Computerworld

Patch: Mandrake Linux, Red Hat slocate utility

A buffer overflow vulnerability in slocate, a secure version of the file search utility locate, could be exploited by a malicious user to gain the group privilege of slocate. The attacker could use this to view all data in the slocate database.

Both Mandrake Linux and Red Hat have released patches to overcome the vulnerability.

For more, go to:

Mandrake Linux: http://www.mandrakesecure.net/en/advisories/advisory.php?name=MDKSA-2004:004

Red Hat: https://rhn.redhat.com/errata/RHSA-2004-040.html