Ubuntu Security Notice USN-624-2
8th April, 2010
erlang vulnerability
A security issue affects these releases of Ubuntu and its derivatives:
- Ubuntu 9.10
Software description
- erlang
Details
USN-624-1 fixed a vulnerability in PCRE. This update provides the
corresponding update for Erlang.
Original advisory details:
Tavis Ormandy discovered that the PCRE library did not correctly handle
certain in-pattern options. An attacker could cause applications linked
against pcre3 to crash, leading to a denial of service.
Update instructions
The problem can be corrected by updating your system to the following package version:
- Ubuntu 9.10:
- erlang-base 1:13.b.1-dfsg-2ubuntu1.1
To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades.
In general, a standard system upgrade is sufficient to effect the
necessary changes.