Debian GNU/Linux Advisory: node

Debian Security Advisory DSA 274-1 Martin Schulze
August 29th, 2003

Package : node
Vulnerability : buffer overflow, format string
Problem-Type : remote
Debian-specific : no

Morgan alias SM6TKY discovered and fixed several security related problems in LinuxNode, an Amateur Packet Radio Node program. The buffer overflow he discovered can be used to gain unauthorised root access and can be remotely triggered.

For the stable distribution (woody) this problem has been fixed in version 0.3.0a-2woody1.

For the unstable distribution (sid) this problem has been fixed in version 0.3.2-1.

We recommend that you upgrade your node packages immediately.

Upgrade Instructions

wget url

will fetch the file for you
dpkg -i file.deb

will install the referenced file.

If you are using the apt-get package manager, use the line for sources.list as given below:

apt-get update

will update the internal database apt-get upgrade

will install corrected packages

You may use an automated update by adding the resources from the footer to the proper configuration.

Debian GNU/Linux 3.0 alias woody

These files will probably be moved into the stable distribution on its next revision.

