Secunia Logo
Netsikker nu! 2008
 
Fedora update for cdrtools
Secunia Advisory: SA12501
Release Date: 2004-09-10
Popularity: 7,481 views

Critical:
Less critical
Impact: Privilege escalation
Where: Local system
Solution Status: Vendor Patch

OS:Fedora Core 1
Fedora Core 2

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2004-0806


Description:
Fedora has issued an update for cdrtools. This fixes a vulnerability, which can be exploited by malicious, local users to gain escalated privileges.

For more information:
SA12481

Solution:
Apply updated packages.

Fedora Core 1:
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/1/

8c5baaa4f091b16370a2fc6e92684246 SRPMS/cdrtools-2.01-0.a19.2.FC1.1.src.rpm
c3ce28f3c5b3190fd888db13f6a4de4c x86_64/cdrecord-2.01-0.a19.2.FC1.1.x86_64.rpm
32c300cf4f4bafd083782de090375c15 x86_64/cdrecord-devel-2.01-0.a19.2.FC1.1.x86_64.rpm
e6a285ccdeba93bd15488ebb8ea29690 x86_64/mkisofs-2.01-0.a19.2.FC1.1.x86_64.rpm
86dde7afac3d91514876e876cf96c4e2 x86_64/cdda2wav-2.01-0.a19.2.FC1.1.x86_64.rpm
c9cbb9577b4574f33357cb058eae6de4 x86_64/debug/cdrtools-debuginfo-2.01-0.a19.2.FC1.1.x86_64.rpm
02d85342deaca913ffb55b97bba42e10 i386/cdrecord-2.01-0.a19.2.FC1.1.i386.rpm
2c2ecccb5de0d111e1d23bc40d70cfdc i386/cdrecord-devel-2.01-0.a19.2.FC1.1.i386.rpm
969a9959cb2dac9295cb6a1fd6c48a49 i386/mkisofs-2.01-0.a19.2.FC1.1.i386.rpm
3df104a4966c5c075a8acbdc7248d362 i386/cdda2wav-2.01-0.a19.2.FC1.1.i386.rpm
1101f36dc1b269f940805eea77fd4da8 i386/debug/cdrtools-debuginfo-2.01-0.a19.2.FC1.1.i386.rpm


Fedora Core 2:
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/2/

97a97d2384f9ab582736d985f6b8f302 SRPMS/cdrtools-2.01-0.a27.4.FC2.3.src.rpm
6dad4e7c175d300f9d7a0d2338139ca1 x86_64/cdrecord-2.01-0.a27.4.FC2.3.x86_64.rpm
3ca938e1c1c775bb774349e35dcca9c9 x86_64/cdrecord-devel-2.01-0.a27.4.FC2.3.x86_64.rpm
fc4ceb93fb901065cad26be9d6e4b222 x86_64/mkisofs-2.01-0.a27.4.FC2.3.x86_64.rpm
6697f963ed06d27bbafc15dbc4a57e15 x86_64/cdda2wav-2.01-0.a27.4.FC2.3.x86_64.rpm
4426a57a0edcdd96cfcd5235dd97ec86 x86_64/debug/cdrtools-debuginfo-2.01-0.a27.4.FC2.3.x86_64.rpm
df1786fde31756ea0e86cc6681a61036 i386/cdrecord-2.01-0.a27.4.FC2.3.i386.rpm
7290bd23cbdf9f2bd745a0f10e97588e i386/cdrecord-devel-2.01-0.a27.4.FC2.3.i386.rpm
e211f8168b2871d28284a2a51cedfe1a i386/mkisofs-2.01-0.a27.4.FC2.3.i386.rpm
4ad7958b1c95aa4ad4d2309fc6c24bf8 i386/cdda2wav-2.01-0.a27.4.FC2.3.i386.rpm
6279fef62c5fbfa11a8550cd0731f798 i386/debug/cdrtools-debuginfo-2.01-0.a27.4.FC2.3.i386.rpm

Other References:
SA12481:
http://secunia.com/advisories/12481/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Today
New advisories: 6
New vulnerabilities: 14
Updated advisories: 10

Less // 135 views
Debian update for openldap
Moderately // 115 views
Debian update for ruby1.9
Moderately // 120 views
Debian update for ruby1.8

10th Oct, 2008
New advisories: 15
New vulnerabilities: 83
Updated advisories: 39

Moderately // 833 views
Red Hat update for cups

Solutions | More...  


Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. Apache Tomcat "RemoteFilterValve" Security Bypass Security Issue // 142 views
2. Debian update for openldap // 117 views
3. Debian update for ruby1.8 // 108 views
4. Debian update for ruby1.9 // 104 views
5. GuildFTPd "LIST" Processing Buffer Overflow Vulnerability // 81 views
6. Sun Java System Web Proxy Server FTP Subsystem Buffer Overflow // 44 views
7. CUPS Multiple Vulnerabilities // 42 views
8. Apple Mac OS X Security Update Fixes Multiple Vulnerabilities // 36 views
9. FUJITSU Interstage Products Apache Tomcat Security Bypass // 27 views
10. Trend Micro ServerProtect Multiple Buffer Overflow Vulnerabilities // 26 views