[ubuntu/hardy-security] sudo, sudo (delayed) 1.6.9p10-1ubuntu3.6 (Accepted)

Ubuntu Installer archive at ubuntu.com
Fri Feb 26 21:03:43 GMT 2010


sudo (1.6.9p10-1ubuntu3.6) hardy-security; urgency=low

  * SECURITY UPDATE: properly verify path for the 'sudoedit' pseudo-command
    in parse.c
    - http://sudo.ws/repos/sudo/rev/f86e1b56d074
    - CVE-2010-0426
  * SECURITY UPDATE: reset cached supplementary runas groups when changing
    the runas user in set_perms.c and sudo.c
    - http://sudo.ws/repos/sudo/rev/aa0b6c01c462
    - CVE-2010-0427

Date: Thu, 25 Feb 2010 06:49:56 -0600
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Maintainer: Martin Pitt <martin.pitt at ubuntu.com>
https://launchpad.net/ubuntu/hardy/+source/sudo/1.6.9p10-1ubuntu3.6
-------------- next part --------------
Format: 1.7
Date: Thu, 25 Feb 2010 06:49:56 -0600
Source: sudo
Binary: sudo sudo-ldap
Architecture: source
Version: 1.6.9p10-1ubuntu3.6
Distribution: hardy-security
Urgency: low
Maintainer: Martin Pitt <martin.pitt at ubuntu.com>
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Description: 
 sudo       - Provide limited super user privileges to specific users
 sudo-ldap  - Provide limited super user privileges to specific users
Changes: 
 sudo (1.6.9p10-1ubuntu3.6) hardy-security; urgency=low
 .
   * SECURITY UPDATE: properly verify path for the 'sudoedit' pseudo-command
     in parse.c
     - http://sudo.ws/repos/sudo/rev/f86e1b56d074
     - CVE-2010-0426
   * SECURITY UPDATE: reset cached supplementary runas groups when changing
     the runas user in set_perms.c and sudo.c
     - http://sudo.ws/repos/sudo/rev/aa0b6c01c462
     - CVE-2010-0427
Files: 
 20547db3a024d46b8217acf1e83b83ef 702 admin optional sudo_1.6.9p10-1ubuntu3.6.dsc
 e6db1630f2b05c8e9839f4fe4aca266a 29374 admin optional sudo_1.6.9p10-1ubuntu3.6.diff.gz
Original-Maintainer: Bdale Garbee <bdale at gag.com>


More information about the Hardy-changes mailing list