RHSA-2007:0969: Moderate: util-linux security update
The util-linux package contains a large variety of low-level systemutilities that are necessary for a Linux system to function. A flaw was discovered in the way that the mount and umount utilitiesused the setuid and setgid functions, which could lead to privileges beingdropped improperly. A local user could use this flaw to run mount helperapplications such as, mount.nfs, with additional privileges (CVE-2007-5191).Users are advised to update to these erratum packages which contain abackported patch to correct this issue.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2007:0969?
The severity of RHSA-2007:0969 is classified as moderate.
How do I fix RHSA-2007:0969?
To fix RHSA-2007:0969, update the util-linux package to version 2.13-0.45.el5_1.1 or 2.12a-17.el4_6.1 depending on your system.
Which systems are affected by RHSA-2007:0969?
RHSA-2007:0969 affects systems using util-linux versions prior to 2.13-0.45.el5_1.1 and 2.12a-17.el4_6.1.
What specific utilities are involved in RHSA-2007:0969?
The specific utilities involved in RHSA-2007:0969 are the mount and umount utilities.
What kind of vulnerability is addressed in RHSA-2007:0969?
RHSA-2007:0969 addresses a vulnerability related to improper handling of setuid and setgid functions.