Linux Compatible
  • News
    • Channels
    • Archive
    • Search
    • Submit
  • Articles
    • Categories
  • Knowledgebase
  • Compatibility
    • Search
  • Links
  • Forums
  • Twitter
Advertisement

Latest News
[ Windows | Linux | Apple ]

· NVIDIA GeForce GTX 760 Specifications and more
· Microsoft does an Xbox 180 on Xbox One DRM, always-on policies
· DSA 2712-1: otrs2 security update
· Which Microsoft apps are supported (and not) on Windows Azure?
· Apple Seeds First OS X 10.8.5 Beta to Developers
· Microsoft will pay up to $100K for new Windows exploit techniques
· DSA 2711-1: haproxy security update
· System Builder Marathon, Q2 2013 and more
· Microsoft delivers biggest update to date to TypeScript
· Tiff/nss-pam-ldapd Updates for Debian

Upcoming News
· Anker Astro Slim2 4500mAh Power Bank Review @ Legit Reviews
· CM Storm Power-RX Gaming Mousepad Review @ ThinkComputers.org
· [CentOS-announce] CESA-2013:0958 Important CentOS 5 java-1.7.0-openjdk Update
· [CentOS-announce] CEBA-2013:0955 CentOS 6 pcsc-lite Update
· [CentOS-announce] CEBA-2013:0959 CentOS 6 icedtea-web Update
· [CentOS-announce] CESA-2013:0957 Critical CentOS 6 java-1.7.0-openjdk Update
· [CentOS-announce] CEBA-2013:0956 CentOS 6 sg3_utils FASTTRACK Update
· [CentOS-announce] CEBA-2013:0954 CentOS 6 python-rtslib Update
· Lenovo IdeaCentre Horizon Review @ TechReviewSource.com
· The Last of Us (PS3) Video Review with Kaeyi Dream @ HardwareHeaven.com

Linux Compatibility
· Dell Dimension 9100
· CL-CAM50001 UPC=3700284609322
· DFE 520 TX
· nVidia GeForce4 MX 440
· Gore: Ultimate Soldier
· SMC2802W V2 wi-fi 54Mbps PCI card
· Wireless modem router N300
· Dell P780
· ASUS A7V8X
· BricsCAD for Linux

New Forum Topics
· Building a new PC: how EXACTLY to install USB mouse?
by: joyask43
on: 2013-06-09 14:36
6 replies, 2679 views

· Packet CD
by: natalieksh5
on: 2013-06-06 14:19
4 replies, 3459 views

· THE SIMS 2 DIRECTX 9.0C ERROR MESSAGE!! HELP! URGENT!!
by: tandrask34
on: 2013-06-05 14:06
28 replies, 93274 views

· Hello
by: barryherne
on: 2013-06-05 13:09
0 replies, 187 views

· shutdown link ?
by: estirwent
on: 2013-05-11 17:46
18 replies, 6901 views

News Channels
· Drivers
· Guides
· Reviews
· Security
· Software
· Press Release
· Updates
· Interviews
· Linux
· General
· Debian
· Red Hat
· Slackware
· Gentoo
· Mandriva
· White Box
· SUSE
· GNOME
· KDE
· CentOS
· Ubuntu
· MEPIS
· Android

What's New
Login to see an overview of all news stories since your last visit.

Welcome to our website

To take full advantage of all features you need to login or register. Registration is completely free and takes only a few seconds.

Linux Compatible » News » August 2006 » DSA 1138-1: New cfs packages fix denial of service

DSA 1138-1: New cfs packages fix denial of service

Posted by Bob on: 08/02/2006 08:52 PM [ Print | 0 comment(s) ]

The Debian Security Team published a new security update for Debian GNU/Linux. Here the announcement:




-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- --------------------------------------------------------------------------
Debian Security Advisory DSA 1138-1 security@debian.org
http://www.debian.org/security/ Moritz Muehlenhoff
August 2nd, 2006 http://www.debian.org/security/faq
- --------------------------------------------------------------------------

Package : cfs
Vulnerability : integer overflow
Problem-Type : local
Debian-specific: no
CVE ID : CVE-2006-3123
Debian Bug : 371076

Carlo Contavalli discovered an integer overflow in CFS, a cryptographic
filesystem, which allows local users to crash the encryption daemon.

For the stable distribution (sarge) this problem has been fixed in
version 1.4.1-15sarge1.

For the unstable distribution (sid) this problem has been fixed in
version 1.4.1-17.

We recommend that you upgrade your cfs package.


Upgrade Instructions
- --------------------

wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.

If you are using the apt-get package manager, use the line for
sources.list as given below:

apt-get update
will update the internal database
apt-get upgrade
will install corrected packages

You may use an automated update by adding the resources from the
footer to the proper configuration.


