-
Committer:
Package Import Robot
-
Author(s):
Tyler Hicks
-
Date:
2012-09-27 21:13:08 UTC
-
mfrom:
(7.1.8 sid)
-
Revision ID:
package-import@ubuntu.com-20120927211308-owmt0di5qnnztzt6
Tags: 0.1-4ubuntu1.1
* SECURITY UPDATE: Privilege escalation via malicious environment variable
- debian/patches/07-CVE_2011_2709.patch: Only read the GSSAPI_MECH_CONF
environment variable in non-setuid situations. Based on upstream patch.
- CVE-2011-2709