MGASA-2014-0517
Dashboard / Vulnerabilities / MGASA-2014-0517
Summary: Updated util-linux packages fix CVE-2014-9114
Details: Updated util-linux packages fix security vulnerability: Sebastian Krahmer reported a command injection flaw in blkid. This could possibly result in command execution with root privileges (CVE-2014-9114). The util-linux package has been updated to version 2.24.2 and patched to fix this issue and other bugs.
References: https://advisories.mageia.org/MGASA-2014-0517.html, https://bugs.mageia.org/show_bug.cgi?id=14727, ftp://ftp.kernel.org/pub/linux/utils/util-linux/v2.24/v2.24.1-ReleaseNotes, ftp://ftp.kernel.org/pub/linux/utils/util-linux/v2.24/v2.24.2-ReleaseNotes, https://lists.fedoraproject.org/pipermail/package-announce/2014-December/145188.html
Affected packages
Package
Name: util-linux
Purl: pkg:rpm/mageia/util-linux?arch=source&distro=mageia-4
Affected ranges
Type: ECOSYSTEM
Events:
