LWN.net Logo

bcfg2: code execution

Package(s):bcfg2 CVE #(s):CVE-2012-3366
Created:June 29, 2012 Updated:October 29, 2012
Description:

From the Debian advisory:

It was discovered that malicious clients can trick the server component of the Bcfg2 configuration management system to execute commands with root privileges.

Alerts:
Debian DSA-2503-1 2012-06-28
Fedora FEDORA-2012-10391 2012-10-28
Fedora FEDORA-2012-10402 2012-10-28

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds