Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
TRENDING TODAY
Home > News > Linux > Linux & Opensource Blog

December 18th, 2012, 13:46 GMT · By

BLOG

Apport Exploit Fixed in Multiple Ubuntu OSes

SHARE:

Adjust text size:


Ubuntu 12.04 LTS desktop Enlarge picture - Ubuntu 12.04 LTS desktop
On December 17, Canonical published in a security notice details about an Apport exploit for its Ubuntu 12.04 LTS (Precise Pangolin), Ubuntu 11.10 (Oneiric Ocelot), and Ubuntu 10.04 LTS ((Lucid Lynx) operating systems.

According to Canonical, a hardening measure was added to the apport package.

It was discovered that an application running under an AppArmor profile, that allowed unconfined execution of apport-bug, could escape confinement by calling apport-bug with a crafted environment.

While not a vulnerability in the apport package itself, this update mitigates the issue by sanitizing certain variables in the apport-bug shell script.

For a more detailed description of the security problems, you can visit Canonical's security notification.

Users can simply fix the security flaws by upgrading the operating systems to the latest apport package specific to each distribution.

A normal system update, executed with the Update Manager, will implement all the necessary changes. A complete system restart is not necessary.

TELL US WHAT YOU THINK:

731 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


ZevenOS-Neptune 3.0 Beta 2 Has KDE 4.10 Beta 2

Linux Kernel 3.6.11 Is Dead and Buried, Long Live 3.7.1

DragonFly BSD 3.2.2 Released, Integrates Better Support for VIA Processors

Linux Kernel 3.7.1 Is Available for Download, Has iPhone 5 Support

Clonezilla Live 2.0.1-15 Is Powered by Linux Kernel 3.2.35

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2013 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM