Debian released updates for previous mandb vulnerabilities (described in BID 8303) that introduced a buffer overrun in handling of hard links. This could permit local attackers to execute arbitrary code in the context of the mandb utility, which is typically user 'man'. It is not known if the utility is prone to this issue on other distributions.
Debian released updates for previous mandb vulnerabilities (described in BID 8303) that introduced a buffer overrun in handling of hard links. This could permit local attackers to execute arbitrary code in the context of the mandb utility, which is typically user 'man'. It is not known if the utility is prone to this issue on other distributions.