CVE-2007-0227

Publication date 13 January 2007

Last updated 24 July 2024


Ubuntu priority

slocate 3.1 does not properly manage database entries that specify names of files in protected directories, which allows local users to obtain the names of private files. NOTE: another researcher reports that the issue is not present in slocate 2.7.

Status

Package Ubuntu Release Status
slocate 7.04 feisty
Fixed 3.1-1ubuntu1
6.10 edgy
Fixed 3.1-1ubuntu0.1
6.06 LTS dapper
Fixed 3.0.beta.r3-1ubuntu0.1

References

Related Ubuntu Security Notices (USN)

    • USN-425-1
    • slocate vulnerability
    • 22 February 2007

Other references