Ubuntu Security Notice USN-3536-1

Discussion in 'News Aggregator' started by Packet Storm, 18 Jan 2018.

  1. Packet Storm

    Packet Storm Guest

    Ubuntu Security Notice 3536-1 - It was discovered that the GNU C library did not properly handle all of the possible return values from the kernel getcwd syscall. A local attacker could potentially exploit this to execute arbitrary code in setuid programs and gain administrative privileges.

    Continue reading...
     

Share This Page

Loading...