1.28r4 contains a fix for a local security exploit. A local exploit
requires a shell on the computer. Web mode is not a problem.
To solve the problem, either update to 1.28r4 or turn off the setuid
bit on Linuxconf
chmod u-s /bin/linuxconf
The rest of the change log will follow