MGASA-2015-0041

Source
https://advisories.mageia.org/MGASA-2015-0041.html
Import Source
https://advisories.mageia.org/MGASA-2015-0041.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2015-0041
Related
Published
2015-01-27T21:08:29Z
Modified
2015-01-27T20:59:54Z
Summary
Updated busybox packages fix CVE-2014-9645
Details

Updated busybox packages fix security vulnerability:

The modprobe command in busybox before 1.23.0 uses the basename of the module argument as the module to load, allowing arbitrary modules, even when some kernel subsystems try to prevent this (CVE-2014-9645).

References
Credits

Affected packages

Mageia:4 / busybox

Package

Name
busybox
Purl
pkg:rpm/mageia/busybox?distro=mageia-4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.21.1-3.2.mga4

Ecosystem specific

{
    "section": "core"
}