MDKSA-2007:134
- Package name
- xfsdump
- Date
- 2007-06-21
- Advisory ID
- MDKSA-2007:134
- Affected versions
- 2007.0 x86_64 , 2007.1 i586 , 2007.0 i586 , CS4.0 i586 , CS4.0 x86_64 , 2007.1 x86_64
Problem description
xfs_fsr in xfsdump creates a .fsr temporary directory with insecure
permissions, which allows local users to read or overwrite arbitrary
files on xfs filesystems.
Updated packages have been patched to prevent this issue.
Updated packages
2007.0 x86_64
cd59ba61d3b7f91eaf17fed47f1879d4 2007.0/x86_64/xfsdump-2.2.42-2.1mdv2007.0.x86_64.rpm c60b5ff79d5ad94ab5ec29c0ed1a62ae 2007.0/SRPMS/xfsdump-2.2.42-2.1mdv2007.0.src.rpm
2007.1 i586
d029729a4381ce16e4757d3ef6de3a93 2007.1/i586/xfsdump-2.2.42-3.1mdv2007.1.i586.rpm 6589c5631abe3bcbaf263bb1669c2fea 2007.1/SRPMS/xfsdump-2.2.42-3.1mdv2007.1.src.rpm
2007.0 i586
97f56b6a55551f540ea2babaad4dbb74 2007.0/i586/xfsdump-2.2.42-2.1mdv2007.0.i586.rpm c60b5ff79d5ad94ab5ec29c0ed1a62ae 2007.0/SRPMS/xfsdump-2.2.42-2.1mdv2007.0.src.rpm
CS4.0 i586
75618a03b74d0907ce177321b935dc51 corporate/4.0/i586/xfsdump-2.2.30-1.1.20060mlcs4.i586.rpm 6ef5915bc2d9af9711ce505515d5d535 corporate/4.0/SRPMS/xfsdump-2.2.30-1.1.20060mlcs4.src.rpm
CS4.0 x86_64
a4597c3611dc974d7185ebac985eaf51 corporate/4.0/x86_64/xfsdump-2.2.30-1.1.20060mlcs4.x86_64.rpm 6ef5915bc2d9af9711ce505515d5d535 corporate/4.0/SRPMS/xfsdump-2.2.30-1.1.20060mlcs4.src.rpm
2007.1 x86_64
fe4b4dd1e423d9f418814b17a6eba217 2007.1/x86_64/xfsdump-2.2.42-3.1mdv2007.1.x86_64.rpm 6589c5631abe3bcbaf263bb1669c2fea 2007.1/SRPMS/xfsdump-2.2.42-3.1mdv2007.1.src.rpm
