A new updated clouldinux-fchange 0.2-9 package with a fix for the cloudlinux-backup-helper-uid vulnerability is now available for download from our updates-testing repository.
We thank Patrick William from Rack911 for the disclosure.
clouldinux-fchange 0.2-9
CLEN-72: Path to the Python interpreter has been hardcoded into the suid binary
yum update cloudlinux-fchange --enablerepo=cloudlinux-updates-testing
yum install cloudlinux-fchange --enablerepo=cloudlinux-updates-testing
yum downgrade clouldinux-fchange --enablerepo=cloudlinux-updates-testing