Linux Compatible
  • News
    • Channels
    • Archive
    • Search
    • Submit
  • Articles
    • Categories
  • Knowledgebase
  • Compatibility
    • Search
  • Links
  • Forums
  • Twitter
Advertisement

Latest News
[ Windows | Linux | Apple ]

· The third screen: Will all Windows 8 apps run on Microsoft's Xbox One?
· CentOS-6.4 LiveCD and LiveDVD for i386 and x86_64 released
· Apple OS X malware outbreak could give UK firms a bad Hangover
· 5 Modem At Command Examples in Linux (How to Configure Minicom)
· CompatDB Updates 05/22/13
· Removing and Wiping Drivers Guide and more
· Windows Server 2012 Essentials SDK Installer 1.1
· Xbox One hardware and specs: 8-core CPU, 8GB RAM, 500GB hard drive and more
· Tim Cook: US-made Macs will be assembled in Texas
· Microsoft software satisfaction slumps

Upcoming News
· [CentOS-announce] CEBA-2013:0857 CentOS 6 qemu-kvm Update
· REVIEW: ECS A970M-A Deluxe @ PureOverclock
· For Father's Day Gifts Articles/Shows: SensoGlove Lets Da?= ds Finally Improve Their Golf Game
· Far Cry 3: Blood Dragon Review @ OCC
· [RHSA-2013:0855-01] Important: java-1.5.0-ibm security update
· [CentOS-announce] Release for CentOS-6.4 LiveCD and LiveDVD for i386 and x86_64
· [CentOS-announce] CEBA-2013:0854 CentOS 6 vte Update
· Shuttle OMNINAS KD20 @ techPowerUp
· What You Need To Know about the Xbox One @ ThinkComputers.org
· PQI Air Drive External Wireless Storage Device Product and Video Review

Linux Compatibility
· Dell Dimension 9100
· CL-CAM50001 UPC=3700284609322
· DFE 520 TX
· nVidia GeForce4 MX 440
· Gore: Ultimate Soldier
· SMC2802W V2 wi-fi 54Mbps PCI card
· Wireless modem router N300
· Dell P780
· ASUS A7V8X
· BricsCAD for Linux

New Forum Topics
· shutdown link ?
by: estirwent
on: 2013-05-11 17:46
18 replies, 6431 views

· Laptop keyboard drank soda
by: Zenn
on: 2013-04-30 00:27
1 replies, 684 views

· connecting to to internet with ubuntu
by: Zenn
on: 2013-04-30 00:26
2 replies, 4548 views

· Need Linux-compatible PS/2 expansion card
by: Zenn
on: 2013-04-30 00:26
1 replies, 754 views

· irql_not_less_or_equal blue screen
by: Zenn
on: 2013-04-30 00:25
2 replies, 1138 views

News Channels
· Drivers
· Guides
· Reviews
· Security
· Software
· Press Release
· Updates
· Interviews
· Linux
· General
· Debian
· Red Hat
· Slackware
· Gentoo
· Mandriva
· White Box
· SUSE
· GNOME
· KDE
· CentOS
· Ubuntu
· MEPIS
· Android

What's New
Login to see an overview of all news stories since your last visit.

Welcome to our website

To take full advantage of all features you need to login or register. Registration is completely free and takes only a few seconds.

Linux Compatible » News » February 2006 » DSA 965-1: New ipsec-tools packages fix denial of service

DSA 965-1: New ipsec-tools packages fix denial of service

Posted by Bob on: 02/06/2006 09:12 AM [ Print | 0 comment(s) ]

The Debian Security Team published a new security update for Debian GNU/Linux. Here the announcement:




-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- --------------------------------------------------------------------------
Debian Security Advisory DSA 965-1 security@debian.org
http://www.debian.org/security/ Martin Schulze
February 6th, 2006 http://www.debian.org/security/faq
- --------------------------------------------------------------------------

Package : ipsec-tools
Vulnerability : null dereference
Problem type : remote
Debian-specific: no
CVE ID : CVE-2005-3732
BugTraq ID : 15523
Debian Bug : 340584

The Internet Key Exchange version 1 (IKEv1) implementation in racoon
from ipsec-tools, IPsec tools for Linux, try to dereference a NULL
pointer under certain conditions which allows a remote attacker to
cause a denial of service.

