-
Committer:
Bazaar Package Importer
-
Author(s):
Kees Cook
-
Date:
2010-10-21 14:29:03 UTC
-
mfrom:
(1.5.1 upstream)
(42.1.1 lucid-security)
-
Revision ID:
james.westby@ubuntu.com-20101021142903-pa5ufldwc29p0hk6
Tags: 2.11.1-0ubuntu7.5
* SECURITY UPDATE: root escalation via LD_AUDIT DST expansion.
- debian/patches/any/dst-expansion-fix.diff: upstream fixes.
- CVE-2010-3847
- debian/patches/any/disable-ld_audit.diff: turn off LD_AUDIT
for setuid binaries.