UbuntuUpdates.org

Package "elfutils"

Name: elfutils

Description:

collection of utilities to handle ELF objects

Latest version: 0.152-1ubuntu3.1
Release: precise (12.04)
Level: security
Repository: universe
Homepage: https://fedorahosted.org/elfutils/

Links


Download "elfutils"


Other versions of "elfutils" in Precise

Repository Area Version
base main 0.152-1ubuntu3
base universe 0.152-1ubuntu3
security main 0.152-1ubuntu3.1
updates main 0.152-1ubuntu3.1
updates universe 0.152-1ubuntu3.1

Changelog

Version: 0.152-1ubuntu3.1 2015-01-23 02:07:11 UTC

  elfutils (0.152-1ubuntu3.1) precise-security; urgency=medium

  * SECURITY UPDATE: Directory traversal via crafted ar archive
    - debian/patches/CVE-2014-9447.patch: Prevent root directory traversal
      while extracting ar archives
    - CVE-2014-9447
 -- Tyler Hicks <email address hidden> Tue, 20 Jan 2015 15:22:54 -0600

CVE-2014-9447 Directory traversal vulnerability in the read_long_names function in libelf/elf_begin.c in elfutils 0.152 and 0.161 allows remote attackers to write



About   -   Send Feedback to @ubuntu_updates