The old stable distribution (woody) does not contain ipsec-tools.

For the stable distribution (sarge) this problem has been fixed in
version 0.5.2-1sarge1.

For the unstable distribution (sid) this problem has been fixed in
version 0.6.3-1.

We recommend that you upgrade your racoon package.


Upgrade Instructions
- --------------------

wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.

If you are using the apt-get package manager, use the line for
sources.list as given below:

apt-get update
will update the internal database
apt-get upgrade
will install corrected packages

You may use an automated update by adding the resources from the
footer to the proper configuration.


Debian GNU/Linux 3.1 alias sarge
- --------------------------------

Source archives:

http://security.debian.org/pool/updates/main/i/ipsec-tools/ipsec-tools_0.5.2-1sarge1.dsc
Size/MD5 checksum: 685 7172e2477ce0e0778eac29236595a0c0
http://security.debian.org/pool/updates/main/i/ipsec-tools/ipsec-tools_0.5.2-1sarge1.diff.gz
Size/MD5 checksum: 43453 8ec2e0ed865ca4185f84cc8d27cf3dba
http://security.debian.org/pool/updates/main/i/ipsec-tools/ipsec-tools_0.5.2.orig.tar.gz
Size/MD5 checksum: 887818 50dccd981710182c8cf86666783b0df2

Alpha architecture:

http://security.debian.org/pool/updates/main/i/ipsec-tools/ipsec-tools_0.5.2-1sarge1_alpha.deb
Size/MD5 checksum: 91708 9de3f085231197a7de53a5b50307dc07
http://security.debian.org/pool/updates/main/i/ipsec-tools/racoon_0.5.2-1sarge1_alpha.deb
Size/MD5 checksum: 358712 8283c9b4ce54d46caf0aecd01365d7e9

AMD64 architecture:

http://security.debian.org/pool/updates/main/i/ipsec-tools/ipsec-tools_0.5.2-1sarge1_amd64.deb
Size/MD5 checksum: 81642 de97d7d0cf493d6fd8f710cdfcacf485
http://security.debian.org/pool/updates/main/i/ipsec-tools/racoon_0.5.2-1sarge1_amd64.deb
Size/MD5 checksum: 304980 e3ce0db5d01427525969a4fa16c4b18c

ARM architecture:

http://security.debian.org/pool/updates/main/i/ipsec-tools/ipsec-tools_0.5.2-1sarge1_arm.deb
Size/MD5 checksum: 82078 d96dd62daec9798c3928f4d9629c90af
http://security.debian.org/pool/updates/main/i/ipsec-tools/racoon_0.5.2-1sarge1_arm.deb
Size/MD5 checksum: 293006 0584e9e94346fbc2b959461204f49a68

Intel IA-32 architecture:

http://security.debian.org/pool/updates/main/i/ipsec-tools/ipsec-tools_0.5.2-1sarge1_i386.deb
Size/MD5 checksum: 78114 7696967815385e56dce90c53db5bfead
http://security.debian.org/pool/updates/main/i/ipsec-tools/racoon_0.5.2-1sarge1_i386.deb
Size/MD5 checksum: 291490 4c2cb51dd43c7d778b63227708b27e42

Intel IA-64 architecture:

http://security.debian.org/pool/updates/main/i/ipsec-tools/ipsec-tools_0.5.2-1sarge1_ia64.deb
Size/MD5 checksum: 103870 f85f08d8b87206013639945a64180315
http://security.debian.org/pool/updates/main/i/ipsec-tools/racoon_0.5.2-1sarge1_ia64.deb
Size/MD5 checksum: 408352 78b6511d113e672f06f245a5e2b0fd91

HP Precision architecture:

http://security.debian.org/pool/updates/main/i/ipsec-tools/ipsec-tools_0.5.2-1sarge1_hppa.deb
Size/MD5 checksum: 87206 e82d46a0e3387d8f9e7b5f648f30c985
http://security.debian.org/pool/updates/main/i/ipsec-tools/racoon_0.5.2-1sarge1_hppa.deb
Size/MD5 checksum: 313098 e542429284c183d56906fd68f5120ef5

