Secunia Logo
Netsikker nu! 2008
 
Debian update for mailman
Secunia Advisory: SA18612
Release Date: 2006-01-26
Popularity: 7,486 views

Critical:
Moderately critical
Impact: DoS
Where: From remote
Solution Status: Vendor Patch

OS:Debian GNU/Linux 3.1
Debian GNU/Linux unstable alias sid

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2005-3573
CVE-2005-4153


Description:
Debian has issued an update for mailman. This fixes two vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service).

For more information:
SA17511
SA18449

Solution:
Apply updated packages.

-- Debian GNU/Linux 3.1 alias sarge --

Source archives:

http://security.debian.org/pool/updates/main/m/mailman/mailman_2.1.5-8sarge1.dsc
Size/MD5 checksum: 738 da48d99072879f627fbba7d57f8b9449
http://security.debian.org/pool/updat...mailman/mailman_2.1.5-8sarge1.diff.gz
Size/MD5 checksum: 188686 f6b707d6165c4e2def0a37ecaa9d0237
http://security.debian.org/pool/updates/main/m/mailman/mailman_2.1.5.orig.tar.gz
Size/MD5 checksum: 5745912 f5f56f04747cd4aff67427e7a45631af

Alpha architecture:

http://security.debian.org/pool/updat...ilman/mailman_2.1.5-8sarge1_alpha.deb
Size/MD5 checksum: 6612108 0c91e09a0ac1b146f9c9b2a5567b6b62

AMD64 architecture:

http://security.debian.org/pool/updat...ilman/mailman_2.1.5-8sarge1_amd64.deb
Size/MD5 checksum: 6610470 971f05595431464b627c9f0d782c3f3d

ARM architecture:

http://security.debian.org/pool/updat...mailman/mailman_2.1.5-8sarge1_arm.deb
Size/MD5 checksum: 6610082 7c1f992caa3bd026a0e0a0d0fb2da90b

Intel IA-32 architecture:

http://security.debian.org/pool/updat...ailman/mailman_2.1.5-8sarge1_i386.deb
Size/MD5 checksum: 6611458 6887debd5526800e45691c7f69a67004

Intel IA-64 architecture:

http://security.debian.org/pool/updat...ailman/mailman_2.1.5-8sarge1_ia64.deb
Size/MD5 checksum: 6611922 6608017e09f4cf2103677ea2abc0ab64

HP Precision architecture:

http://security.debian.org/pool/updat...ailman/mailman_2.1.5-8sarge1_hppa.deb
Size/MD5 checksum: 6617272 21dc663d4ff65619a0eb5ba1efb2fd38

Motorola 680x0 architecture:

http://security.debian.org/pool/updat...ailman/mailman_2.1.5-8sarge1_m68k.deb
Size/MD5 checksum: 6616562 34978e9fe8dd54ed594ea8aac7f524e1

Big endian MIPS architecture:

http://security.debian.org/pool/updat...ailman/mailman_2.1.5-8sarge1_mips.deb
Size/MD5 checksum: 6660790 18c26f54237f2c2debbe979f6f2ab4dc

Little endian MIPS architecture:

http://security.debian.org/pool/updat...lman/mailman_2.1.5-8sarge1_mipsel.deb
Size/MD5 checksum: 6652282 458f7ada6fad580545d54a67e3c75dad

PowerPC architecture:

http://security.debian.org/pool/updat...man/mailman_2.1.5-8sarge1_powerpc.deb
Size/MD5 checksum: 6617334 a79738f25904b0cca44a2eda89322014

IBM S/390 architecture:

http://security.debian.org/pool/updat...ailman/mailman_2.1.5-8sarge1_s390.deb
Size/MD5 checksum: 6616708 f09da905ce4d8e521002850a466dcaf7

Sun Sparc architecture:

http://security.debian.org/pool/updat...ilman/mailman_2.1.5-8sarge1_sparc.deb
Size/MD5 checksum: 6616064 343a2acc7348c2c547922ecc79ad4c1a

-- Debian GNU/Linux unstable alias sid --

Fixed in version 2.1.5-10.

Original Advisory:
http://www.debian.org/security/2006/dsa-955

Other References:
SA17511:
http://secunia.com/advisories/17511/

SA18449:
http://secunia.com/advisories/18449/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. My PHP Indexer "d" File Disclosure Vulnerability // 36 views
2. phpBB "url" bbcode Script Insertion Vulnerability // 36 views
3. Joomla Mad4Joomla Mailforms Component "jid" SQL Injection // 32 views
4. Joomla Ignite Gallery Component "gallery" SQL Injection // 29 views
5. phpBB BBcode "url" Script Insertion Vulnerability // 29 views
6. WinFTP "PASV" Denial of Service Vulnerability // 29 views
7. ScriptsEz Mini Hosting Panel "dir" File Disclosure // 29 views
8. Joomla OwnBiblio Component "catid" SQL Injection // 28 views
9. Real Estates Classifieds "cat" SQL Injection Vulnerability // 26 views
10. MunzurSoft Wep Portal W3 "kat" SQL Injection Vulnerability // 26 views