From: SourceForge.net <no...@so...> - 2011-11-26 08:15:36
|
Bugs item #3442522, was opened at 2011-11-26 00:15 Message generated for change (Tracker Item Submitted) made by gaui You can respond by visiting: https://sourceforge.net/tracker/?func=detail&atid=100599&aid=3442522&group_id=599 Please note that this message will contain a full copy of the comment thread, including the initial issue submission, for this request, not just the latest update. Category: Simulator Group: None Status: Open Resolution: None Priority: 5 Private: No Submitted By: gaui (gaui) Assigned to: Nobody/Anonymous (nobody) Summary: ltdl.c needs upgrade Initial Comment: Hi The file sim/ucsim/libltdl/ltdl.c is still from an ancient libtool version and contains the "CVE-2009-3736 local privilege escalation" bug. http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=559840 Can you please fix this in version 3.1.0? Sorry if I was unclear in my previous emails. Attached is the Debian patch which is used to fix the file but I suggest to copy it directly from the libtool sources. Regards Gudjon ---------------------------------------------------------------------- You can respond by visiting: https://sourceforge.net/tracker/?func=detail&atid=100599&aid=3442522&group_id=599 |