LWN.net Logo

lvm2-cluster: privilege escalation

Package(s):lvm2-cluster CVE #(s):CVE-2010-2526
Created:July 28, 2010 Updated:October 7, 2010
Description: The cluster logical volume manager deamon (clvmd) in the lvm2-cluster package does not authenticate clients connecting to the Unix-domain societ used for control operations. As a result, local, unprivileged users can perform cluster management operations.
Alerts:
Fedora FEDORA-2010-12250 2010-08-07
openSUSE openSUSE-SU-2010:0615-1 2010-09-16
SUSE SUSE-SR:2010:017 2010-09-21
Fedora FEDORA-2010-13708 2010-08-30
Fedora FEDORA-2010-13708 2010-08-30
Mandriva MDVSA-2010:171 2010-09-06
Debian DSA-2095-1 2010-08-23
CentOS CESA-2010:0567 2010-07-29
Red Hat RHSA-2010:0567-01 2010-07-28
Ubuntu USN-1001-1 2010-10-06

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds