Debian Security Advisory 3440-1

Discussion in 'News Aggregator' started by Packet Storm, 12 Jan 2016.

  1. Packet Storm

    Packet Storm Guest

    Debian Linux Security Advisory 3440-1 - When sudo is configured to allow a user to edit files under a directory that they can already write to without using sudo, they can actually edit (read and write) arbitrary files. Daniel Svartman reported that a configuration like this might be introduced unintentionally if the editable files are specified using wildcards, for example.

    Continue reading...
     

Share This Page

Loading...