Tuesday, September 10, 2019

[USN-4120-2] systemd regression

-----BEGIN PGP SIGNATURE-----

iQEzBAEBCgAdFiEERN//5MGgCOgyKeIFYR+97NWUbg8FAl14KuMACgkQYR+97NWU
bg+dGggAhx42l6BBNnxg7f0HhUIjLDvb9t99jK55G7PSRf9o/lxXPB1JlzSXwJ3K
QtLJ4SNM75ObiNgZ+Pxx6j7vPPv9184gE3G7lO+TyclugFEQs25SlZP2sftXPIgj
AN4pUrWt0Y1ndDYzfNPxuqH/Vs5X1WsHNrSi8aZTW/8/PBS1cQBc/Jrv1uxU1Gpo
PRv0PPMwreQTqsm0CAYGbBqHMK8tFslWc+bdxgHGAUOE4KxyJGFzQ5Y63CQzyYEI
jMibuIICVZL/4En2qRksA//pPNcoEE4GLR9v4PVyXSoci6Tvm04y5rFcLPYTyx3P
20BDgjQUnCAYqGkSxOmHTVs25aQY7g==
=socr
-----END PGP SIGNATURE-----
==========================================================================
Ubuntu Security Notice USN-4120-2
September 10, 2019

systemd regression
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 19.04
- Ubuntu 18.04 LTS

Summary:

USN-4120-1 caused a regression in systemd.

Software Description:
- systemd: system and service manager

Details:

USN-4120-1 fixed a vulnerability in systemd. The update included a recent
SRU from the updates pocket that introduced networking problems for some
users. This update fixes the problem.

We apologize for the inconvenience.

Original advisory details:

It was discovered that the systemd-resolved D-Bus interface did not
enforce appropriate access controls. A local unprivileged user could
exploit this to modify a system's DNS resolver settings.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 19.04:
systemd 240-6ubuntu5.7

Ubuntu 18.04 LTS:
systemd 237-3ubuntu10.29

After a standard system update you need to reboot your computer to make
all the necessary changes.

References:
https://usn.ubuntu.com/4120-2
https://usn.ubuntu.com/4120-1
https://launchpad.net/bugs/1842651

Package Information:
https://launchpad.net/ubuntu/+source/systemd/240-6ubuntu5.7
https://launchpad.net/ubuntu/+source/systemd/237-3ubuntu10.29

No comments:

Post a Comment