USN-5447-1: logrotate vulnerability
26 May 2022
logrotate could be made to stop processing log files.
Releases
Packages
- logrotate - Log rotation utility
Details
It was discovered that logrotate incorrectly handled the state file. A
local attacker could possibly use this issue to keep a lock on the state
file and cause logrotate to stop working, leading to a denial of service.
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 22.04
Ubuntu 21.10
In general, a standard system update will make all the necessary changes.