[ubuntu/hardy-security] sudo, sudo (delayed) 1.6.9p10-1ubuntu3.6 (Accepted)
Ubuntu Installer
archive at ubuntu.com
Fri Feb 26 21:03:43 GMT 2010
sudo (1.6.9p10-1ubuntu3.6) hardy-security; urgency=low
* SECURITY UPDATE: properly verify path for the 'sudoedit' pseudo-command
in parse.c
- http://sudo.ws/repos/sudo/rev/f86e1b56d074
- CVE-2010-0426
* SECURITY UPDATE: reset cached supplementary runas groups when changing
the runas user in set_perms.c and sudo.c
- http://sudo.ws/repos/sudo/rev/aa0b6c01c462
- CVE-2010-0427
Date: Thu, 25 Feb 2010 06:49:56 -0600
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Maintainer: Martin Pitt <martin.pitt at ubuntu.com>
https://launchpad.net/ubuntu/hardy/+source/sudo/1.6.9p10-1ubuntu3.6
-------------- next part --------------
Format: 1.7
Date: Thu, 25 Feb 2010 06:49:56 -0600
Source: sudo
Binary: sudo sudo-ldap
Architecture: source
Version: 1.6.9p10-1ubuntu3.6
Distribution: hardy-security
Urgency: low
Maintainer: Martin Pitt <martin.pitt at ubuntu.com>
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Description:
sudo - Provide limited super user privileges to specific users
sudo-ldap - Provide limited super user privileges to specific users
Changes:
sudo (1.6.9p10-1ubuntu3.6) hardy-security; urgency=low
.
* SECURITY UPDATE: properly verify path for the 'sudoedit' pseudo-command
in parse.c
- http://sudo.ws/repos/sudo/rev/f86e1b56d074
- CVE-2010-0426
* SECURITY UPDATE: reset cached supplementary runas groups when changing
the runas user in set_perms.c and sudo.c
- http://sudo.ws/repos/sudo/rev/aa0b6c01c462
- CVE-2010-0427
Files:
20547db3a024d46b8217acf1e83b83ef 702 admin optional sudo_1.6.9p10-1ubuntu3.6.dsc
e6db1630f2b05c8e9839f4fe4aca266a 29374 admin optional sudo_1.6.9p10-1ubuntu3.6.diff.gz
Original-Maintainer: Bdale Garbee <bdale at gag.com>
More information about the Hardy-changes
mailing list