Forum     

Go Back   Digit Technology Discussion Forum > Software > Open Source
Register FAQ Calendar Mark Forums Read

Open Source A place where you can talk to like-minded people about the fastest growing software movement today! Discuss anything and everything about Open Source software and Operating Systems.


Closed Thread
 
LinkBack Thread Tools Display Modes
Old 06-09-2007, 08:30 PM   #1 (permalink)
Wise Old Owl
 
Dark Star's Avatar
 
Join Date: Feb 2006
Location: /dev/hd0
Posts: 1,487
Wink Ubuntu Security Notice: Kerberos Vulnerability


Ubuntu development team announced yesterday a security vulnerability in the Kerberos packages. The team discovered that the libraries handling RPCSEC_GSS did not correctly validate the size of certain packet structures. Therefore, an unauthenticated remote user had the ability to send a specially crafted request and execute an arbitrary code with root privileges. The security issue affects the following Ubuntu releases:
  • Ubuntu 6.06 LTS (Dapper Drake)
  • Ubuntu 6.10 (Edgy Eft)
  • Ubuntu 7.04 (Feisty Fawn)

And it also applies to the corresponding versions of Kubuntu, Edubuntu and Xubuntu distributions.
Quote:
The best way to fix this security issue is to upgrade your system to the following package versions:
For Ubuntu 6.06 LTS:
  • libkadm55 1.4.3-5ubuntu0.5
  • librpcsecgss1 0.7-0ubuntu1.1

For Ubuntu 6.10:
  • libkadm55 1.4.3-9ubuntu1.4
  • librpcsecgss2 0.13-2ubuntu0.1

For Ubuntu 7.04:
  • libkadm55 1.4.4-5ubuntu3.2
  • librpcsecgss3 0.14-2ubuntu1.1

Source : USN-511-1: Kerberos vulnerability | Ubuntu
__________________
Me Myself and My Tux Blog :- http://tuxenclave.wordpress.com/
Dark Star is offline  
Advertisements. Register and be a member of the community to get rid of them.
Advertisement

Old 07-09-2007, 11:22 PM   #2 (permalink)
left this forum longback
 
praka123's Avatar
 
Join Date: Sep 2005
Location: -
Posts: 7,536
Default Re: Ubuntu Security Notice: Kerberos Vulnerability

sudo apt-get update && sudo apt-get upgrade
__________________
left this forum long back.Admin Can Delete this Account and posts Permanantly.Thank You
Get GNU/Linux - http://getgnulinux.org
praka123 is offline  
Closed Thread

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
Did anyone notice seamonkey Cool Buddy QnA (read only) 1 27-01-2007 07:13 PM
[Attention!!] Ubuntu users.. critical security notice!! Satissh S Open Source 3 22-03-2006 11:19 AM
shut down without notice rajivfire QnA (read only) 3 31-08-2004 03:40 PM

 
Latest Threads
- by Sujeet
- by soumya
- by clmlbx
- by Charan

Advertisement




All times are GMT +5.5. The time now is 01:00 PM.


Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2012, vBulletin Solutions, Inc.

Search Engine Optimization by vBSEO 3.3.2