AIDE is an advanced intrusion detection environment. From versions 0.13 to 0.19.1, there is a null pointer dereference vulnerability in AIDE. An attacker can crash the program during report printing or database listing after setting extended file attributes with an empty attribute value or with a key containing a comma. A local user might exploit this to cause a local denial of service. This issue has been patched in version 0.19.2. A workaround involves removing xattrs group from rules matching files on affected file systems.
{
"availability": "No subscription required",
"binaries": [
{
"binary_name": "aide",
"binary_version": "0.17.4-1ubuntu0.2"
},
{
"binary_name": "aide-common",
"binary_version": "0.17.4-1ubuntu0.2"
},
{
"binary_name": "aide-dynamic",
"binary_version": "0.17.4-1ubuntu0.2"
},
{
"binary_name": "aide-xen",
"binary_version": "0.17.4-1ubuntu0.2"
}
]
}{
"availability": "Available with Ubuntu Pro with Legacy support add-on: https://ubuntu.com/pro",
"binaries": [
{
"binary_name": "aide",
"binary_version": "0.16~a2.git20130520-2ubuntu0.1+esm2"
},
{
"binary_name": "aide-common",
"binary_version": "0.16~a2.git20130520-2ubuntu0.1+esm2"
},
{
"binary_name": "aide-dynamic",
"binary_version": "0.16~a2.git20130520-2ubuntu0.1+esm2"
},
{
"binary_name": "aide-xen",
"binary_version": "0.16~a2.git20130520-2ubuntu0.1+esm2"
}
]
}{
"availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro",
"binaries": [
{
"binary_name": "aide",
"binary_version": "0.16~a2.git20130520-3ubuntu0.1~esm2"
},
{
"binary_name": "aide-common",
"binary_version": "0.16~a2.git20130520-3ubuntu0.1~esm2"
},
{
"binary_name": "aide-dynamic",
"binary_version": "0.16~a2.git20130520-3ubuntu0.1~esm2"
},
{
"binary_name": "aide-xen",
"binary_version": "0.16~a2.git20130520-3ubuntu0.1~esm2"
}
]
}{
"availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro",
"binaries": [
{
"binary_name": "aide",
"binary_version": "0.16-3ubuntu0.1+esm1"
},
{
"binary_name": "aide-common",
"binary_version": "0.16-3ubuntu0.1+esm1"
},
{
"binary_name": "aide-dynamic",
"binary_version": "0.16-3ubuntu0.1+esm1"
},
{
"binary_name": "aide-xen",
"binary_version": "0.16-3ubuntu0.1+esm1"
}
]
}{
"availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro",
"binaries": [
{
"binary_name": "aide",
"binary_version": "0.16.1-1ubuntu0.1+esm1"
},
{
"binary_name": "aide-common",
"binary_version": "0.16.1-1ubuntu0.1+esm1"
},
{
"binary_name": "aide-dynamic",
"binary_version": "0.16.1-1ubuntu0.1+esm1"
},
{
"binary_name": "aide-xen",
"binary_version": "0.16.1-1ubuntu0.1+esm1"
}
]
}