UbuntuUpdates.org

Package "libelf1"

Name: libelf1

Description:

library to read and write ELF files

Latest version: 0.152-1ubuntu3.1
Release: precise (12.04)
Level: updates
Repository: main
Head package: elfutils
Homepage: https://fedorahosted.org/elfutils/

Links


Download "libelf1"


Other versions of "libelf1" in Precise

Repository Area Version
base main 0.152-1ubuntu3
security main 0.152-1ubuntu3.1

Changelog

Version: 0.152-1ubuntu3.1 2015-01-23 03:07:06 UTC

  elfutils (0.152-1ubuntu3.1) precise-security; urgency=medium

  * SECURITY UPDATE: Directory traversal via crafted ar archive
    - debian/patches/CVE-2014-9447.patch: Prevent root directory traversal
      while extracting ar archives
    - CVE-2014-9447
 -- Tyler Hicks <email address hidden> Tue, 20 Jan 2015 15:22:54 -0600

CVE-2014-9447 Directory traversal vulnerability in the read_long_names function in libelf/elf_begin.c in elfutils 0.152 and 0.161 allows remote attackers to write



About   -   Send Feedback to @ubuntu_updates