English
The Internet threat alert status is currently normal. At present, no major epidemics or other serious incidents have been recorded by Kaspersky Lab’s monitoring service. Internet threat level: 1

Gentoo update for libgssglue


Secunia ID

SA50785

CVE-ID

CVE-2011-2709

Release Date

28 Sep 2012

Criticality

Less Critical

Solution Status

Vendor Patch

Where

Local system

Impact
Privilege escalation

This covers vulnerabilities where a user is able to conduct certain tasks with the privileges of other users or administrative users.

This typically includes cases where a local user on a client or server system can gain access to the administrator or root account thus taking full control of the system.

Description

Gentoo has issued an update for libgssglue. This fixes a vulnerability, which can be exploited by malicious, local users to gain escalated privileges.

For more information:
SA45075

Solution

Update to "net-libs/libgssglue-0.4" or later.

Original Advisory

GLSA 201209-22:
http://www.gentoo.org/security/en/glsa/glsa-201209-22.xml