SUSE-SU-2015:1020-1
Dashboard / Vulnerabilities / SUSE-SU-2015:1020-1
SUSE-SU-2015:1020-1
Summary: Security update for autofs
Details: autofs was updated to fix one security issue. This security issue was fixed: - CVE-2014-8169: Prevent potential privilege escalation via interpreter load path for program-based automount maps (bnc#917977). These non-security issues were fixed: - Dont pass sloppy option for other than nfs mounts (bnc#901448, bnc#916203) - Fix insserv warning at postinstall (bnc#913376) - Fix autofs.service so that multiple options passed through sysconfig AUTOFS_OPTIONS work correctly (bnc#909472)
References: https://www.suse.com/support/update/announcement/2015/suse-su-20151020-1/, https://bugzilla.suse.com/901448, https://bugzilla.suse.com/909472, https://bugzilla.suse.com/913376, https://bugzilla.suse.com/916203, https://bugzilla.suse.com/917977, https://www.suse.com/security/cve/CVE-2014-8169
Affected packages
Package
Name: autofs
Purl: pkg:rpm/suse/autofs&distro=SUSE%20Linux%20Enterprise%20Desktop%2012
Affected ranges
Type: ECOSYSTEM
Events:
