Secunia Logo
Netsikker nu! 2008
 
Debian update for webmin
Secunia Advisory: SA12537
Release Date: 2004-09-15
Popularity: 5,743 views

Critical:
Less critical
Impact: Privilege escalation
Where: Local system
Solution Status: Vendor Patch

OS:Debian GNU/Linux 3.0
Debian GNU/Linux unstable alias sid

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2004-0559


Description:
Debian has issued an update for webmin. This fixes a vulnerability, which potentially can be exploited by malicious people to perform certain actions on a system with escalated privileges.

For more information:
SA12488

Solution:
Apply updated packages.

-- Debian GNU/Linux 3.0 alias woody --

Source archives:

http://security.debian.org/pool/updates/main/w/webmin/webmin_0.94-7woody3.dsc
Size/MD5 checksum: 1126 fc3cda806f5d94666cdc2cdac03e2c75
http://security.debian.org/pool/updat.../w/webmin/webmin_0.94-7woody3.diff.gz
Size/MD5 checksum: 63028 64e3c4f454a1d576a4c52df29554309b
http://security.debian.org/pool/updates/main/w/webmin/webmin_0.94.orig.tar.gz
Size/MD5 checksum: 4831737 114c7ca2557c17faebb627a3de7acb97

Architecture independent components:

http://security.debian.org/pool/updat...in/webmin-apache_0.94-7woody3_all.deb
Size/MD5 checksum: 223812 12f056498c3ace868c1964ef2d9594b1
http://security.debian.org/pool/updat...min/webmin-bind8_0.94-7woody3_all.deb
Size/MD5 checksum: 182144 29ff6c45d83b13a482ef93d2ae8c7e3f
http://security.debian.org/pool/updat...in/webmin-burner_0.94-7woody3_all.deb
Size/MD5 checksum: 32688 4482f474e97ca209348a86e51c02a92b
http://security.debian.org/pool/updat...cluster-software_0.94-7woody3_all.deb
Size/MD5 checksum: 27688 6375d52cdd6f79d7f2e1b2e2d5d9bd6c
http://security.debian.org/pool/updat...luster-useradmin_0.94-7woody3_all.deb
Size/MD5 checksum: 30790 157df9a37fa88cb7f4de6421c43d1f16
http://security.debian.org/pool/updat...bmin/webmin-core_0.94-7woody3_all.deb
Size/MD5 checksum: 1250120 f5fd9854a550095c27ab1c88254804e4
http://security.debian.org/pool/updat...bmin/webmin-cpan_0.94-7woody3_all.deb
Size/MD5 checksum: 26596 a4bc52ed84091eb648c399547b181ad3
http://security.debian.org/pool/updat...min/webmin-dhcpd_0.94-7woody3_all.deb
Size/MD5 checksum: 96632 36f8e9ed58c3f3f67146c0f3e5074d29
http://security.debian.org/pool/updat...n/webmin-exports_0.94-7woody3_all.deb
Size/MD5 checksum: 54808 9e9119bc090c28d5119daec9bf654f62
http://security.debian.org/pool/updat...webmin-fetchmail_0.94-7woody3_all.deb
Size/MD5 checksum: 27354 294e18b992f187865f85b2fc0d0abf80
http://security.debian.org/pool/updat...webmin-heartbeat_0.94-7woody3_all.deb
Size/MD5 checksum: 21776 f58063b055e6e0b429f15f1c9c578d2f
http://security.debian.org/pool/updat...min/webmin-inetd_0.94-7woody3_all.deb
Size/MD5 checksum: 48056 1db1b493a9088de2134891d5f0a9d23c
http://security.debian.org/pool/updat...in/webmin-jabber_0.94-7woody3_all.deb
Size/MD5 checksum: 31468 65d7199bd25d1f62ff376c0ad7e78a97
http://security.debian.org/pool/updat...n/webmin-lpadmin_0.94-7woody3_all.deb
Size/MD5 checksum: 103788 1920d9302034a175a6d3b00ca6f5dcf6
http://security.debian.org/pool/updat...ebmin/webmin-mon_0.94-7woody3_all.deb
Size/MD5 checksum: 62498 ee4befa8d564ddb45b38643a62c61cfb
http://security.debian.org/pool/updat...min/webmin-mysql_0.94-7woody3_all.deb
Size/MD5 checksum: 119200 60eefbffc7c1a8a30807623b2fb078e4
http://security.debian.org/pool/updat...ebmin/webmin-nis_0.94-7woody3_all.deb
Size/MD5 checksum: 62634 16ebd24ca1d45a7f3e76361fa5bda345
http://security.debian.org/pool/updat...n/webmin-postfix_0.94-7woody3_all.deb
Size/MD5 checksum: 196726 4d671bfbd3e1e2c8d6b3f9c8ecf93e3a
http://security.debian.org/pool/updat...ebmin-postgresql_0.94-7woody3_all.deb
Size/MD5 checksum: 77564 f0b30ff5b2e01e9aa1e358f2a517e92a
http://security.debian.org/pool/updat...ebmin/webmin-ppp_0.94-7woody3_all.deb
Size/MD5 checksum: 20840 8a7057272358f236075ae24aae4dfd9c
http://security.debian.org/pool/updat...ebmin-qmailadmin_0.94-7woody3_all.deb
Size/MD5 checksum: 38028 4a8ef1a18d7d526f061e2924b83e238d
http://security.debian.org/pool/updat...min/webmin-quota_0.94-7woody3_all.deb
Size/MD5 checksum: 87994 bc7ec88cc7cf4556f8554d26b44063d3
http://security.debian.org/pool/updat...bmin/webmin-raid_0.94-7woody3_all.deb
Size/MD5 checksum: 35802 ec1761610e6a141705505abc407b5690
http://security.debian.org/pool/updat...min/webmin-samba_0.94-7woody3_all.deb
Size/MD5 checksum: 134254 bc70638898d2201d974cbeede4488a02
http://security.debian.org/pool/updat.../webmin-sendmail_0.94-7woody3_all.deb
Size/MD5 checksum: 235266 362bdada21f7c9d6868b4b103593cb86
http://security.debian.org/pool/updat.../webmin-software_0.94-7woody3_all.deb
Size/MD5 checksum: 89332 500a31253b2c7aa207dda9a301b8c325
http://security.debian.org/pool/updat...min/webmin-squid_0.94-7woody3_all.deb
Size/MD5 checksum: 222044 e6a595f8db937ded962582354a6a19f2
http://security.debian.org/pool/updat...bmin/webmin-sshd_0.94-7woody3_all.deb
Size/MD5 checksum: 44286 2b20ed27175c52318c937c3e14b7b0e0
http://security.debian.org/pool/updat...ebmin/webmin-ssl_0.94-7woody3_all.deb
Size/MD5 checksum: 8524 3c50958c006ef46ccd1d6791dd6907d6
http://security.debian.org/pool/updat...in/webmin-status_0.94-7woody3_all.deb
Size/MD5 checksum: 42984 cc008a5c0670c1e2ccb3b63f841ebef6
http://security.debian.org/pool/updat...n/webmin-stunnel_0.94-7woody3_all.deb
Size/MD5 checksum: 26804 746be5ce521801c283f2e926621942aa
http://security.debian.org/pool/updat...in/webmin-wuftpd_0.94-7woody3_all.deb
Size/MD5 checksum: 111026 7e02060c23b92d5edc175b6cfa7b2f1b
http://security.debian.org/pool/updat...in/webmin-xinetd_0.94-7woody3_all.deb
Size/MD5 checksum: 31964 1e35a18332a9f6e753daee5e0157e362
http://security.debian.org/pool/updat.../w/webmin/webmin_0.94-7woody3_all.deb
Size/MD5 checksum: 509128 c24ae0eb379dcdfecb2b4ac2de7351fa