Motorola 680x0 architecture:

http://security.debian.org/pool/updates/main/i/ipsec-tools/ipsec-tools_0.5.2-1sarge1_m68k.deb
Size/MD5 checksum: 75294 f787affc6a598da295ba47833ac11f96
http://security.debian.org/pool/updates/main/i/ipsec-tools/racoon_0.5.2-1sarge1_m68k.deb
Size/MD5 checksum: 261904 3a667a087f2b1b0749df956953809787

Big endian MIPS architecture:

http://security.debian.org/pool/updates/main/i/ipsec-tools/ipsec-tools_0.5.2-1sarge1_mips.deb
Size/MD5 checksum: 81512 78b1984c4f7e1767e9e0a5f7973826da
http://security.debian.org/pool/updates/main/i/ipsec-tools/racoon_0.5.2-1sarge1_mips.deb
Size/MD5 checksum: 311252 711e7eef2b62eb3f3c62c2731682014a

Little endian MIPS architecture:

http://security.debian.org/pool/updates/main/i/ipsec-tools/ipsec-tools_0.5.2-1sarge1_mipsel.deb
Size/MD5 checksum: 81722 4cb4cfefd80785ddd08ac56f6a29d8a2
http://security.debian.org/pool/updates/main/i/ipsec-tools/racoon_0.5.2-1sarge1_mipsel.deb
Size/MD5 checksum: 314398 755b9cbcfa80716d3b67518995cecc57

PowerPC architecture:

http://security.debian.org/pool/updates/main/i/ipsec-tools/ipsec-tools_0.5.2-1sarge1_powerpc.deb
Size/MD5 checksum: 84182 f93222817a08ee9b134b2227e9710c9c
http://security.debian.org/pool/updates/main/i/ipsec-tools/racoon_0.5.2-1sarge1_powerpc.deb
Size/MD5 checksum: 299802 fa4286b36de4c4cdb344501bca93cec7

IBM S/390 architecture:

http://security.debian.org/pool/updates/main/i/ipsec-tools/ipsec-tools_0.5.2-1sarge1_s390.deb
Size/MD5 checksum: 84358 4739bc0a2a512d911e77e905254ab7e9
http://security.debian.org/pool/updates/main/i/ipsec-tools/racoon_0.5.2-1sarge1_s390.deb
Size/MD5 checksum: 299502 2e01eac11fe42c459efcbc3ecf949cc4

Sun Sparc architecture:

http://security.debian.org/pool/updates/main/i/ipsec-tools/ipsec-tools_0.5.2-1sarge1_sparc.deb
Size/MD5 checksum: 81038 f40757af48fd04929715dc486feff3fe
http://security.debian.org/pool/updates/main/i/ipsec-tools/racoon_0.5.2-1sarge1_sparc.deb
Size/MD5 checksum: 284678 67368918e5be7f007e8ce1c0d9f9f335


These files will probably be moved into the stable distribution on
its next update.

- ---------------------------------------------------------------------------------
For apt-get: deb http://security.debian.org/ stable/updates main
For dpkg-ftp: ftp://security.debian.org/debian-security dists/stable/updates/main
Mailing list: debian-security-announce@lists.debian.org
Package info: `apt-cache show lt;pkggt;' and http://packages.debian.org/lt;pkggt;

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2 (GNU/Linux)

iD8DBQFD5v86W5ql+IAeqTIRAsS7AJ9LLtZIUUGHWsp7zL60Oqs/GpK/9ACeNQiz
tGZOoO5zCekuppIF3g5BIzY=
=LxLZ
-----END PGP SIGNATURE-----


Bookmark and Share

« SUSE 10.1 beta 3 Report · Abit Fatatality AN8 Motherboard SLI Review »

Linux Compatible » News » February 2006 » DSA 965-1: New ipsec-tools packages fix denial of service
All products mentioned are registered trademarks or trademarks of their respective owners.
© 2002-2013 Esselbach Internet Solutions - All Rights Reserved. Terms and privacy policy
Powered by Contentteller® Business Edition