Linux Compatible
  • News
    • Channels
    • Archive
    • Search
    • Submit
  • Articles
    • Categories
  • Knowledgebase
  • Compatibility
    • Search
  • Links
  • Forums
  • Twitter
Advertisement

Latest News
[ Windows | Linux | Apple ]

· The third screen: Will all Windows 8 apps run on Microsoft's Xbox One?
· CentOS-6.4 LiveCD and LiveDVD for i386 and x86_64 released
· Apple OS X malware outbreak could give UK firms a bad Hangover
· 5 Modem At Command Examples in Linux (How to Configure Minicom)
· CompatDB Updates 05/22/13
· Removing and Wiping Drivers Guide and more
· Windows Server 2012 Essentials SDK Installer 1.1
· Xbox One hardware and specs: 8-core CPU, 8GB RAM, 500GB hard drive and more
· Tim Cook: US-made Macs will be assembled in Texas
· Microsoft software satisfaction slumps

Upcoming News
· For Father's Day Gifts Articles/Shows: SensoGlove Lets Da?= ds Finally Improve Their Golf Game
· Far Cry 3: Blood Dragon Review @ OCC
· [RHSA-2013:0855-01] Important: java-1.5.0-ibm security update
· [CentOS-announce] Release for CentOS-6.4 LiveCD and LiveDVD for i386 and x86_64
· [CentOS-announce] CEBA-2013:0854 CentOS 6 vte Update
· Shuttle OMNINAS KD20 @ techPowerUp
· What You Need To Know about the Xbox One @ ThinkComputers.org
· PQI Air Drive External Wireless Storage Device Product and Video Review
· PoINT Storage Manager 4.0 now available
· [CentOS-announce] CEEA-2013:0852 CentOS 5 rgmanager Update

Linux Compatibility
· Dell Dimension 9100
· CL-CAM50001 UPC=3700284609322
· DFE 520 TX
· nVidia GeForce4 MX 440
· Gore: Ultimate Soldier
· SMC2802W V2 wi-fi 54Mbps PCI card
· Wireless modem router N300
· Dell P780
· ASUS A7V8X
· BricsCAD for Linux

New Forum Topics
· shutdown link ?
by: estirwent
on: 2013-05-11 17:46
18 replies, 6427 views

· Laptop keyboard drank soda
by: Zenn
on: 2013-04-30 00:27
1 replies, 683 views

· connecting to to internet with ubuntu
by: Zenn
on: 2013-04-30 00:26
2 replies, 4545 views

· Need Linux-compatible PS/2 expansion card
by: Zenn
on: 2013-04-30 00:26
1 replies, 754 views

· irql_not_less_or_equal blue screen
by: Zenn
on: 2013-04-30 00:25
2 replies, 1138 views

News Channels
· Drivers
· Guides
· Reviews
· Security
· Software
· Press Release
· Updates
· Interviews
· Linux
· General
· Debian
· Red Hat
· Slackware
· Gentoo
· Mandriva
· White Box
· SUSE
· GNOME
· KDE
· CentOS
· Ubuntu
· MEPIS
· Android

What's New
Login to see an overview of all news stories since your last visit.

Welcome to our website

To take full advantage of all features you need to login or register. Registration is completely free and takes only a few seconds.

Linux Compatible » News » May 2004 » MDKSA-2004:049: Updated libneon packages fix heap variable overflow issues

MDKSA-2004:049: Updated libneon packages fix heap variable overflow issues

Posted by Philipp Esselbach on: 05/19/2004 03:07 PM [ Print | 0 comment(s) ]

Updated libneon packages are available for Mandrakelinux
_______________________________________________________________________

Mandrakelinux Security Update Advisory
_______________________________________________________________________

Package name: libneon
Advisory ID: MDKSA-2004:049
Date: May 19th, 2004

Affected versions: 10.0, 9.2
______________________________________________________________________

Problem Description:

It was discovered that in portions of neon, sscanf() is used in an unsafe manner. This will result in an overflow of a static heap variable.

The updated packages provide a patched libneon to correct these problems.




