Mandrake update for kdelibs
Secunia Advisory: SA14323
Release Date: 2005-02-18
Popularity: 5,351 views

Critical:
Less critical
Impact: Manipulation of data
Privilege escalation
Where: From remote
Solution Status: Vendor Patch

OS:Mandrakelinux 10.0
Mandrakelinux 10.1

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2004-1165
CVE-2005-0365


Description:
MandrakeSoft has issued an update for kdelibs. This fixes two vulnerabilities, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges and by malicious people to conduct FTP command injection attacks.

For more information:
SA13398
SA14254

Solution:
Apply updated packages.

Mandrakelinux 10.0:
36c26678038288bba80c3d72c9a1e20a 10.0/RPMS/kdelibs-common-3.2-36.10.100mdk.i586.rpm
3db366da3e09c4237e2a88732faca7a7 10.0/RPMS/libkdecore4-3.2-36.10.100mdk.i586.rpm
38c354234f316a456b9ff82c9535546e 10.0/RPMS/libkdecore4-devel-3.2-36.10.100mdk.i586.rpm
6912a08ee5359a4fdb48cac88b1a038b 10.0/SRPMS/kdelibs-3.2-36.10.100mdk.src.rpm

Mandrakelinux 10.0/AMD64:
dd9a0f3b2adcb7b59831e8f0edd73cce amd64/10.0/RPMS/kdelibs-common-3.2-36.10.100mdk.amd64.rpm
7a20989e14ff56ac7dbabca376bfba12 amd64/10.0/RPMS/lib64kdecore4-3.2-36.10.100mdk.amd64.rpm
071d26aa2f356d2dcc2bff274425531b amd64/10.0/RPMS/lib64kdecore4-devel-3.2-36.10.100mdk.amd64.rpm
6912a08ee5359a4fdb48cac88b1a038b amd64/10.0/SRPMS/kdelibs-3.2-36.10.100mdk.src.rpm

Mandrakelinux 10.1:
0cfe09de4cb942b4368cd1de240b17fa 10.1/RPMS/kdelibs-common-3.2.3-103.1.101mdk.i586.rpm
d8022d4320136b4112c23341c1312af5 10.1/RPMS/libkdecore4-3.2.3-103.1.101mdk.i586.rpm
41a707aab07bf9638c03103d40bca306 10.1/RPMS/libkdecore4-devel-3.2.3-103.1.101mdk.i586.rpm
8a24af1c667e03470cf4528dbd86a164 10.1/SRPMS/kdelibs-3.2.3-103.1.101mdk.src.rpm

Mandrakelinux 10.1/X86_64:
0ddace363e075b7715ddf481e530eaa7 x86_64/10.1/RPMS/kdelibs-common-3.2.3-103.1.101mdk.x86_64.rpm
b22c35e586b9a26c85998b77904a7340 x86_64/10.1/RPMS/lib64kdecore4-3.2.3-103.1.101mdk.x86_64.rpm
3550dbe6d2c956442ecbda70fa71d9dd x86_64/10.1/RPMS/lib64kdecore4-devel-3.2.3-103.1.101mdk.x86_64.rpm
d8022d4320136b4112c23341c1312af5 x86_64/10.1/RPMS/libkdecore4-3.2.3-103.1.101mdk.i586.rpm
8a24af1c667e03470cf4528dbd86a164 x86_64/10.1/SRPMS/kdelibs-3.2.3-103.1.101mdk.src.rpm

Original Advisory:
http://www.mandrakesoft.com/security/advisories?name=MDKSA-2005:045

Other References:
SA13398:
http://secunia.com/advisories/13398/

SA14254:
http://secunia.com/advisories/14254/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. phpBB Multiple Vulnerabilities // 73 views
2. Microsoft Word Malformed Object Pointer Vulnerability // 35 views
3. Zeroboard Multiple Vulnerabilities // 32 views
4. Zeroboard Two Vulnerabilities // 30 views
5. Adobe Flash Player Multiple Vulnerabilities // 28 views
6. Cisco ASA and PIX Security Appliances Multiple Vulnerabilities // 25 views
7. ELinks "smb" Protocol File Upload/Download Vulnerability // 24 views
8. Opera Multiple Vulnerabilities // 20 views
9. Fedora update for samba // 20 views
10. Drupal Content Construction Kit Script Insertion Vulnerabilities // 19 views