|
SGI Advanced Linux Environment Multiple Updates
|
|
Secunia Advisory:
|
SA20210
|
|
|
Release Date:
|
2006-05-24
|
|
Popularity:
|
6,741 views
|
|
|
Critical:
|
 Highly critical
|
|
Impact:
|
Security Bypass Cross Site Scripting Manipulation of data Exposure of sensitive information DoS System access
|
|
Where:
|
From remote
|
|
Solution Status:
|
Vendor Patch
|
|
| OS: | SGI Advanced Linux Environment 3
|
|
|
Subscribe:
|
Instant alerts on relevant vulnerabilities
|
|
| CVE reference: | CVE-2005-2933 CVE-2005-3732 CVE-2005-3666 CVE-2005-3667 CVE-2005-3668 CVE-2005-3883 CVE-2006-0188 CVE-2006-0195 CVE-2006-0208 CVE-2006-0377 CVE-2006-0996 CVE-2006-1490 CVE-2006-1932 CVE-2006-1933 CVE-2006-1934 CVE-2006-1935 CVE-2006-1936 CVE-2006-1937 CVE-2006-1938 CVE-2006-1939 CVE-2006-1940 CVE-2006-2024 CVE-2006-2025 CVE-2006-2026 CVE-2006-2120
|
|
Description: SGI has issued a patch for SGI Advanced Linux Environment. This fixes some vulnerabilities, which can be exploited by malicious, local users to bypass certain security restrictions, by malicious users to cause a DoS (Denial of Service), manipulate certain information, and compromise a vulnerable system, or by malicious people to use PHP as an open mail relay, gain knowledge of potentially sensitive information, conduct cross-site scripting attacks and script insertion attacks, cause a DoS, and compromise a vulnerable system.
For more information:
SA19769
SA17668
SA19838
SA17062
SA17763
SA18431
SA19383
SA19599
SA18985
Solution: Apply patch 10310 for SGI ProPack 3 Service Pack 6.
http://support.sgi.com/
Original Advisory: ftp://patches.sgi.com/support/free/security/advisories/20060501-01-U.asc
Other References: SA19769:
http://secunia.com/advisories/19769/
SA17668:
http://secunia.com/advisories/17668/
SA19838:
http://secunia.com/advisories/19838/
SA17062:
http://secunia.com/advisories/17062/
SA17763:
http://secunia.com/advisories/17763/
SA18431:
http://secunia.com/advisories/18431/
SA19383:
http://secunia.com/advisories/19383/
SA19599:
http://secunia.com/advisories/19599/
SA18985:
http://secunia.com/advisories/18985/
|
|
|
Track this Secunia Advisory
|
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.
Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.
|
|
|
About this Secunia Advisory
|
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.
Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
|