Debian GNU/Linux 3.1 alias sarge
- --------------------------------

Source archives:

http://security.debian.org/pool/updates/main/c/cfs/cfs_1.4.1-15sarge1.dsc
Size/MD5 checksum: 520 460ec2da0664857b55354a40aaf71961
http://security.debian.org/pool/updates/main/c/cfs/cfs_1.4.1-15sarge1.diff.gz
Size/MD5 checksum: 18505 c9d5f2c91ee97c8c5b694da6806c0d24
http://security.debian.org/pool/updates/main/c/cfs/cfs_1.4.1.orig.tar.gz
Size/MD5 checksum: 98376 3ce2e01211dafe7bfb44849894926eda

Alpha architecture:

http://security.debian.org/pool/updates/main/c/cfs/cfs_1.4.1-15sarge1_alpha.deb
Size/MD5 checksum: 276728 d9833bbbc249822a5f5be41e00a0fb94

AMD64 architecture:

http://security.debian.org/pool/updates/main/c/cfs/cfs_1.4.1-15sarge1_amd64.deb
Size/MD5 checksum: 206744 a4bdfb7c09afb0bda9cefbb87fd75452

ARM architecture:

http://security.debian.org/pool/updates/main/c/cfs/cfs_1.4.1-15sarge1_arm.deb
Size/MD5 checksum: 211684 32f93d266c5985808660ed2f00730c41

Intel IA-32 architecture:

http://security.debian.org/pool/updates/main/c/cfs/cfs_1.4.1-15sarge1_i386.deb
Size/MD5 checksum: 185708 e1fdcfb68fe51980f0540da732881b95

Intel IA-64 architecture:

http://security.debian.org/pool/updates/main/c/cfs/cfs_1.4.1-15sarge1_ia64.deb
Size/MD5 checksum: 277636 f0e4fbd440bb5d4659bc204baa7befcb

HP Precision architecture:

http://security.debian.org/pool/updates/main/c/cfs/cfs_1.4.1-15sarge1_hppa.deb
Size/MD5 checksum: 225214 ba08b5b205afa8c52bfdb4d5798e3620

Motorola 680x0 architecture:

http://security.debian.org/pool/updates/main/c/cfs/cfs_1.4.1-15sarge1_m68k.deb
Size/MD5 checksum: 172456 1fd539cea16d172d2fc5a39574d703fd

Big endian MIPS architecture:

http://security.debian.org/pool/updates/main/c/cfs/cfs_1.4.1-15sarge1_mips.deb
Size/MD5 checksum: 221410 a4c2daf1ccd1d711c62a5fbb01550f72

Little endian MIPS architecture:

http://security.debian.org/pool/updates/main/c/cfs/cfs_1.4.1-15sarge1_mipsel.deb
Size/MD5 checksum: 221798 e905c5b13d8b300830ed3756907e989e

PowerPC architecture:

http://security.debian.org/pool/updates/main/c/cfs/cfs_1.4.1-15sarge1_powerpc.deb
Size/MD5 checksum: 211088 bb0ff12922878cb500579eb0a517f24b

IBM S/390 architecture:

http://security.debian.org/pool/updates/main/c/cfs/cfs_1.4.1-15sarge1_s390.deb
Size/MD5 checksum: 202360 37c5b60eea01e569e0024dd89a466a4c

Sun Sparc architecture:

http://security.debian.org/pool/updates/main/c/cfs/cfs_1.4.1-15sarge1_sparc.deb
Size/MD5 checksum: 202290 4a1753f9fdc695551b77829b383615f5

These files will probably be moved into the stable distribution on
its next update.

- ---------------------------------------------------------------------------------
For apt-get: deb http://security.debian.org/ stable/updates main
For dpkg-ftp: ftp://security.debian.org/debian-security dists/stable/updates/main
Mailing list: debian-security-announce@lists.debian.org
Package info: `apt-cache show lt;pkggt;' and http://packages.debian.org/lt;pkggt;
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.3 (GNU/Linux)

iD8DBQFE0QAZXm3vHE4uyloRAteDAJ4lS+11CVUTSvlFe//SgrUCuFWZwQCg2+Wa
p6hUHaUnNAE35zY0HuXzNIo=
=nyEh
-----END PGP SIGNATURE-----


Bookmark and Share

« RHSA-2006:0603-01 Important: libtiff security update · USN-330-1: tiff vulnerabilities »

Linux Compatible » News » August 2006 » DSA 1138-1: New cfs packages fix denial of service
All products mentioned are registered trademarks or trademarks of their respective owners.
© 2002-2013 Esselbach Internet Solutions - All Rights Reserved. Terms and privacy policy
Powered by Contentteller® Business Edition