Jump to content
Compatible Support Forums
Sign in to follow this  
news

[security-announce] SUSE-SU-2011:0898-1: important: Security update for ecryptfs-utils

Recommended Posts

SUSE Security Update: Security update for ecryptfs-utils

______________________________________________________________________________

 

Announcement ID: SUSE-SU-2011:0898-1

Rating: important

References: #709771

Cross-References: CVE-2011-1831 CVE-2011-1832 CVE-2011-1833

CVE-2011-1834 CVE-2011-1835 CVE-2011-1836

CVE-2011-1837

Affected Products:

SUSE Linux Enterprise Server 11 SP1 for VMware

SUSE Linux Enterprise Server 11 SP1

SUSE Linux Enterprise Desktop 11 SP1

______________________________________________________________________________

 

An update that fixes 7 vulnerabilities is now available.

 

Description:

 

 

This update of ecryptfs-utils fixes several security

problems:

 

* CVE-2011-1831 - Race condition when checking

mountpoint during mount.

* CVE-2011-1832 - Race condition when checking

mountpoint during unmount.

* CVE-2011-1833 - Race condition when checking source

during mount.

* CVE-2011-1834 - Improper mtab handling allowing

corruption due to resource limits, signals, etc.

 

Security Issue references:

 

* CVE-2011-1831

 

* CVE-2011-1832

 

* CVE-2011-1833

 

* CVE-2011-1834

 

* CVE-2011-1835

 

* CVE-2011-1836

 

* CVE-2011-1837

 

 

Indications:

 

Please install this update.

 

Patch Instructions:

 

To install this SUSE Security Update use YaST online_update.

Alternatively you can run the command listed for your product:

 

- SUSE Linux Enterprise Server 11 SP1 for VMware:

 

zypper in -t patch slessp1-ecryptfs-utils-4956

 

- SUSE Linux Enterprise Server 11 SP1:

 

zypper in -t patch slessp1-ecryptfs-utils-4956

 

- SUSE Linux Enterprise Desktop 11 SP1:

 

zypper in -t patch sledsp1-ecryptfs-utils-4956

 

To bring your system up-to-date, use "zypper patch".

 

 

Package List:

 

- SUSE Linux Enterprise Server 11 SP1 for VMware (i586 x86_64):

 

ecryptfs-utils-61-1.29.1

 

- SUSE Linux Enterprise Server 11 SP1 for VMware (x86_64):

 

ecryptfs-utils-32bit-61-1.29.1

 

- SUSE Linux Enterprise Server 11 SP1 (i586 ia64 ppc64 s390x x86_64):

 

ecryptfs-utils-61-1.29.1

 

- SUSE Linux Enterprise Server 11 SP1 (ppc64 s390x x86_64):

 

ecryptfs-utils-32bit-61-1.29.1

 

- SUSE Linux Enterprise Server 11 SP1 (ia64):

 

ecryptfs-utils-x86-61-1.29.1

 

- SUSE Linux Enterprise Desktop 11 SP1 (i586 x86_64):

 

ecryptfs-utils-61-1.29.1

 

- SUSE Linux Enterprise Desktop 11 SP1 (x86_64):

 

ecryptfs-utils-32bit-61-1.29.1

 

 

References:

 

http://support.novell.com/security/cve/CVE-2011-1831.html

http://support.novell.com/security/cve/CVE-2011-1832.html

http://support.novell.com/security/cve/CVE-2011-1833.html

http://support.novell.com/security/cve/CVE-2011-1834.html

http://support.novell.com/security/cve/CVE-2011-1835.html

http://support.novell.com/security/cve/CVE-2011-1836.html

http://support.novell.com/security/cve/CVE-2011-1837.html

https://bugzilla.novell.com/709771

http://download.novell.com/patch/finder/?keywords=e843e9dbd44e851ba600c4d0d266b6a8

 

--

To unsubscribe, e-mail: opensuse-security-announce+unsubscribe ( -at -) opensuse.org

For additional commands, e-mail: opensuse-security-announce+help ( -at -) opensuse.org

 

 

 

Share this post


Link to post

Please sign in to comment

You will be able to leave a comment after signing in



Sign In Now
Sign in to follow this  

×