MGASA-2015-0239

Source
https://advisories.mageia.org/MGASA-2015-0239.html
Import Source
https://advisories.mageia.org/MGASA-2015-0239.json
JSON Data
https://api.test.osv.dev/v1/vulns/MGASA-2015-0239
Related
Published
2015-05-27T16:57:52Z
Modified
2015-05-27T16:47:47Z
Summary
Updated fuse packages fix CVE-2015-3202
Details

Updated fuse packages fix security vulnerability:

Tavis Ormandy discovered that FUSE incorrectly filtered environment variables. A local attacker could use this issue to gain administrative privileges (CVE-2015-3202).

References
Credits

Affected packages

Mageia:4 / fuse

Package

Name
fuse
Purl
pkg:rpm/mageia/fuse?distro=mageia-4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.3-2.1.mga4

Ecosystem specific

{
    "section": "core"
}