Debian "super" Buffer Overflow Vulnerabilities

Solution:
A user vulnerable to this attack is advised to either upgrade to Debian 2.1, remove the super suid privileges, or upgrade super itself. The fixed version (super 3.11.9) is available at the following locations:

ftp.ucolick.org:/pub/users/will/super-3.11.9.tar.gz

ftp.onshore.com:/pub/mirror/software/super

Also, for pure Debian users:

ftp://ftp.debian.org/debian/dists/potato/main/source/admin/super_3.11.7-1.diff.gz

ftp://ftp.debian.org/debian/dists/potato/main/source/admin/super_3.11.7-1.dsc

ftp://ftp.debian.org/debian/dists/potato/main/source/admin/super_3.11.6.orig.tar.gz

ftp://ftp.debian.org/debian/dists/potato/main/binary-i386/admin/super_3.11.7-1.deb

ftp://ftp.debian.org/debian/dists/potato/main/binary-m68k/admin/super_3.11.7-1.deb

ftp://ftp.debian.org/debian/dists/potato/main/binary-powerpc/admin/super_3.11.7-1.deb



 

Privacy Statement
Copyright 2010, SecurityFocus