Fedora Legacy Update Advisory
Synopsis: Updated util-linux resolves security vulnerability
Advisory ID: FLSA:1256
Issue date: 2004-03-04
Product: Red Hat Linux
Keywords: Security
Cross references: https://bugzilla.fedora.us/show_bug.cgi?id=1256
CVE Names: CAN-2004-0080
------------------------------------------------------------------------
----------------------------------------------------------------------
1. Topic:
Updated util-linux packages that fix an information leak in the login program are now available.
2. Relevent releases/architectures:
Red Hat Linux 7.2 - i386
3. Problem description:
The util-linux package contains a large variety of low-level system utilities that are necessary for a Linux system to function.
In some situations, the login program could use a pointer that had been freed and reallocated. This could cause unintentional data leakage.
Note: Red Hat Linux releases newer than 7.2 are not vulnerable to this issue. It is recommended that all users upgrade to these updated packages, which are not vulnerable to this issue.