USN-6614-1: amanda vulnerability
It was discovered that amanda did not properly check certain arguments. A local unprivileged attacker could possibly use this issue to perform a privilege escalation attack.
Affected Software
Event History
Frequently Asked Questions
What is the severity of USN-6614-1?
The severity of USN-6614-1 is classified as a privilege escalation vulnerability.
How do I fix USN-6614-1?
To fix USN-6614-1, update the amanda-client package to a vulnerable-free version specified in the advisory.
Which versions of amanda-client are affected by USN-6614-1?
USN-6614-1 affects versions of amanda-client prior to 1:3.5.1-11ubuntu0.23.10.1 for Ubuntu 23.10, 1:3.5.1-8ubuntu1.4 for Ubuntu 22.04, 1:3.5.1-2ubuntu0.4 for Ubuntu 20.04, and 1:3.5.1-1ubuntu0.3+esm1 for Ubuntu 18.04.
Who can exploit the vulnerability identified in USN-6614-1?
The vulnerability identified in USN-6614-1 can be exploited by a local unprivileged attacker.
What product is affected in USN-6614-1?
The affected product in USN-6614-1 is the amanda-client package on supported versions of Ubuntu.