|
| Current Newswire:
Advisories, January 4, 2006Jan 05, 2006, 04:45 (0 Talkback[s])Mandriva Linux Security Advisory MDKSA-2006:001 Package : tkcvs Problem Description: Javier Fernandez-Sanguino Pena discovered that tkdiff created temporary files in an insecure manner. The updated packages have been patched to correct these problems. References: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2005-3343 Updated Packages: Mandriva Linux 10.2: Mandriva Linux 10.2/X86_64: Mandriva Linux 2006.0: Mandriva Linux 2006.0/X86_64: To upgrade automatically use MandrivaUpdate or urpmi. The verification of md5 checksums and GPG signatures is performed automatically for you. All packages are signed by Mandriva for security. You can obtain the GPG public key of the Mandriva Security Team by executing: gpg --recv-keys --keyserver pgp.mit.edu 0x22458A98 You can view other update advisories for Mandriva Linux at: http://www.mandriva.com/security/advisories If you want to report vulnerabilities, please contact security_(at)_mandriva.com Type Bits/KeyID Date User ID Mandriva Linux Security Advisory MDKSA-2006:002 Package : ethereal Problem Description: Three vulnerabilities were discovered in Ethereal 0.10.13: The IRC and GTP dissectors could go into an infinite loop. A buffer overflow was discovered by iDefense in the OSPF dissector. Ethereal has been upgraded to 0.10.14 which does not suffer from these problems. References: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2005-3651 Updated Packages: Mandriva Linux 2006.0: Mandriva Linux 2006.0/X86_64: To upgrade automatically use MandrivaUpdate or urpmi. The verification of md5 checksums and GPG signatures is performed automatically for you. All packages are signed by Mandriva for security. You can obtain the GPG public key of the Mandriva Security Team by executing: gpg --recv-keys --keyserver pgp.mit.edu 0x22458A98 You can view other update advisories for Mandriva Linux at: http://www.mandriva.com/security/advisories If you want to report vulnerabilities, please contact security_(at)_mandriva.com Type Bits/KeyID Date User ID |