Secunia Logo
Netsikker nu! 2008
 
Debian update for libsoup
Secunia Advisory: SA23770
Release Date: 2007-01-15
Popularity: 4,506 views

Critical:
Less critical
Impact: DoS
Where: From remote
Solution Status: Vendor Patch

OS:Debian GNU/Linux 3.1
Debian GNU/Linux unstable alias sid

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2006-5876


Description:
Debian has issued an update for libsoup. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).

For more information:
SA23734

Solution:
Apply updated packages.

-- Debian GNU/Linux 3.1 alias sarge --

Source archives:

http://security.debian.org/pool/updat...ibs/libsoup/libsoup_2.2.3-2sarge1.dsc
Size/MD5 checksum: 679 adbad6fcde3be4be01c8eac2da55c712
http://security.debian.org/pool/updat...libsoup/libsoup_2.2.3-2sarge1.diff.gz
Size/MD5 checksum: 77637 62b8b84a032e79802788ac8fad2a8b1a
http://security.debian.org/pool/updat...ibs/libsoup/libsoup_2.2.3.orig.tar.gz
Size/MD5 checksum: 479599 1c3e8c05a702340f9170d30a370a7344

Architecture independent components:

http://security.debian.org/pool/updat.../libsoup2.2-doc_2.2.3-2sarge1_all.deb
Size/MD5 checksum: 89712 28de5acce82f292d53488316d4d21f47

Alpha architecture:

http://security.debian.org/pool/updat.../libsoup2.2-7_2.2.3-2sarge1_alpha.deb
Size/MD5 checksum: 121006 63acdee0902aef63cd9de5234ba4c75f
http://security.debian.org/pool/updat...ibsoup2.2-dev_2.2.3-2sarge1_alpha.deb
Size/MD5 checksum: 179700 cae14f17a787681ffd64af595df4320a

AMD64 architecture:

http://security.debian.org/pool/updat.../libsoup2.2-7_2.2.3-2sarge1_amd64.deb
Size/MD5 checksum: 109672 d36f765bcd4bf336f9dfd3efa93aca01
http://security.debian.org/pool/updat...ibsoup2.2-dev_2.2.3-2sarge1_amd64.deb
Size/MD5 checksum: 137628 48e8ae141d696f82c38a8e4464da7624

ARM architecture:

http://security.debian.org/pool/updat...up/libsoup2.2-7_2.2.3-2sarge1_arm.deb
Size/MD5 checksum: 100968 2a51612277c7fb122d7244729bdabc3c
http://security.debian.org/pool/updat.../libsoup2.2-dev_2.2.3-2sarge1_arm.deb
Size/MD5 checksum: 134098 213cfe1f767b22eb8baedaf7dae4e705

HP Precision architecture:

http://security.debian.org/pool/updat...p/libsoup2.2-7_2.2.3-2sarge1_hppa.deb
Size/MD5 checksum: 118582 4a28fbaff712a41026027e46477b2db4
http://security.debian.org/pool/updat...libsoup2.2-dev_2.2.3-2sarge1_hppa.deb
Size/MD5 checksum: 150680 0a5331f409f1255a7afe2136a7b75efa

Intel IA-32 architecture:

http://security.debian.org/pool/updat...p/libsoup2.2-7_2.2.3-2sarge1_i386.deb
Size/MD5 checksum: 103256 cc59e5bfe0236843a9f035e21084472e
http://security.debian.org/pool/updat...libsoup2.2-dev_2.2.3-2sarge1_i386.deb
Size/MD5 checksum: 124718 1a9f5949d15ee315df06dd7d4f030bad

Intel IA-64 architecture:

http://security.debian.org/pool/updat...p/libsoup2.2-7_2.2.3-2sarge1_ia64.deb
Size/MD5 checksum: 137120 3036044195764214e74f6e94e557f373
http://security.debian.org/pool/updat...libsoup2.2-dev_2.2.3-2sarge1_ia64.deb
Size/MD5 checksum: 180256 48c1f4958dd773f963228874cf3b0493

