FS#58102 - [beep] CVE-2018-0492

Attached to Project: Arch Linux
Opened by Anonymous (reallybmn) - Wednesday, 04 April 2018, 15:44 GMT
Last edited by Doug Newgard (Scimmia) - Wednesday, 04 April 2018, 17:43 GMT
Task Type Bug Report
Category Packages: Extra
Status Closed
Assigned To No-one
Architecture All
Severity Medium
Priority Normal
Reported Version
Due in Version Undecided
Due Date Undecided
Percent Complete 100%
Votes 0
Private No

Details

Description: Johnathan Nightingale beep through 1.3.4, if setuid, has a race condition that allows local privilege escalation.

https://security-tracker.debian.org/tracker/CVE-2018-0492


Discussion and Patch: https://github.com/johnath/beep/issues/11
This task depends upon

Closed by  Doug Newgard (Scimmia)
Wednesday, 04 April 2018, 17:43 GMT
Reason for closing:  Not a bug
Additional comments about closing:  It's not setuid on Arch

Loading...