Bug#803517: fglrx-driver: CVE-2015-7723, CVE-2015-7724: Privilege Escalation Via Symlink Attacks On POSIX Shared Memory With Insecure Permissions

2015-11-02 Thread Andreas Beckmann
On 2015-10-30 23:20, Andreas Beckmann wrote: > probably no dsa for wheezy/jessie as well > regular pu would be possible, but requires a new upstream version I filed a PU request for jessie to get 12.9 in there: https://bugs.debian.org/803730 Or is there any reason we shouldn't update jessie to

Bug#803517: fglrx-driver: CVE-2015-7723, CVE-2015-7724: Privilege Escalation Via Symlink Attacks On POSIX Shared Memory With Insecure Permissions

2015-10-30 Thread Andreas Beckmann
Source: fglrx-driver Severity: serious Tags: security Control: fixed -1 1:15.9-1 CVE-2015-7723, CVE-2015-7724: https://www.portcullis-security.com/security-research-and-downloads/security-advisories/cve-2015-7723/