USN-7064-1 fixed a vulnerability in nano. This update provides the corresponding update for Ubuntu 14.04 LTS.
Original advisory details:
It was discovered that nano allowed a possible privilege escalation through an insecure temporary file. If nano was killed while editing, the permissions granted to the emergency save file could be used by an attacker to escalate privileges using a malicious symlink.
{ "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro", "binaries": [ { "binary_version": "2.2.6-1ubuntu1+esm1", "binary_name": "nano" }, { "binary_version": "2.2.6-1ubuntu1+esm1", "binary_name": "nano-dbgsym" }, { "binary_version": "2.2.6-1ubuntu1+esm1", "binary_name": "nano-tiny" }, { "binary_version": "2.2.6-1ubuntu1+esm1", "binary_name": "nano-tiny-dbgsym" }, { "binary_version": "2.2.6-1ubuntu1+esm1", "binary_name": "nano-udeb" }, { "binary_version": "2.2.6-1ubuntu1+esm1", "binary_name": "nano-udeb-dbgsym" } ] }