CVE-2013-1068

The OpenStack Nova (python-nova) package 1:2013.2.3-0 before 1:2013.2.3-0ubuntu1.2 and 1:2014.1-0 before 1:2014.1-0ubuntu1.2 and Openstack Cinder (python-cinder) package 1:2013.2.3-0 before 1:2013.2.3-0ubuntu1.1 and 1:2014.1-0 before 1:2014.1-0ubuntu1.1 for Ubuntu 13.10 and 14.04 LTS does not properly set the sudo configuration, which makes it easier for attackers to gain privileges by leveraging another vulnerability.
References
Link Resource
http://ubuntu.com/usn/usn-2248-1 Patch Vendor Advisory
http://www.ubuntu.com/usn/USN-2247-1 Patch Vendor Advisory
http://ubuntu.com/usn/usn-2248-1 Patch Vendor Advisory
http://www.ubuntu.com/usn/USN-2247-1 Patch Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:canonical:ubuntu_linux:13.10:*:*:*:*:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*

History

21 Nov 2024, 01:48

Type Values Removed Values Added
References () http://ubuntu.com/usn/usn-2248-1 - Patch, Vendor Advisory () http://ubuntu.com/usn/usn-2248-1 - Patch, Vendor Advisory
References () http://www.ubuntu.com/usn/USN-2247-1 - Patch, Vendor Advisory () http://www.ubuntu.com/usn/USN-2247-1 - Patch, Vendor Advisory

Information

Published : 2014-06-19 15:55

Updated : 2024-11-21 01:48


NVD link : CVE-2013-1068

Mitre link : CVE-2013-1068

CVE.ORG link : CVE-2013-1068


JSON object : View

Products Affected

canonical

  • ubuntu_linux
CWE
CWE-264

Permissions, Privileges, and Access Controls