Secunia Logo  
 
Debian udpate for cvs
Secunia Advisory: SA16725
Release Date: 2005-09-07
Popularity: 4,970 views

Critical:
Not critical
Impact: Privilege escalation
Where: Local system
Solution Status: Vendor Patch

OS:Debian GNU/Linux 3.0

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2005-2693


Description:
Debian has issued an update for cvs. This fixes a security issue, which potentially can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges.

For more information:
SA16553

Solution:
Apply updated packages.

-- Debian GNU/Linux 3.0 alias woody --

Source archives:

http://security.debian.org/pool/updates/main/c/cvs/cvs_1.11.1p1debian-13.dsc
Size/MD5 checksum: 683 db16b937ddd5274dbcba38cd4fcd5888
http://security.debian.org/pool/updates/main/c/cvs/cvs_1.11.1p1debian-13.diff.gz
Size/MD5 checksum: 57477 0f11d7ca8cb7b35bf4a12a8c4ad2716d
http://security.debian.org/pool/updat.../c/cvs/cvs_1.11.1p1debian.orig.tar.gz
Size/MD5 checksum: 2621658 500965ab9702b31605f8c58aa21a6205

Alpha architecture:

http://security.debian.org/pool/updat...c/cvs/cvs_1.11.1p1debian-13_alpha.deb
Size/MD5 checksum: 1179406 05f69db4383e65beda9af4fa5dc33481

ARM architecture:

http://security.debian.org/pool/updates/main/c/cvs/cvs_1.11.1p1debian-13_arm.deb
Size/MD5 checksum: 1106388 916e15a512c7010791a726ad60a758a5

Intel IA-32 architecture:

http://security.debian.org/pool/updat.../c/cvs/cvs_1.11.1p1debian-13_i386.deb
Size/MD5 checksum: 1085478 94dfd853806b5f4e17343184fa8b3a1e

Intel IA-64 architecture:

http://security.debian.org/pool/updat.../c/cvs/cvs_1.11.1p1debian-13_ia64.deb
Size/MD5 checksum: 1272636 1966842db5aa4b4b73d70fb94cd53e82

HP Precision architecture:

http://security.debian.org/pool/updat.../c/cvs/cvs_1.11.1p1debian-13_hppa.deb
Size/MD5 checksum: 1148570 7d984ac4ba3ae1c98e1b31d09bc17b5e

Motorola 680x0 architecture:

http://security.debian.org/pool/updat.../c/cvs/cvs_1.11.1p1debian-13_m68k.deb
Size/MD5 checksum: 1067076 1c32e3d2af7669d06152c1586b2ab9be

Big endian MIPS architecture:

http://security.debian.org/pool/updat.../c/cvs/cvs_1.11.1p1debian-13_mips.deb
Size/MD5 checksum: 1130904 622e68d86b8ae619b6d014bb91cf8b33

Little endian MIPS architecture:

http://security.debian.org/pool/updat.../cvs/cvs_1.11.1p1debian-13_mipsel.deb
Size/MD5 checksum: 1132312 e6af9436fbd30a273abb8eeeef7cff80

PowerPC architecture:

http://security.debian.org/pool/updat...cvs/cvs_1.11.1p1debian-13_powerpc.deb
Size/MD5 checksum: 1117418 a45eb850d4e47f4f26162dc50060e8a2

IBM S/390 architecture:

http://security.debian.org/pool/updat.../c/cvs/cvs_1.11.1p1debian-13_s390.deb
Size/MD5 checksum: 1098166 fd9bea393a0d256e01b0c7c22933af6e

Sun Sparc architecture:

http://security.debian.org/pool/updat...c/cvs/cvs_1.11.1p1debian-13_sparc.deb
Size/MD5 checksum: 1108092 68aa285e827a0ce5b10733c6d0fb37bf

Original Advisory:
http://www.debian.org/security/2005/dsa-802

Other References:
SA16553:
http://secunia.com/advisories/16553/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. Drupal Project Module File Upload and Cross-Site Scripting // 48 views
2. SmbFTPD Long Command Processing Vulnerability // 45 views
3. Drupal Project Issue Tracking Module Multiple Vulnerabilities // 38 views
4. Lasso OpenSSL "DSA_verify()" Spoofing Vulnerability // 37 views
5. PHP-Fusion Members CV Module "sortby" SQL Injection Vulnerability // 32 views
6. Xdg-utils mailcap Command Execution Security Issue // 31 views
7. Cisco Global Site Selector DNS Request Denial of Service // 31 views
8. Internet Explorer Data Binding Memory Corruption Vulnerability // 31 views
9. Symantec Mail Security for SMTP Response Handling Denial of Service // 31 views
10. FreeBSD update for lukemftpd // 30 views