|
Family: Debian Local Security Checks --> Category: infos
[DSA299] DSA-299-1 leksbot Vulnerability Scan
Vulnerability Scan Summary DSA-299-1 leksbot
Detailed Explanation for this Vulnerability Test
Maurice Massar discovered that, due to a packaging error, the program
/usr/bin/KATAXWR was inadvertently installed setuid root. This
program was not designed to run setuid, and contained multiple
vulnerabilities which could be exploited to gain root rights.
For the stable distribution (woody) this problem has been fixed in
version 1.2-3.1.
The old stable distribution (potato) does not contain a leksbot
package.
For the unstable distribution (sid) this problem has been fixed in
version 1.2-5.
We recommend that you update your leksbot package.
Solution : http://www.debian.org/security/2003/dsa-299
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.
|