network-manager-vpnc (0.9.8.6-1ubuntu2.1) trusty-security; urgency=medium
* SECURITY UPDATE: Privilege escalation attack
- debian/patches/CVE-2018-10900.patch: Disallow newlines in configuration
values. If we didn't it would allow the user to inject arbitrary
configuration directives with potential security implications.
- CVE-2018-10900
Date: 2018-07-27 15:07:17.298716+00:00
Changed-By: Mike Salvatore <[email protected]>
https://launchpad.net/ubuntu/+source/network-manager-vpnc/0.9.8.6-1ubuntu2.1
Sorry, changesfile not available.
--
Trusty-changes mailing list
[email protected]
Modify settings or unsubscribe at:
https://lists.ubuntu.com/mailman/listinfo/trusty-changes