exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New

Ubuntu Security Notice 411-1

Ubuntu Security Notice 411-1
Posted Jan 24, 2007
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 411-1 - Roland Lezuo and Josselin Mouette discovered that the HTTP server code in libsoup did not correctly verify request headers. Remote attackers could crash applications using libsoup by sending a crafted HTTP request, resulting in a denial of service.

tags | advisory, remote, web, denial of service
systems | linux, ubuntu
advisories | CVE-2006-5876
SHA-256 | 78466fc80920f0fd557bd484850d7ec3e2c3194723ffe8f0d8018cd2ed6fb697

Ubuntu Security Notice 411-1

Change Mirror Download
=========================================================== 
Ubuntu Security Notice USN-411-1 January 23, 2007
libsoup vulnerability
CVE-2006-5876
===========================================================

A security issue affects the following Ubuntu releases:

Ubuntu 5.10
Ubuntu 6.06 LTS
Ubuntu 6.10

This advisory also applies to the corresponding versions of
Kubuntu, Edubuntu, and Xubuntu.

The problem can be corrected by upgrading your system to the
following package versions:

Ubuntu 5.10:
libsoup2.2-8 2.2.6.1-0ubuntu1.1

Ubuntu 6.06 LTS:
libsoup2.2-8 2.2.93-0ubuntu1.1

Ubuntu 6.10:
libsoup2.2-8 2.2.96-0ubuntu2.1

In general, a standard system upgrade is sufficient to effect the
necessary changes.

Details follow:

Roland Lezuo and Josselin Mouette discovered that the HTTP server code
in libsoup did not correctly verify request headers. Remote attackers
could crash applications using libsoup by sending a crafted HTTP
request, resulting in a denial of service.


Updated packages for Ubuntu 5.10:

Source archives:

https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup_2.2.6.1-0ubuntu1.1.diff.gz
Size/MD5: 4223 b29a2e77797c1dc3996fa95c3d3fc9dc
https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup_2.2.6.1-0ubuntu1.1.dsc
Size/MD5: 690 c1e2931c5bb73708b0fd7449cf91162d
https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup_2.2.6.1.orig.tar.gz
Size/MD5: 600116 49cf542cfd814d7d01a272e27015b7b4

Architecture independent packages:

https://security.ubuntu.com/ubuntu/pool/universe/libs/libsoup/libsoup2.2-doc_2.2.6.1-0ubuntu1.1_all.deb
Size/MD5: 97478 fe739446d0b8dc2e59db7fba7110df36

amd64 architecture (Athlon64, Opteron, EM64T Xeon)

https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup2.2-8_2.2.6.1-0ubuntu1.1_amd64.deb
Size/MD5: 122752 1c3b712a3d024c96202efbe26487e4dc
https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup2.2-dev_2.2.6.1-0ubuntu1.1_amd64.deb
Size/MD5: 160696 722e69eae12a0a19fa68fa784a10122c

i386 architecture (x86 compatible Intel/AMD)

https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup2.2-8_2.2.6.1-0ubuntu1.1_i386.deb
Size/MD5: 112142 5ef7c3e56386f26535e1408e5d42503e
https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup2.2-dev_2.2.6.1-0ubuntu1.1_i386.deb
Size/MD5: 140346 ead54510f646e0fe73eee7b1781394f1

powerpc architecture (Apple Macintosh G3/G4/G5)

https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup2.2-8_2.2.6.1-0ubuntu1.1_powerpc.deb
Size/MD5: 118020 bf92390abb8ab08b14dcb0d77d98c1ad
https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup2.2-dev_2.2.6.1-0ubuntu1.1_powerpc.deb
Size/MD5: 161348 6526420cdc10d3133a609516cd241e19

sparc architecture (Sun SPARC/UltraSPARC)

https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup2.2-8_2.2.6.1-0ubuntu1.1_sparc.deb
Size/MD5: 116062 e248ec557eeb97601bbfcced6ad7f10b
https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup2.2-dev_2.2.6.1-0ubuntu1.1_sparc.deb
Size/MD5: 151452 3f57086e6c78b541fab19f71b586a2bd

Updated packages for Ubuntu 6.06 LTS:

Source archives:

https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup_2.2.93-0ubuntu1.1.diff.gz
Size/MD5: 5471 50b6572dc389f14529daa23a428222e3
https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup_2.2.93-0ubuntu1.1.dsc
Size/MD5: 1690 cece99cb660cbc7367c6807f12b71009
https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup_2.2.93.orig.tar.gz
Size/MD5: 616955 b41efe6d3d475b20fb3b42c134bbccd3

Architecture independent packages:

https://security.ubuntu.com/ubuntu/pool/universe/libs/libsoup/libsoup2.2-doc_2.2.93-0ubuntu1.1_all.deb
Size/MD5: 111910 dc2f544c302fdc8e1309d68a63cc251a

amd64 architecture (Athlon64, Opteron, EM64T Xeon)

https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup2.2-8_2.2.93-0ubuntu1.1_amd64.deb
Size/MD5: 126890 e76acbc938911434c14745e55dd81ae3
https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup2.2-dev_2.2.93-0ubuntu1.1_amd64.deb
Size/MD5: 166280 accf21086b9b500dd609504ad29dd04a

i386 architecture (x86 compatible Intel/AMD)

https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup2.2-8_2.2.93-0ubuntu1.1_i386.deb
Size/MD5: 116078 34ea24d5a57d32dc6296e08ba51a9fc1
https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup2.2-dev_2.2.93-0ubuntu1.1_i386.deb
Size/MD5: 145212 28afb366495211a417bfadf8554a7cb0

powerpc architecture (Apple Macintosh G3/G4/G5)

https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup2.2-8_2.2.93-0ubuntu1.1_powerpc.deb
Size/MD5: 121986 ec9cc7867dbb49028d28d177da4e3579
https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup2.2-dev_2.2.93-0ubuntu1.1_powerpc.deb
Size/MD5: 167364 d8395ec70c8bba72861c9ac8fd1cc503

sparc architecture (Sun SPARC/UltraSPARC)

https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup2.2-8_2.2.93-0ubuntu1.1_sparc.deb
Size/MD5: 120692 43d7164ead19dee2b40c32b317102d12
https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup2.2-dev_2.2.93-0ubuntu1.1_sparc.deb
Size/MD5: 157494 5a05d1da07ee0c06111639cab4fa16fd

Updated packages for Ubuntu 6.10:

Source archives:

https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup_2.2.96-0ubuntu2.1.diff.gz
Size/MD5: 5753 fba402e17584b648ac9ec962cdd69e74
https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup_2.2.96-0ubuntu2.1.dsc
Size/MD5: 1500 409106ece482cee6b645f9acdc20ebba
https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup_2.2.96.orig.tar.gz
Size/MD5: 673788 27bfc4e34d85b28e4ffea9d21b642b51

Architecture independent packages:

https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup2.2-doc_2.2.96-0ubuntu2.1_all.deb
Size/MD5: 142086 956bb89d2436bf0251c3b1509da22ecf

amd64 architecture (Athlon64, Opteron, EM64T Xeon)

https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup2.2-8_2.2.96-0ubuntu2.1_amd64.deb
Size/MD5: 132538 6adf2a31cb0cd5b935c88f884c1e1af8
https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup2.2-dev_2.2.96-0ubuntu2.1_amd64.deb
Size/MD5: 172966 7a908c778e75db2c4df59af7c43dd946

i386 architecture (x86 compatible Intel/AMD)

https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup2.2-8_2.2.96-0ubuntu2.1_i386.deb
Size/MD5: 125360 7f87d6d58a3d2102b2919c99d3b6c3ee
https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup2.2-dev_2.2.96-0ubuntu2.1_i386.deb
Size/MD5: 155750 981fd1e018b3f208d9c3c69b9cc786d9

powerpc architecture (Apple Macintosh G3/G4/G5)

https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup2.2-8_2.2.96-0ubuntu2.1_powerpc.deb
Size/MD5: 128718 c340991ea128124e143b381c5fa6598e
https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup2.2-dev_2.2.96-0ubuntu2.1_powerpc.deb
Size/MD5: 174524 8c7fbdb5f203ccf6d8c93b01e12773dd

sparc architecture (Sun SPARC/UltraSPARC)

https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup2.2-8_2.2.96-0ubuntu2.1_sparc.deb
Size/MD5: 125922 ab80746fbe13588d121fd511418ec98d
https://security.ubuntu.com/ubuntu/pool/main/libs/libsoup/libsoup2.2-dev_2.2.96-0ubuntu2.1_sparc.deb
Size/MD5: 162968 66e87a3dce6906ed4db3b21b3c52ac0b

Login or Register to add favorites

File Archive:

September 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Sep 1st
    261 Files
  • 2
    Sep 2nd
    17 Files
  • 3
    Sep 3rd
    38 Files
  • 4
    Sep 4th
    52 Files
  • 5
    Sep 5th
    23 Files
  • 6
    Sep 6th
    27 Files
  • 7
    Sep 7th
    0 Files
  • 8
    Sep 8th
    1 Files
  • 9
    Sep 9th
    16 Files
  • 10
    Sep 10th
    38 Files
  • 11
    Sep 11th
    21 Files
  • 12
    Sep 12th
    40 Files
  • 13
    Sep 13th
    18 Files
  • 14
    Sep 14th
    0 Files
  • 15
    Sep 15th
    0 Files
  • 16
    Sep 16th
    21 Files
  • 17
    Sep 17th
    51 Files
  • 18
    Sep 18th
    23 Files
  • 19
    Sep 19th
    48 Files
  • 20
    Sep 20th
    36 Files
  • 21
    Sep 21st
    0 Files
  • 22
    Sep 22nd
    0 Files
  • 23
    Sep 23rd
    0 Files
  • 24
    Sep 24th
    0 Files
  • 25
    Sep 25th
    0 Files
  • 26
    Sep 26th
    0 Files
  • 27
    Sep 27th
    0 Files
  • 28
    Sep 28th
    0 Files
  • 29
    Sep 29th
    0 Files
  • 30
    Sep 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close