Oval Definition:oval:com.ubuntu.precise:def:20140240000
Revision Date:2014-05-27Version:1
Title:CVE-2014-0240 on Ubuntu 12.04 LTS (precise) - medium.
Description:The mod_wsgi module before 3.5 for Apache, when daemon mode is enabled, does not properly handle error codes returned by setuid when run on certain Linux kernels, which allows local users to gain privileges via vectors related to the number of running processes.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2014-0240
Platform(s):Ubuntu 12.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 12.04 LTS (precise) is installed.
  • AND The 'mod-wsgi' package in precise was vulnerable but has been fixed (note: '3.3-4ubuntu0.1').
  • BACK