** Description changed:

- [chown() was racy relative to execve()]
+ Race condition in the prepare_binprm function in fs/exec.c in the Linux
+ kernel before 3.19.6 allows local users to gain privileges by executing
+ a setuid program at a time instant when a chown to root is in progress,
+ and the ownership is changed but the setuid bit is not yet stripped.
  
  Break-Fix: - 8b01fc86b9f425899f8a3a8fc1c47d73c2c20543

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1447373

Title:
  CVE-2015-3339

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1447373/+subscriptions

-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to