CVE-2008-2378

Publication date 26 November 2008

Last updated 24 July 2024


Ubuntu priority

Description

Untrusted search path vulnerability in hfkernel in hf 0.7.3 and 0.8 allows local users to gain privileges via a Trojan horse killall program in a directory in the PATH, related to improper handling of the -k option.

Status

Package Ubuntu Release Status
hf 9.04 jaunty Not in release
8.10 intrepid
Fixed 0.8-8ubuntu0.1
8.04 LTS hardy
Fixed 0.8-5ubuntu0.1
7.10 gutsy
Fixed
6.06 LTS dapper
Fixed 0.7.3-2ubuntu0.1