[ubuntu/karmic-security] fuse, fuse (delayed) 2.7.4-1.1ubuntu4.5 (Accepted)

Ubuntu Installer archive at ubuntu.com
Mon Feb 28 18:07:10 UTC 2011


fuse (2.7.4-1.1ubuntu4.5) karmic-security; urgency=low

  * SECURITY UPDATE: arbitrary unprivileged unmount
    - debian/patches/CVE-2011-0541.dpatch: don't follow symlinks when
      unmounting in case of a failed mtab update in util/fusermount.c.
    - debian/patches/CVE-2011-0542.dpatch: chdir to / before performing
      mount/umount in util/fusermount.c.
    - debian/patches/CVE-2011-0543.dpatch: remove legacy util-linux
      support so symlinks don't get followed upon fallback in
      lib/mount_util.c, util/fusermount.c.
    - CVE-2011-0541
    - CVE-2011-0542
    - CVE-2011-0543

Date: Fri, 11 Feb 2011 15:03:12 -0500
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/karmic/+source/fuse/2.7.4-1.1ubuntu4.5
-------------- next part --------------
Format: 1.8
Date: Fri, 11 Feb 2011 15:03:12 -0500
Source: fuse
Binary: fuse-utils libfuse-dev libfuse2 fuse-utils-udeb libfuse2-udeb
Architecture: source
Version: 2.7.4-1.1ubuntu4.5
Distribution: karmic-security
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description: 
 fuse-utils - Filesystem in USErspace (utilities)
 fuse-utils-udeb - Filesystem in USErspace (utilities) (udeb)
 libfuse-dev - Filesystem in USErspace (development files)
 libfuse2   - Filesystem in USErspace library
 libfuse2-udeb - Filesystem in USErspace library (udeb)
Changes: 
 fuse (2.7.4-1.1ubuntu4.5) karmic-security; urgency=low
 .
   * SECURITY UPDATE: arbitrary unprivileged unmount
     - debian/patches/CVE-2011-0541.dpatch: don't follow symlinks when
       unmounting in case of a failed mtab update in util/fusermount.c.
     - debian/patches/CVE-2011-0542.dpatch: chdir to / before performing
       mount/umount in util/fusermount.c.
     - debian/patches/CVE-2011-0543.dpatch: remove legacy util-linux
       support so symlinks don't get followed upon fallback in
       lib/mount_util.c, util/fusermount.c.
     - CVE-2011-0541
     - CVE-2011-0542
     - CVE-2011-0543
Checksums-Sha1: 
 6683de9de3731f7b3633d6dc71b2f5940091d453 1930 fuse_2.7.4-1.1ubuntu4.5.dsc
 9016a947e0c161f24361d3dbb771e75334fd7063 24833 fuse_2.7.4-1.1ubuntu4.5.diff.gz
Checksums-Sha256: 
 37fb9dcd67aad298c8772e60596a7d00a80683ed791bbe0cbbc7562842c5852e 1930 fuse_2.7.4-1.1ubuntu4.5.dsc
 3430e8738ae18bbeed8a3fd66e25d3167ecf145a6d0319e03f7597ebd9e5322f 24833 fuse_2.7.4-1.1ubuntu4.5.diff.gz
Files: 
 6a18591fb326138efd34c2593764af64 1930 libs optional fuse_2.7.4-1.1ubuntu4.5.dsc
 9c049def4fb7fd4ce94dd7c8e0921ccb 24833 libs optional fuse_2.7.4-1.1ubuntu4.5.diff.gz
Original-Maintainer: Bartosz Fenski <fenio at debian.org>


More information about the Karmic-changes mailing list