|
MIT Kerberos 5 Administration Library Add_To_History Heap-Based Buffer Overflow Vulnerability
Solution: MIT has released version 1.3.6 of their Kerberos 5 packages resolving this issue. Please see the referenced MIT release announcement for more information. Turbolinux has made an advisory available (TLSA-2005-34) dealing with this issue. Please see the referenced advisory for more information. SGI has released advisory 20050104-01-U (SGI Advanced Linux Environment 3 Security Update #24) to address various issues in SGI Advanced Linux Environment 3. This advisory includes updated SGI ProPack 3 Service Pack 3 packages and patch 10139. Please see the referenced advisory for more information. Red Hat has released advisories FEDORA-2004-563 and FEDORA-2004-564 to address this issue in Fedora Core 2 and 3. Please see the referenced advisory for more information. Trustix linux has made an advisory available (TSLSA-2004-0069) dealing with this issue. Trustix advises that all computers be upgraded to the latest version of the affected software using swup, the automated software updater. To auto-update the affected packages users are advised to issue the command 'swup --upgrade'. Please see the referenced advisory for more information. Mandrake Linux has released and advisory (MDKSA-2004:156) along with fixes dealing with this issue. Please see the referenced advisory for more information. Sun has released alert 57712 along with an upgrade dealing with this issue. Please see the referenced web advisory for more information. Gentoo has released advisory GLSA 200501-05 to address this issue. Gentoo users may carry out the following commands to update their systems: emerge --sync emerge --ask --oneshot --verbose ">=app-crypt/mit-krb5-1.3.6" Please see the referenced Gentoo advisory for more information. Debian has released advisory DSA 629-1 to address this issue. Please see the referenced advisory for further information. Ubuntu has released advisory USN-58-1 to address this issue. Please see the referenced advisory for more information. Conectiva has released an advisory (CLSA-2005:917) to address this issue. Please see the advisory in references for more information. Sun has updated advisory 57712 with fixes for Solaris 9 and SEAM for Solaris 8. Fedora Legacy has released security advisory FLSA:154276 addressing this issue for RedHat Linux 7.3 and 9, and for Fedora Core 1. Please see the referenced advisory for details on obtaining and applying the appropriate updates. Apple has release security advisory APPLE-SA-2005-08-15 addressing this and several other vulnerabilities. Please see the referenced advisory for further information. Sun Solaris 9 Sun Solaris 9_x86 MIT Kerberos 5 1.0
Sun SEAM 1.0.1
MIT Kerberos 5 1.0.6
MIT Kerberos 5 1.0.8
MIT Kerberos 5 1.1
MIT Kerberos 5 1.1.1
MIT Kerberos 5 1.2
MIT Kerberos 5 1.2.1
MIT Kerberos 5 1.2.2
MIT Kerberos 5 1.2.3
MIT Kerberos 5 1.2.4
MIT Kerberos 5 1.2.5
MIT Kerberos 5 1.2.6
MIT Kerberos 5 1.2.7
MIT Kerberos 5 1.2.8
MIT Kerberos 5 1.3
MIT Kerberos 5 1.3.1
MIT Kerberos 5 1.3.2
MIT Kerberos 5 1.3.3
MIT Kerberos 5 1.3.4
MIT Kerberos 5 1.3.5
Apple Mac OS X Server 10.3.9
Apple Mac OS X 10.3.9
SGI ProPack 3.0
|
|
|
Privacy Statement |