You are here
Home > Preporuke > Sigurnosni nedostatak programskog paketa Swift

Sigurnosni nedostatak programskog paketa Swift

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LUB

—–BEGIN PGP SIGNED MESSAGE—–
Hash: SHA512

APPLE-SA-2018-05-04-1 Security Update 2018-001 Swift 4.1.1 for
Ubuntu 14.04

Security Update 2018-001 Swift 4.1.1 for Ubuntu 14.04 is
now available and addresses the following:

Swift for Ubuntu
Available for: Ubuntu 14.04
Not impacted: Ubuntu 16.04 and 16.10
Impact: A process may gain admin privileges and execute arbitrary
code
Description: An issue existed in specific versions of Swift on Ubuntu
14.04 where libraries are loaded with write and execute permissions.
This issue was addressed with improved permissions.
CVE-2018-4220: Apple

Installation note:

Security Update 2018-001 Swift 4.1.1 for Ubuntu 14.04 may be obtained
from https://swift.org/download.

Information will also be posted to the Apple Security Updates
web site: https://support.apple.com/kb/HT201222 and the Swift
announcements section on the forum:
https://forums.swift.org/c/general-announce

This message is signed with Apple’s Product Security PGP key,
and details are available at:
https://www.apple.com/support/security/pgp/
—–BEGIN PGP SIGNATURE—–
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=sqwr
—–END PGP SIGNATURE—–
_______________________________________________
Do not post admin requests to the list. They will be ignored.
Security-announce mailing list (Security-announce@lists.apple.com)

AutorDanijel Kozinovic
Cert idNCERT-REF-2018-05-0001-ADV
CveCERT-CVE-DUMMY
ID izvornikaCERT-ORIGID-DUMMY
ProizvodCERT-DUMMY-PRODUCT
IzvorAdobe
Top
More in Preporuke
Sigurnosni nedostatak programskog paketa lucene-solr

Otkriven je sigurnosni nedostatak u programskom paketu lucene-solr za operacijski sustav Debian. Otkriveni nedostatak potencijalnim napadačima omogućuje otkrivanje informacija. Savjetuje...

Close