Ubuntu Security Notice USN-3571-1
14th February, 2018
erlang vulnerabilities
A security issue affects these releases of Ubuntu and its
derivatives:
- Ubuntu 17.10
- Ubuntu 16.04 LTS
- Ubuntu 14.04 LTS
Summary
Several security issues were fixed in Erlang.
Software description
- erlang
- Concurrent, real-time, distributed functional language
Details
It was discovered that the Erlang FTP module incorrectly handled certain
CRLF sequences. A remote attacker could possibly use this issue to inject
arbitrary FTP commands. This issue only affected Ubuntu 14.04 LTS.
()
It was discovered that Erlang incorrectly handled certain regular
expressions. A remote attacker could possibly use this issue to cause
Erlang to crash, resulting in a denial of service, or execute arbitrary
code. This issue only affected Ubuntu 16.04 LTS. ()
Update instructions
The problem can be corrected by updating your system to the following
package version:
- Ubuntu 17.10:
- Ubuntu 16.04 LTS:
- Ubuntu 14.04 LTS:
To update your system, please follow these instructions:
,
,
CVE-2017-1000385
SOCIAL SHARE CARD GENERATOR