what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New

debian.mgetty.txt

debian.mgetty.txt
Posted Mar 9, 2001
Site debian.org

Debian Security Advisory DSA-011-1 - Mgetty does not create temporary files in a secure manner, which could lead to a symlink attack. This has been corrected in mgetty 1.1.21-3potato1.

systems | linux, debian
SHA-256 | 18198c10a582b5c688bf77dd7360222175504d0a1fd55438b835e2649cc357bd

debian.mgetty.txt

Change Mirror Download
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ----------------------------------------------------------------------------
Debian Security Advisory DSA-011-2 security@debian.org
https://www.debian.org/security/ Martin Schulze
March 6, 2001
- ----------------------------------------------------------------------------

Package : mgetty
Vulnerability : insecure tempfile creation
Debian-specific: no

In Debian Security Advisory DSA 011-1 we have reported insecure
creation of temporary files in the mgetty package that have been
fixed. For details please read the main advisory.

The most recent advisory covering proftpd missed two architectures that
were released with Debian GNU/Linux 2.2. Therefore this advisory is
only an addition to DSA 011-1 and only adds the relevant package for
the Motorola 680x0 and PowerPC architecture.

We recommend you upgrade your sudo packages for m68k immediately.

wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.

You may use an automated update by adding the resources from the
footer to the proper configuration.


Debian GNU/Linux 2.2 alias potato
- ------------------------------------

Potato was released for the alpha, arm, i386, m68k, powerpc and sparc
architectures.


Motorola 680x0 architecture:

https://security.debian.org/dists/stable/updates/main/binary-m68k/mgetty-fax_1.1.21-3potato1_m68k.deb
MD5 checksum: c175cdd07927e5a6e9f6ebecbd91366b
https://security.debian.org/dists/stable/updates/main/binary-m68k/mgetty-viewfax_1.1.21-3potato1_m68k.deb
MD5 checksum: 8aa48ed8b00d7873452cac3970c47877
https://security.debian.org/dists/stable/updates/main/binary-m68k/mgetty-voice_1.1.21-3potato1_m68k.deb
MD5 checksum: 89a9c11cfaa04cac4f2cc752714e1f3f
https://security.debian.org/dists/stable/updates/main/binary-m68k/mgetty_1.1.21-3potato1_m68k.deb
MD5 checksum: 40b004e0dcaad89253a552e823809f7a

PowerPC architecture:

https://security.debian.org/dists/stable/updates/main/binary-powerpc/mgetty_1.1.21-3potato1_powerpc.deb
MD5 checksum: fe951cbfbbd37d26cd7c210ee9eee8a1
https://security.debian.org/dists/stable/updates/main/binary-powerpc/mgetty-fax_1.1.21-3potato1_powerpc.deb
MD5 checksum: e9b3c8b63f82333cc8cb22eeecaaa1c9
https://security.debian.org/dists/stable/updates/main/binary-powerpc/mgetty-viewfax_1.1.21-3potato1_powerpc.deb
MD5 checksum: afbed28e1382f53cfdca42c089d56516
https://security.debian.org/dists/stable/updates/main/binary-powerpc/mgetty-voice_1.1.21-3potato1_powerpc.deb
MD5 checksum: 244d5c6525382b342117ec2e72ee0f1c


These files will be moved into
ftp://ftp.debian.org/debian/dists/stable/*/binary-$arch/ soon.

For not yet released architectures please refer to the appropriate
directory ftp://ftp.debian.org/debian/dists/sid/binary-$arch/ .

- ----------------------------------------------------------------------------
For apt-get: deb https://security.debian.org/ stable/updates main
For dpkg-ftp: ftp://security.debian.org/debian-security dists/stable/updates/main
Mailing list: debian-security-announce@lists.debian.org
Package info: `apt-cache show <pkg>' and https://packages.debian.org/<pkg>

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.4 (GNU/Linux)
Comment: For info see https://www.gnupg.org

iD8DBQE6pEaUW5ql+IAeqTIRAmP6AJ9v+Bq/HsY25wy2lKIsMqYZk7kzYACfYsdI
s8xTuLHFx8t4cPUGG1d0a6c=
=cJZr
-----END PGP SIGNATURE-----


--
To UNSUBSCRIBE, email to debian-security-announce-request@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org

Login or Register to add favorites

File Archive:

November 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Nov 1st
    30 Files
  • 2
    Nov 2nd
    0 Files
  • 3
    Nov 3rd
    0 Files
  • 4
    Nov 4th
    12 Files
  • 5
    Nov 5th
    44 Files
  • 6
    Nov 6th
    18 Files
  • 7
    Nov 7th
    9 Files
  • 8
    Nov 8th
    8 Files
  • 9
    Nov 9th
    3 Files
  • 10
    Nov 10th
    0 Files
  • 11
    Nov 11th
    14 Files
  • 12
    Nov 12th
    20 Files
  • 13
    Nov 13th
    63 Files
  • 14
    Nov 14th
    18 Files
  • 15
    Nov 15th
    8 Files
  • 16
    Nov 16th
    0 Files
  • 17
    Nov 17th
    0 Files
  • 18
    Nov 18th
    0 Files
  • 19
    Nov 19th
    0 Files
  • 20
    Nov 20th
    0 Files
  • 21
    Nov 21st
    0 Files
  • 22
    Nov 22nd
    0 Files
  • 23
    Nov 23rd
    0 Files
  • 24
    Nov 24th
    0 Files
  • 25
    Nov 25th
    0 Files
  • 26
    Nov 26th
    0 Files
  • 27
    Nov 27th
    0 Files
  • 28
    Nov 28th
    0 Files
  • 29
    Nov 29th
    0 Files
  • 30
    Nov 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close