches, please test and mark stable: =sys-fs/fuse-2.8.5 x86 stable amd64 ok amd64 done. Thanks Agostino Stable for HPPA. alpha/ia64/sparc stable Stable for PPC. ppc64 done GLSA Vote: No. Insecure versions removed from the tree. GLSA Vote: no -> Closing. Feel free to reopen if you disagree. |