Nom du paquet
xfsdump
Date
2007-06-21
Advisory ID
MDKSA-2007:134
Affected versions
2007.0 x86_64 , 2007.1 i586 , 2007.0 i586 , CS4.0 i586 , CS4.0 x86_64 , 2007.1 x86_64

Problem description

xfs_fsr in xfsdump creates a .fsr temporary directory with insecure
permissions, which allows local users to read or overwrite arbitrary
files on xfs filesystems.

Updated packages have been patched to prevent this issue.

Updated packages

2007.0 x86_64

 cd59ba61d3b7f91eaf17fed47f1879d4  2007.0/x86_64/xfsdump-2.2.42-2.1mdv2007.0.x86_64.rpm 
 c60b5ff79d5ad94ab5ec29c0ed1a62ae  2007.0/SRPMS/xfsdump-2.2.42-2.1mdv2007.0.src.rpm

2007.1 i586

 d029729a4381ce16e4757d3ef6de3a93  2007.1/i586/xfsdump-2.2.42-3.1mdv2007.1.i586.rpm 
 6589c5631abe3bcbaf263bb1669c2fea  2007.1/SRPMS/xfsdump-2.2.42-3.1mdv2007.1.src.rpm

2007.0 i586

 97f56b6a55551f540ea2babaad4dbb74  2007.0/i586/xfsdump-2.2.42-2.1mdv2007.0.i586.rpm 
 c60b5ff79d5ad94ab5ec29c0ed1a62ae  2007.0/SRPMS/xfsdump-2.2.42-2.1mdv2007.0.src.rpm

CS4.0 i586

 75618a03b74d0907ce177321b935dc51  corporate/4.0/i586/xfsdump-2.2.30-1.1.20060mlcs4.i586.rpm 
 6ef5915bc2d9af9711ce505515d5d535  corporate/4.0/SRPMS/xfsdump-2.2.30-1.1.20060mlcs4.src.rpm

CS4.0 x86_64

 a4597c3611dc974d7185ebac985eaf51  corporate/4.0/x86_64/xfsdump-2.2.30-1.1.20060mlcs4.x86_64.rpm 
 6ef5915bc2d9af9711ce505515d5d535  corporate/4.0/SRPMS/xfsdump-2.2.30-1.1.20060mlcs4.src.rpm

2007.1 x86_64

 fe4b4dd1e423d9f418814b17a6eba217  2007.1/x86_64/xfsdump-2.2.42-3.1mdv2007.1.x86_64.rpm 
 6589c5631abe3bcbaf263bb1669c2fea  2007.1/SRPMS/xfsdump-2.2.42-3.1mdv2007.1.src.rpm

References