You are here
Home > Preporuke > Sigurnosni nedostaci programskog paketa systemd

Sigurnosni nedostaci programskog paketa systemd

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LUB

==========================================================================
Ubuntu Security Notice USN-4120-2
September 10, 2019

systemd regression
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

– Ubuntu 19.04
– Ubuntu 18.04 LTS

Summary:

USN-4120-1 caused a regression in systemd.

Software Description:
– systemd: system and service manager

Details:

USN-4120-1 fixed a vulnerability in systemd. The update included a recent
SRU from the updates pocket that introduced networking problems for some
users. This update fixes the problem.

We apologize for the inconvenience.

Original advisory details:

It was discovered that the systemd-resolved D-Bus interface did not
enforce appropriate access controls. A local unprivileged user could
exploit this to modify a system’s DNS resolver settings.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 19.04:
systemd 240-6ubuntu5.7

Ubuntu 18.04 LTS:
systemd 237-3ubuntu10.29

After a standard system update you need to reboot your computer to make
all the necessary changes.

References:
https://usn.ubuntu.com/4120-2
https://usn.ubuntu.com/4120-1
https://launchpad.net/bugs/1842651

Package Information:
https://launchpad.net/ubuntu/+source/systemd/240-6ubuntu5.7
https://launchpad.net/ubuntu/+source/systemd/237-3ubuntu10.29

—–BEGIN PGP SIGNATURE—–

iQEzBAEBCgAdFiEERN//5MGgCOgyKeIFYR+97NWUbg8FAl14KuMACgkQYR+97NWU
bg+dGggAhx42l6BBNnxg7f0HhUIjLDvb9t99jK55G7PSRf9o/lxXPB1JlzSXwJ3K
QtLJ4SNM75ObiNgZ+Pxx6j7vPPv9184gE3G7lO+TyclugFEQs25SlZP2sftXPIgj
AN4pUrWt0Y1ndDYzfNPxuqH/Vs5X1WsHNrSi8aZTW/8/PBS1cQBc/Jrv1uxU1Gpo
PRv0PPMwreQTqsm0CAYGbBqHMK8tFslWc+bdxgHGAUOE4KxyJGFzQ5Y63CQzyYEI
jMibuIICVZL/4En2qRksA//pPNcoEE4GLR9v4PVyXSoci6Tvm04y5rFcLPYTyx3P
20BDgjQUnCAYqGkSxOmHTVs25aQY7g==
=socr
—–END PGP SIGNATURE—–

AutorZvonimir Bosnjak
Cert idNCERT-REF-2019-09-0001-ADV
CveCERT-CVE-DUMMY
ID izvornikaCERT-ORIGID-DUMMY
ProizvodCERT-DUMMY-PRODUCT
IzvorAdobe
Top
More in Preporuke
Sigurnosni nedostatak programskog paketa polkit

Otkriven je sigurnosni nedostatak u programskom paketu polkit za operacijski sustav RHEL. Otkriveni nedostatak potencijalnim napadačima omogućuje zaobilaženje sigurnosnih ograničenja....

Close