Util-linux File Locking Race Condition Vulnerability Solution:
An unofficial source code patch is available. Red Hat has released fixes in bulletin RHSA-2002:132-14 (see references section).
Users of HP Secure OS Software for Linux Release 1.0 are advised to install the available Red Hat fixes.
SCO has released a security advisory. Fixes are available.
Fixes:
RedHat util-linux-2.10s-12.i386.rpm
RedHat util-linux-2.11n-12.i386.rpm
RedHat util-linux-2.10m-12.i386.rpm
RedHat mount-2.11n-12.i386.rpm
RedHat util-linux-2.10f-7.i386.rpm
RedHat losetup-2.11n-12.i386.rpm
MandrakeSoft Corporate Server 1.0.1
Caldera OpenLinux Server 3.1
Caldera OpenLinux Workstation 3.1
Caldera OpenLinux Server 3.1.1
Caldera OpenLinux Workstation 3.1.1
Conectiva Linux 6.0
RedHat Linux 6.2
RedHat Linux 6.2 alpha
RedHat Linux 6.2 sparc
Conectiva Linux 7.0
RedHat Linux 7.0
RedHat Linux 7.0 alpha
MandrakeSoft Linux Mandrake 7.1
RedHat Linux 7.1 alpha
RedHat Linux 7.1 ia64
RedHat Linux 7.1
MandrakeSoft Linux Mandrake 7.2
RedHat Linux 7.2 ia64
RedHat Linux 7.2
MandrakeSoft Single Network Firewall 7.2
RedHat Linux 7.2 alpha
RedHat Linux 7.3
MandrakeSoft Linux Mandrake 8.0 ppc
Conectiva Linux 8.0
MandrakeSoft Linux Mandrake 8.0
MandrakeSoft Linux Mandrake 8.1 ia64
MandrakeSoft Linux Mandrake 8.1
MandrakeSoft Linux Mandrake 8.2
MandrakeSoft Linux Mandrake 8.2 ppc