Detailstmpwatch as shipped in Red Hat Linux 6.1, 6.2, and 7.0 uses fork() to The tmpwatch program periodically cleans up files in temporary directories SolutionFor each RPM for your particular architecture, run:
rpm -Fvh [filename] where filename is the name of the RPM. Updated packages
Bugs fixed (see bugzilla for more information)17286 - tmpwatch run from cron allows locale DoS. References
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2000-0816
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2000-0829 Thanks go to Internet Security System's X-Force team (xforce@iss.net) for discovering and documenting the local root exploit. Keywords
fork
These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from: https://www.redhat.com/security/team/key/#package The Red Hat security contact is secalert@redhat.com. More contact details at http://www.redhat.com/security/team/contact/ |
||||||||||||||||||||||||||||||||||||||||||||||||||