Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home > News > Editor Blogs > Linux

December 8th, 2011, 15:01 GMT · By Silviu Stahie

BLOG

Two Security Updates Released for Ubuntu 11.10

SHARE:

Adjust text size:

Enlarge picture
Ubuntu 11.10, the latest Linux distribution launched by Canonical, has received two important security updates, one for a krb5 vulnerability and the other one for a colord vulnerability. 

The krb5 vulnerability presented a security issue that affected the Kerberos Key Distribution Center (KDC) which could be made to crash. Simo Sorce discovered that a NULL pointer dereference existed in the Kerberos Key Distribution Center (KDC) and a DoS attack could be caused by an authenticated remote attacker.

The second security vulnerability is for colord, which incorrectly handled certain SQL queries. Because of this, arbitrary sqlite databases could be modified by a local attacker. On the Ubuntu operating system, colord runs by default as its own user, therefore standard file permissions would limit which databases could be altered.

The problems are easily fixable by updating the system(s) to colord 0.1.12-1ubuntu2.1 and krb5-kdc 1.9.1+dfsg-1ubuntu2.2.

TELL US WHAT YOU THINK:

1,335 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


KDE SC 4.8 Beta 2 Is Available for Testing

KDE SC 4.7.4 Is Now Available for Download

Debian 5.0 Reaches End-of-Life on February 2012

Trine 2 Coming to Linux

Ubuntu Security Update for Vsftpd

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2012 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM