Secunia Logo
Netsikker nu! 2008
 
Debian update for crip
Secunia Advisory: SA15882
Release Date: 2005-06-30
Popularity: 6,223 views

Critical:
Less critical
Impact: Privilege escalation
Where: Local system
Solution Status: Vendor Patch

OS:Debian GNU/Linux 3.1
Debian GNU/Linux unstable alias sid

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2005-0393


Description:
Debian has issued an update for crip. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges.

For more information:
SA15878

Solution:
Apply updated packages.

-- Debian GNU/Linux 3.1 alias sarge --

Source archives:

http://security.debian.org/pool/updates/main/c/crip/crip_3.5-1sarge2.dsc
Size/MD5 checksum: 572 8586b5bc06ec3a314e4f9920061fb061
http://security.debian.org/pool/updates/main/c/crip/crip_3.5-1sarge2.diff.gz
Size/MD5 checksum: 4427 01c4f0a2b1af58ba1c26828399f3c641
http://ftp.debian.org/debian/pool/main/c/crip/crip_3.5.orig.tar.gz
Size/MD5 checksum: 31935 e0b93d38ce19fbdb8c8d7c1d3f2a8676

Alpha architecture:

http://security.debian.org/pool/updates/main/c/crip/crip_3.5-1sarge2_alpha.deb
Size/MD5 checksum: 45134 ecf643d9d598eaa200a8888f474d2084

ARM architecture:

http://security.debian.org/pool/updates/main/c/crip/crip_3.5-1sarge2_arm.deb
Size/MD5 checksum: 44436 52ff32d6ace120ef28d778127f6b624e

Intel IA-32 architecture:

http://security.debian.org/pool/updates/main/c/crip/crip_3.5-1sarge2_i386.deb
Size/MD5 checksum: 43710 639c9586b54d2d4538352c3f0a84fd17

Intel IA-64 architecture:

http://security.debian.org/pool/updates/main/c/crip/crip_3.5-1sarge2_ia64.deb
Size/MD5 checksum: 45582 a3e8b6645fbcc5fbe95ba78cb7aa308d

HP Precision architecture:

http://security.debian.org/pool/updates/main/c/crip/crip_3.5-1sarge2_hppa.deb
Size/MD5 checksum: 45298 62be35e7881ad4d1b32b33d213361dee

Motorola 680x0 architecture:

http://security.debian.org/pool/updates/main/c/crip/crip_3.5-1sarge2_m68k.deb
Size/MD5 checksum: 44562 08ce1cfa8fdeb0cae763f18dcdf53320

Big endian MIPS architecture:

http://security.debian.org/pool/updates/main/c/crip/crip_3.5-1sarge2_mips.deb
Size/MD5 checksum: 47086 e20d2a33a94d3153b10d3adb8f09a9d7

Little endian MIPS architecture:

http://security.debian.org/pool/updates/main/c/crip/crip_3.5-1sarge2_mipsel.deb
Size/MD5 checksum: 47088 55f8284e194dd8593e5486daa24e1851

PowerPC architecture:

http://security.debian.org/pool/updates/main/c/crip/crip_3.5-1sarge2_powerpc.deb
Size/MD5 checksum: 44830 bf5bb457f8363c76374ec1141db324e7

IBM S/390 architecture:

http://security.debian.org/pool/updates/main/c/crip/crip_3.5-1sarge2_s390.deb
Size/MD5 checksum: 44810 8ff12262a45ff8a7602f965c240689ed

Sun Sparc architecture:

http://security.debian.org/pool/updates/main/c/crip/crip_3.5-1sarge2_sparc.deb
Size/MD5 checksum: 44538 fc5feb3258717d56f48b1be034faf164

-- Debian GNU/Linux unstable alias sid --

Fixed in version 3.5-1sarge2.

Original Advisory:
http://www.debian.org/security/2005/dsa-733

Other References:
SA15878:
http://secunia.com/advisories/15878/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. phpBB "gen_rand_string()" Predictable RNG Weakness // 93 views
2. Zeroboard Multiple Vulnerabilities // 53 views
3. Zeroboard Two Vulnerabilities // 39 views
4. phpBB Avatar Functions Information Disclosure and Deletion // 34 views
5. Sun Java System Web Proxy Server FTP Subsystem Buffer Overflow // 34 views
6. CA ARCserve Backup Multiple Vulnerabilities // 30 views
7. phpBB "url" bbcode Script Insertion Vulnerability // 30 views
8. phpBB Avatar Script Insertion Vulnerability // 29 views
9. ArticleBeach Script "page" File Inclusion Vulnerability // 26 views
10. CUPS Multiple Vulnerabilities // 25 views