acpid 1:2.0.7-1ubuntu2.4 source package in Ubuntu


acpid (1:2.0.7-1ubuntu2.4) natty-security; urgency=low

  * SECURITY UPDATE: Arbitrary code execution in the power button handling
    script (LP: #893821)
    - debian/ Ensure that the DBUS_SESSION_BUS_ADDRESS environment
      variable is only read from a process owned by the user that will be
      evaluating the variable.
    - CVE-2011-2777
  * SECURITY UPDATE: Unprivileged users may be able to write to directories
    and read files created by event handler scripts
    - event.c: Set a restrictive umask of 0077 before running an event handler
      script. Based on upstream patch.
    - CVE-2011-4578
 -- Tyler Hicks <email address hidden>   Wed, 07 Dec 2011 16:35:28 -0600

Upload details

Uploaded by:
Tyler Hicks on 2011-12-08
Uploaded to:
Original maintainer:
Ubuntu Developers
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section


File Size SHA-256 Checksum
acpid_2.0.7.orig.tar.gz 71.7 KiB a4c5e674176cd32d8d2547c7d0d13ad8c84045c96f5c430da2a82d099f98e09d
acpid_2.0.7-1ubuntu2.4.diff.gz 20.7 KiB b6257e984bb7d334e93f0d86ba56cb1133ad96ee952afd7e1daf3ef988408d3d
acpid_2.0.7-1ubuntu2.4.dsc 1.9 KiB 9d48de189cb89b56d0080be261d4f18bd85e87afc6af9e37dc91c6c8cd30c1ad

View changes file

Binary packages built by this source

acpid: No summary available for acpid in ubuntu natty.

No description available for acpid in ubuntu natty.

kacpimon: No summary available for kacpimon in ubuntu natty.

No description available for kacpimon in ubuntu natty.