Secunia Logo
Netsikker nu! 2008
 
Debian update for gzip
Secunia Advisory: SA22034
Release Date: 2006-09-20
Popularity: 6,084 views

Critical:
Moderately critical
Impact: DoS
System access
Where: From remote
Solution Status: Vendor Patch

OS:Debian GNU/Linux 3.1
Debian GNU/Linux unstable alias sid

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2006-4334
CVE-2006-4335
CVE-2006-4336
CVE-2006-4337
CVE-2006-4338


Description:
Debian has issued an updated for gzip. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system.

For more information:
SA21996

Solution:
Apply updated packages.

-- Debian GNU/Linux 3.1 alias sarge --

Source archives:

http://security.debian.org/pool/updates/main/g/gzip/gzip_1.3.5-10sarge2.dsc
Size/MD5 checksum: 566 b4ef2a9e595a17f8596fdefb1f4b9bf6
http://security.debian.org/pool/updates/main/g/gzip/gzip_1.3.5-10sarge2.diff.gz
Size/MD5 checksum: 60478 cd1bec47a01d72c800f3bac85dfcc5f3
http://security.debian.org/pool/updates/main/g/gzip/gzip_1.3.5.orig.tar.gz
Size/MD5 checksum: 331550 3d6c191dfd2bf307014b421c12dc8469

Alpha architecture:

http://security.debian.org/pool/updat.../g/gzip/gzip_1.3.5-10sarge2_alpha.deb
Size/MD5 checksum: 83740 450c8d78aa9654ab651ac21115834432

AMD64 architecture:

http://security.debian.org/pool/updat.../g/gzip/gzip_1.3.5-10sarge2_amd64.deb
Size/MD5 checksum: 75370 cf8896b90d00dc8fce58ab1e88149674

ARM architecture:

http://security.debian.org/pool/updates/main/g/gzip/gzip_1.3.5-10sarge2_arm.deb
Size/MD5 checksum: 76472 24b1723495120c89b9a1a55712fc557d

HP Precision architecture:

http://security.debian.org/pool/updates/main/g/gzip/gzip_1.3.5-10sarge2_hppa.deb
Size/MD5 checksum: 79586 9a2d72859917de0f8b269ea95f392b2b

Intel IA-32 architecture:

http://security.debian.org/pool/updates/main/g/gzip/gzip_1.3.5-10sarge2_i386.deb
Size/MD5 checksum: 71164 8267f1f753b0a2b380d149280b6e44bb

Intel IA-64 architecture:

http://security.debian.org/pool/updates/main/g/gzip/gzip_1.3.5-10sarge2_ia64.deb
Size/MD5 checksum: 91588 30b9aa547cfacc09cee832a9b7516b6e

Motorola 680x0 architecture:

http://security.debian.org/pool/updates/main/g/gzip/gzip_1.3.5-10sarge2_m68k.deb
Size/MD5 checksum: 69110 cf17c8d59a6204c2dce1828f2b1f24c6

Big endian MIPS architecture:

http://security.debian.org/pool/updates/main/g/gzip/gzip_1.3.5-10sarge2_mips.deb
Size/MD5 checksum: 79488 e2242db1fb6e1c589a67658f96ba7f27

Little endian MIPS architecture:

http://security.debian.org/pool/updat...g/gzip/gzip_1.3.5-10sarge2_mipsel.deb
Size/MD5 checksum: 79350 da63d665a88c29c6cf07b1ef3566ecd1

PowerPC architecture:

http://security.debian.org/pool/updat.../gzip/gzip_1.3.5-10sarge2_powerpc.deb
Size/MD5 checksum: 76948 12e742fd43b8325e89f3b96e0cdd89a6

IBM S/390 architecture:

http://security.debian.org/pool/updates/main/g/gzip/gzip_1.3.5-10sarge2_s390.deb
Size/MD5 checksum: 77540 0e75950ede6c45a332eead6d71b7e7a2

Sun Sparc architecture:

http://security.debian.org/pool/updat.../g/gzip/gzip_1.3.5-10sarge2_sparc.deb
Size/MD5 checksum: 74654 471feed410766674a72327e58702febd

-- Debian GNU/Linux unstable alias sid --

Fixed in version 1.3.5-15.

Original Advisory:
http://www.us.debian.org/security/2006/dsa-1181

Other References:
SA21996:
http://secunia.com/advisories/21996/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. Trend Micro ServerProtect Multiple Buffer Overflow Vulnerabilities // 44 views
2. IceWarp Web Mail Two File Inclusion Vulnerabilities // 40 views
3. CA ARCserve Backup Multiple Vulnerabilities // 29 views
4. Apple Mac OS X Security Update Fixes Multiple Vulnerabilities // 28 views
5. CUPS Multiple Vulnerabilities // 26 views
6. Sun Java System Web Proxy Server FTP Subsystem Buffer Overflow // 25 views
7. ScriptsEz Easy Image Downloader "id" File Disclosure Vulnerability // 20 views
8. Gentoo Portage Insecure Python Module Search Path Security Issue // 20 views
9. FUJITSU Interstage Products Apache Tomcat Security Bypass // 20 views
10. Built2go Real Estate Listings "event_id" SQL Injection // 18 views