Zum Inhalt springen.
Sympa Menü

it-securitynotifies - [IT-SecNots] [SECURITY] [DSA 5815-1] needrestart security update

it-securitynotifies AT lists.piratenpartei.de

Betreff: Sicherheitsankündigungen

Listenarchiv

[IT-SecNots] [SECURITY] [DSA 5815-1] needrestart security update


Chronologisch Thread  
  • From: Salvatore Bonaccorso <carnil AT debian.org>
  • To: debian-security-announce AT lists.debian.org
  • Subject: [IT-SecNots] [SECURITY] [DSA 5815-1] needrestart security update
  • Date: Tue, 19 Nov 2024 16:33:33 +0000
  • Authentication-results: lists.piratenpartei.de; dkim=none; spf=none (lists.piratenpartei.de: domain of "bounce-debian-security-announce=it-securitynotifies=lists.piratenpartei.de AT lists.debian.org" has no SPF policy when checking 82.195.75.100) smtp.mailfrom="bounce-debian-security-announce=it-securitynotifies=lists.piratenpartei.de AT lists.debian.org"; dmarc=none
  • List-archive: https://lists.debian.org/msgid-search/E1tDRAT-00BQlf-Du AT seger.debian.org
  • List-id: <debian-security-announce.lists.debian.org>
  • List-url: <http://lists.debian.org/debian-security-announce/>
  • Old-dkim-signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=debian.org; s=smtpauto.seger; h=Date:Message-Id:Subject:To:From:Reply-To:Cc:MIME-Version: Content-Type:Content-Transfer-Encoding:Content-ID:Content-Description: In-Reply-To:References; bh=TErAfw3IYrR42UzdMGFiKxKwOaYR/qEv8G2Q+JVxCFo=; b=YN HP1JkLK39/5dRqTYIpMDuTWjLnbWfMlbZzpytK7ryjZLZtfszVHm4J128B6e54LmI+0f45Z35Pjvc d0U513mWodaoChc+1QivfJNivsUGYcLUtGHaXYX94zUDJ0H1J3c5T+xT4YIQyHHs/WafvGTEXnmnE 4KqpmAKW4ADKrxWNS9LWOqrcm4Sb5hRvpWWgckz+u2FUeXs1X86tm5DXAuRiE/B7Vhf2jIDK8CUeB XTn7UvLDr3wjjmunlEQmH+xiFW2JQeYgMaJrfvSks2H1IhqdTf0N7tTJ7ZiHSzjdN/mpesETli3nS TmkBCwCQen2rorg0veklLw4QpCbPJ8yA==;
  • Old-return-path: <carnil AT seger.debian.org>
  • Priority: urgent
  • Resent-date: Tue, 19 Nov 2024 16:33:54 +0000 (UTC)
  • Resent-from: debian-security-announce AT lists.debian.org
  • Resent-message-id: <9D2UuMGCdrI.A.QSeH.x3LPnB@bendel>
  • Resent-sender: debian-security-announce-request AT lists.debian.org

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

- -------------------------------------------------------------------------
Debian Security Advisory DSA-5815-1 security AT debian.org
https://www.debian.org/security/ Salvatore Bonaccorso
November 19, 2024 https://www.debian.org/security/faq
- -------------------------------------------------------------------------

Package : needrestart
CVE ID : CVE-2024-11003 CVE-2024-48990 CVE-2024-48991 CVE-2024-48992

The Qualys Threat Research Unit discovered several local privilege
escalation vulnerabilities in needrestart, a utility to check which
daemons need to be restarted after library upgrades. A local attacker
can execute arbitrary code as root by tricking needrestart into running
the Python interpreter with an attacker-controlled PYTHONPATH
environment variable (CVE-2024-48990) or running the Ruby interpreter
with an attacker-controlled RUBYLIB environment variable
(CVE-2024-48992). Additionally a local attacker can trick needrestart
into running a fake Python interpreter (CVE-2024-48991) or cause
needrestart to call the Perl module Module::ScanDeps with
attacker-controlled files (CVE-2024-11003).

Details can be found in the Qualys advisory at
https://www.qualys.com/2024/11/19/needrestart/needrestart.txt

For the stable distribution (bookworm), these problems have been fixed in
version 3.6-4+deb12u2.

We recommend that you upgrade your needrestart packages.

For the detailed security status of needrestart please refer to its
security tracker page at:
https://security-tracker.debian.org/tracker/needrestart

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/

Mailing list: debian-security-announce AT lists.debian.org
-----BEGIN PGP SIGNATURE-----

iQKTBAEBCgB9FiEERkRAmAjBceBVMd3uBUy48xNDz0QFAmc8u7BfFIAAAAAALgAo
aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDQ2
NDQ0MDk4MDhDMTcxRTA1NTMxRERFRTA1NENCOEYzMTM0M0NGNDQACgkQBUy48xND
z0SWTw//ZZyH3BeNHygAtvD7zi6CEOe6Ni/1fz6RWMiKXmcRFoEPvTb5w7lg7ofj
TtpZA3Om2ydUnil+XbmaIC9O5/dJ3+oFAtPyUHqI6aIwbr8PDhsJegVh7XW2lw3I
zou8DQrNVgTLVhYZNJ+q77HqxMYE73opIH7D5YjTY11jgqXIGzFTvuoVFdnmBKCY
wgdEUaGf0nidS58HnArIxaT2ObGFgtyfxo+mjRYhUDNuJRDe1p2v7DCs8HnZA1XG
XbVU2ueZkvyAjFi8LwfJA2+ju1CA6JHQUttm/YiJIqXSe204UQdDpFW7fgHOMvGI
ZawWI1ohzSSVmNck4UxWZ5IxNwbFK2YNAH1XqL8NUTnhFRcUlf1i8eWJn6Tbp2jO
YZ52CsnVruAmB7o0u3fQE6YJGFtuX9dmO+/qF6/SXrBrqMUVxeoKGFZBGNOH2ppE
sNB4Dl6yRd6rxaDCSNMSRRSHDNJJxSBSUiyKSmQYziDpciRTgiHDlxzThv8hrCBT
osH/63F02Ep/gj/QQcbL+FXpD5w6eLk6mJMRnfv+MvqzzEm0DrRA9g8v6r2lTVPT
hHEFpWuRHEtF1V6PuwMQMqIjWK/XnoTOzylTkerQmsy0oP8BwRtDF652csyDGbSE
rO17YGPLUCH6fLbgagIUisrzq/tfZmRcIjsUTsYLQgDGidtMccI=
=Rku5
-----END PGP SIGNATURE-----



  • [IT-SecNots] [SECURITY] [DSA 5815-1] needrestart security update, Salvatore Bonaccorso, 19.11.2024

Archiv bereitgestellt durch MHonArc 2.6.19+.

Seitenanfang