User: Password:
Subscribe / Log in / New account

Wednesday's security updates

Wednesday's security updates

Posted Nov 2, 2011 17:57 UTC (Wed) by nirik (subscriber, #71)
Parent article: Wednesday's security updates

I'll note that calibre as shipped in Fedora at least doesn't include the suid mount helper (except as a dummy script that has a note that we don't use it).

I suspect other distributors do likewise, so it may be that many folks are not vulnerable to this if they are using their distro packages.

(Log in to post comments)

calibre in Ubuntu

Posted Nov 3, 2011 13:57 UTC (Thu) by smb (subscriber, #53308) [Link]

In Ubuntu, in 10.10 (maverick) and beyond, calibre's mount helper is replaced by the non-setuid udisks version that Martin Pitt wrote for Debian. In 10.04 LTS, the calibre package does not include the mount helper at all, and calibre is not in 8.04 LTS (hardy) at all.

Copyright © 2017, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds