According to a Red Hat Inc. security bulletin, this latest Linux vulnerability is found in fileutils, the package of essential system utilities that manipulate files on a system. The compromised applications include ls, which lists files in a directory, and mkdir, which creates new directories.
Some of the problem distributions include Red Hat versions 7.2 through 9.0, and Fedora Core 1 and Core 2 as well as others. However, the warning said BSD and Solaris platforms were unaffected by the vulnerability.
The Red Hat Security Team provided a patch for the hole, downloadable at omega.uta.edu/~su/fileutils-1.0.6.patch.tar.gz. They warned system admins that this patch is "critical-critical update."
"Again, please apply this patch as soon as possible or you risk your system and others' to be compromised," the bulletin said.