Oval Definition:
oval:org.mitre.oval:def:8015
Revision Date
:
2014-06-23
Version
:
3
Title
:
DSA-1476 pulseaudio -- programming error
Description
:
Marcus Meissner discovered that the PulseAudio sound server performed insufficient checks when dropping privileges, which could lead to local privilege escalation. The old stable distribution (sarge) doesn't contain pulseaudio.
Family
:
unix
Class
:
patch
Status
:
ACCEPTED
Reference(s)
:
CVE-2008-0008
DSA-1476
Platform(s)
:
Debian GNU/Linux 4.0
Product(s)
:
pulseaudio
Definition Synopsis
Debian GNU/Linux 4.0 is installed.
AND
Packages section
libpulse0 is earlier than 0.9.5-5etch1
OR
pulseaudio-module-lirc is earlier than 0.9.5-5etch1
OR
libpulse-dev is earlier than 0.9.5-5etch1
OR
pulseaudio-utils is earlier than 0.9.5-5etch1
OR
pulseaudio is earlier than 0.9.5-5etch1
OR
pulseaudio-module-hal is earlier than 0.9.5-5etch1
OR
pulseaudio-module-x11 is earlier than 0.9.5-5etch1
OR
pulseaudio-esound-compat is earlier than 0.9.5-5etch1
OR
libpulse-mainloop-glib0 is earlier than 0.9.5-5etch1
OR
pulseaudio-module-gconf is earlier than 0.9.5-5etch1
OR
pulseaudio-module-zeroconf is earlier than 0.9.5-5etch1
OR
pulseaudio-module-jack is earlier than 0.9.5-5etch1
OR
libpulse-browse0 is earlier than 0.9.5-5etch1
BACK