_______________________________________________________________________
Package : udev
Date : April 30, 2009
Affected: Corporate 4.0
_______________________________________________________________________
Problem Description:
udev before 1.4.1 does not verify whether a NETLINK message originates
from kernel space, which allows local users to gain privileges by
sending a NETLINK message from user space (CVE-2009-1185).
The updated packages have been patched to prevent this.
_______________________________________________________________________
References:
http://cve.mitre.org/cgi-bin/cvename.cg ... -2009-1185
_______________________________________________________________________