Publishing details

Changelog

torque (2.4.16+dfsg-1.3ubuntu1.1) trusty-security; urgency=medium

  * SECURITY UPDATE: Buffer overflow vulnerability allows remote attackers
    to execute arbitrary code via a large count value.
    - debian/patches/CVE-2014-0749.patch: Fix stack-based buffer overflow in
      disrsi_.c
    - CVE-2014-0749
  * SECURITY UPDATE: Lack of validation on process owner allows remote
    authenticated users to kill arbitrary processes via a crafted executable.
    - debian/patches/CVE-2014-3684.patch: Limit tm_adopt to only adopt a session
      id that is owned by the calling user.
    - CVE-2014-3684

 -- Eduardo Barretto <email address hidden>  Mon, 04 Feb 2019 12:00:09 -0200

Available diffs

Builds

Built packages

Package files