_______________________________________________________________________

References:

http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0398
______________________________________________________________________

Updated Packages:

Mandrakelinux 10.0:
c4210d7bc9cf66d9787b66ab9fd2aad7 10.0/RPMS/libneon0.24-0.24.5-0.2.100mdk.i586.rpm
55e73f435e3874af9f0071651578bb1b 10.0/RPMS/libneon0.24-devel-0.24.5-0.2.100mdk.i586.rpm
50eea6e5d78f1d52f71f286608349c74 10.0/RPMS/libneon0.24-static-devel-0.24.5-0.2.100mdk.i586.rpm
d50605f1b603303a0cadb37175c1a5e3 10.0/SRPMS/libneon-0.24.5-0.2.100mdk.src.rpm

Mandrakelinux 10.0/AMD64:
2b7eee868064046c077f095769fc9ecb amd64/10.0/RPMS/lib64neon0.24-0.24.5-0.2.100mdk.amd64.rpm
4f2a2c05a74f7b0823ccec6961bd488d amd64/10.0/RPMS/lib64neon0.24-devel-0.24.5-0.2.100mdk.amd64.rpm
28fbdae0e4ce0bcd859434726ca60bbf amd64/10.0/RPMS/lib64neon0.24-static-devel-0.24.5-0.2.100mdk.amd64.rpm
d50605f1b603303a0cadb37175c1a5e3 amd64/10.0/SRPMS/libneon-0.24.5-0.2.100mdk.src.rpm

Mandrakelinux 9.2:
493d8de296578f6b79ff2f9dfd184e98 9.2/RPMS/libneon0.24-0.24.5-0.2.92mdk.i586.rpm
22f236280bafdbc4dfbf4689885f29aa 9.2/RPMS/libneon0.24-devel-0.24.5-0.2.92mdk.i586.rpm
1b4bc7135de9d6435fb34f75b30ef93a 9.2/RPMS/libneon0.24-static-devel-0.24.5-0.2.92mdk.i586.rpm
7ad4ede0f92822aef97a89c92438f54d 9.2/SRPMS/libneon-0.24.5-0.2.92mdk.src.rpm

Mandrakelinux 9.2/AMD64:
acc2986d2b6230e6013adca7c8b9b025 amd64/9.2/RPMS/lib64neon0.24-0.24.5-0.2.92mdk.amd64.rpm
aab98267d4df381730ca3cae16434590 amd64/9.2/RPMS/lib64neon0.24-devel-0.24.5-0.2.92mdk.amd64.rpm
68b78514eaca5f4dcc0e19d918d5d664 amd64/9.2/RPMS/lib64neon0.24-static-devel-0.24.5-0.2.92mdk.amd64.rpm
7ad4ede0f92822aef97a89c92438f54d amd64/9.2/SRPMS/libneon-0.24.5-0.2.92mdk.src.rpm
_______________________________________________________________________

To upgrade automatically use MandrakeUpdate or urpmi. The verification of md5 checksums and GPG signatures is performed automatically for you.

A list of FTP mirrors can be obtained from:

http://www.mandrakesecure.net/en/ftp.php

All packages are signed by Mandrakesoft for security. You can obtain the GPG public key of the Mandrakelinux Security Team by executing:

gpg --recv-keys --keyserver www.mandrakesecure.net 0x22458A98

Please be aware that sometimes it takes the mirrors a few hours to update.

You can view other update advisories for Mandrakelinux at:

http://www.mandrakesecure.net/en/advisories/

Mandrakesoft has several security-related mailing list services that anyone can subscribe to. Information on these lists can be obtained by visiting:

http://www.mandrakesecure.net/en/mlist.php

If you want to report vulnerabilities, please contact

security_linux-mandrake.com


Bookmark and Share

« GLSA 200405-11: KDE URI Handler Vulnerabilities · Fedora Core 2 Update: ipsec-tools-0.2.5-2 »

Linux Compatible » News » May 2004 » MDKSA-2004:049: Updated libneon packages fix heap variable overflow issues
All products mentioned are registered trademarks or trademarks of their respective owners.
© 2002-2013 Esselbach Internet Solutions - All Rights Reserved. Terms and privacy policy
Powered by Contentteller® Business Edition