Release Info

Advisory: CLSA-2023:1692296244

OS: Ubuntu 18.04 ELS

Public date: 2023-08-17 14:17:27

Project: amanda

Version: 1:3.5.1-1ubuntu0.3+tuxcare.els1

Errata link: https://errata.cloudlinux.com/ubuntu18-els/CLSA-2023-1692296244.html

Changelog

* SECURITY UPDATE: privilege escalation through runtar SUID program - debian/patches/CVE-2023-30577.patch: introduce tar option allow list * Fix changelog installation - CVE-2023-30577

Update

Update command: apt-get update apt-get --only-upgrade install amanda*

Packages list

amanda-client_3.5.1-1ubuntu0.3+tuxcare.els1_amd64.deb amanda-common_3.5.1-1ubuntu0.3+tuxcare.els1_amd64.deb amanda-server_3.5.1-1ubuntu0.3+tuxcare.els1_amd64.deb

CVEs

CVE-2023-30577