Intel IA-32 architecture:

http://security.debian.org/pool/updat...min/webmin-grub_0.94-7woody3_i386.deb
Size/MD5 checksum: 29546 8fb9582004e9cdaa63fc97f0325ef2a8


-- Debian GNU/Linux unstable alias sid --

Fixed in version 1.160-1.

Original Advisory:
http://www.debian.org/security/2004/dsa-544

Other References:
SA12488:
http://secunia.com/advisories/12488/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

7th Oct, 2008
New advisories: 19
New vulnerabilities: 68
Updated advisories: 62

Moderately // 329 views
Debian update for php5
Moderately // 257 views
Atarone CMS Multiple Vulnerabilities
Moderately // 286 views
Debian update for squid
Less // 285 views
SUSE update for mercurial
Moderately // 332 views
SUSE update for openssh
Less // 268 views
Fedora update for mediawiki

Solutions | More...  


Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. phpBB "url" bbcode Script Insertion Vulnerability // 90 views
2. phpBB BBcode "url" Script Insertion Vulnerability // 66 views
3. Juniper Products Neighbor Discovery Protocol Neighbor Solicitation Vulnerability // 34 views
4. SUSE update for openssh // 29 views
5. Debian update for php5 // 27 views
6. MetaGauge Directory Traversal Vulnerability // 27 views
7. SUSE update for dovecot and graphicsmagic // 26 views
8. D-Bus "_dbus_validate_signature_with_reason()" Denial of Service // 26 views
9. H-Sphere webshell4 Cross-Site Scripting and Request Forgery // 26 views
10. Atarone CMS Multiple Vulnerabilities // 25 views