summaryrefslogtreecommitdiff
path: root/scripts/lib/mic/utils
diff options
context:
space:
mode:
authorLi Wang <li.wang@windriver.com>2013-12-05 17:52:17 -0600
committerRobert Yang <liezhi.yang@windriver.com>2014-01-26 14:08:15 +0800
commit478b7f533c6664f1e4cab9950f257d927d32bb28 (patch)
tree06d5abdd587f2bea9e6c0d52d23f14de72cd943d /scripts/lib/mic/utils
parent5748342f445d4233af838a6a65449a5d1baeb3c2 (diff)
downloadopenembedded-core-478b7f533c6664f1e4cab9950f257d927d32bb28.tar.gz
openembedded-core-478b7f533c6664f1e4cab9950f257d927d32bb28.tar.bz2
openembedded-core-478b7f533c6664f1e4cab9950f257d927d32bb28.zip
xinetd: CVE-2013-4342
xinetd does not enforce the user and group configuration directives for TCPMUX services, which causes these services to be run as root and makes it easier for remote attackers to gain privileges by leveraging another vulnerability in a service. http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2013-4342 the patch come from: https://bugzilla.redhat.com/attachment.cgi?id=799732&action=diff (From OE-Core master rev: c6ccb09cee54a7b9d953f58fbb8849fd7d7de6a9) Signed-off-by: Li Wang <li.wang@windriver.com> Signed-off-by: Robert Yang <liezhi.yang@windriver.com> Signed-off-by: Mark Hatle <mark.hatle@windriver.com> Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org> Signed-off-by: Robert Yang <liezhi.yang@windriver.com>
Diffstat (limited to 'scripts/lib/mic/utils')
0 files changed, 0 insertions, 0 deletions