Motorola 680x0 architecture:

http://security.debian.org/pool/updat...p/libsoup2.2-7_2.2.3-2sarge1_m68k.deb
Size/MD5 checksum: 104094 ca8ef51bd4f5622530fb246818b9bd38
http://security.debian.org/pool/updat...libsoup2.2-dev_2.2.3-2sarge1_m68k.deb
Size/MD5 checksum: 119564 1400d2fdaa1416454a4bd1a6260064d4

Big endian MIPS architecture:

http://security.debian.org/pool/updat...p/libsoup2.2-7_2.2.3-2sarge1_mips.deb
Size/MD5 checksum: 102578 5cc6cb77f78a633b718111b01cd1ac56
http://security.debian.org/pool/updat...libsoup2.2-dev_2.2.3-2sarge1_mips.deb
Size/MD5 checksum: 145276 89f3fbf38a9a3a6c23d2c7c403a25e35

Little endian MIPS architecture:

http://security.debian.org/pool/updat...libsoup2.2-7_2.2.3-2sarge1_mipsel.deb
Size/MD5 checksum: 102560 5f8c1dc2888c63b5fb7cbc7e765227a1
http://security.debian.org/pool/updat...bsoup2.2-dev_2.2.3-2sarge1_mipsel.deb
Size/MD5 checksum: 145232 1ab42e08c45e37a8c42db91eb0d05582

PowerPC architecture:

http://security.debian.org/pool/updat...ibsoup2.2-7_2.2.3-2sarge1_powerpc.deb
Size/MD5 checksum: 106390 57dc0f86443250f7160202c3514f8e5e
http://security.debian.org/pool/updat...soup2.2-dev_2.2.3-2sarge1_powerpc.deb
Size/MD5 checksum: 139376 25103bd1d805b97fc9d524602afce1ea

IBM S/390 architecture:

http://security.debian.org/pool/updat...p/libsoup2.2-7_2.2.3-2sarge1_s390.deb
Size/MD5 checksum: 115614 2e5422ec386daf008dd8d8c8af725366
http://security.debian.org/pool/updat...libsoup2.2-dev_2.2.3-2sarge1_s390.deb
Size/MD5 checksum: 138072 2d692116c7e50dde248f58b85d9ebdfd

Sun Sparc architecture:

http://security.debian.org/pool/updat.../libsoup2.2-7_2.2.3-2sarge1_sparc.deb
Size/MD5 checksum: 105966 da20be0e50755c15ead7dca8a7327ecc
http://security.debian.org/pool/updat...ibsoup2.2-dev_2.2.3-2sarge1_sparc.deb
Size/MD5 checksum: 131482 2622023dd2bc6508aeb6a200ba904260

-- Debian GNU/Linux unstable alias sid --

Fixed in 2.2.98-2.

Original Advisory:
http://www.debian.org/security/2007/dsa-1248

Other References:
SA23734:
http://secunia.com/advisories/21615/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. phpBB Avatar Functions Information Disclosure and Deletion // 140 views
2. phpBB Avatar Script Insertion Vulnerability // 124 views
3. phpBB "url" bbcode Script Insertion Vulnerability // 106 views
4. phpBB BBcode "url" Script Insertion Vulnerability // 80 views
5. ArticleBeach Script "page" File Inclusion Vulnerability // 64 views
6. Sun Java System Web Proxy Server FTP Subsystem Buffer Overflow // 33 views
7. DFF PHP Framework API "DFF_config[dir_include]" File Inclusion Vulnerabilities // 28 views
8. Apple Mac OS X Security Update Fixes Multiple Vulnerabilities // 28 views
9. CA ARCserve Backup Multiple Vulnerabilities // 27 views
10. FUJITSU Interstage Products Apache Tomcat Security Bypass // 24 views