Ubuntu 9.10 / 10.04 LTS : base-files vulnerability (USN-968-1)
High Nessus Plugin ID 48261
SynopsisThe remote Ubuntu host is missing a security-related patch.
DescriptionIt was discovered that the Ubuntu image shipped on some Dell Latitude 2110 systems was accidentally configured to allow unauthenticated package installations. A remote attacker intercepting network communications or a malicious archive mirror server could exploit this to trick the user into installing unsigned packages, resulting in arbitrary code execution with root privileges.
Note that Tenable Network Security has extracted the preceding description block directly from the Ubuntu security advisory. Tenable has attempted to automatically clean and format it as much as possible without introducing additional issues.
SolutionUpdate the affected base-files package.