Secunia Logo
Netsikker nu! 2008
 
Debian update for tdiary
Secunia Advisory: SA16787
Release Date: 2005-09-13
Popularity: 5,451 views

Critical:
Less critical
Impact: Hijacking
Where: From remote
Solution Status: Vendor Patch

OS:Debian GNU/Linux 3.1
Debian GNU/Linux unstable alias sid

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2005-2411


Description:
Debian has issued an update for tdiary. This fixes a vulnerability, which can be exploited by malicious people to conduct cross-site request forgery attacks.

For more information:
SA16329

Solution:
Apply updated packages.

-- Debian GNU/Linux 3.1 alias sarge --

Source archives:

http://security.debian.org/pool/updates/main/t/tdiary/tdiary_2.0.1-1sarge1.dsc
Size/MD5 checksum: 698 725575945a14b3ff9ff776e4254b6e54
http://security.debian.org/pool/updat...t/tdiary/tdiary_2.0.1-1sarge1.diff.gz
Size/MD5 checksum: 24611 df8afbbc86e0f1a9f365a1b8271e7a12
http://security.debian.org/pool/updates/main/t/tdiary/tdiary_2.0.1.orig.tar.gz
Size/MD5 checksum: 1840990 eaec0d3c00e1605d5cefad4119718183

Architecture independent components:

http://security.debian.org/pool/updat.../tdiary-contrib_2.0.1-1sarge1_all.deb
Size/MD5 checksum: 109264 b3de14edff72c292002d68b4f6c5234c
http://security.debian.org/pool/updat...ary/tdiary-mode_2.0.1-1sarge1_all.deb
Size/MD5 checksum: 27768 632e5ed6bb82fce0d1f787aea0b25cf4
http://security.debian.org/pool/updat...y/tdiary-plugin_2.0.1-1sarge1_all.deb
Size/MD5 checksum: 155066 6100fce2dbe0a8acc5a365766b2b8b84
http://security.debian.org/pool/updat...ry/tdiary-theme_2.0.1-1sarge1_all.deb
Size/MD5 checksum: 1506732 6a77d569ef301bc299ee4fe8e4f929f5
http://security.debian.org/pool/updat...t/tdiary/tdiary_2.0.1-1sarge1_all.deb
Size/MD5 checksum: 171434 b31846dc0632acdb13787a5ec28e8bc5

-- Debian GNU/Linux unstable alias sid --

Fixed in version 2.0.2-1.

Provided and/or discovered by:
http://www.debian.org/security/2005/dsa-808

Other References:
SA16329:
http://secunia.com/advisories/16329/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

7th Oct, 2008
New advisories: 19
New vulnerabilities: 68
Updated advisories: 62

Moderately // 365 views
Debian update for php5
Moderately // 295 views
Atarone CMS Multiple Vulnerabilities
Moderately // 320 views
Debian update for squid
Less // 321 views
SUSE update for mercurial
Moderately // 370 views
SUSE update for openssh
Less // 299 views
Fedora update for mediawiki

Solutions | More...  


Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. Zeroboard Multiple Vulnerabilities // 55 views
2. Zeroboard Two Vulnerabilities // 50 views
3. phpBB BBcode "url" Script Insertion Vulnerability // 42 views
4. Juniper Products Neighbor Discovery Protocol Neighbor Solicitation Vulnerability // 39 views
5. phpBB "url" bbcode Script Insertion Vulnerability // 38 views
6. HP-UX NFS/ONCplus Denial of Service Vulnerability // 34 views
7. D-Bus "_dbus_validate_signature_with_reason()" Denial of Service // 30 views
8. SUSE update for openssh // 27 views
9. H-Sphere webshell4 Cross-Site Scripting and Request Forgery // 27 views
10. noName CMS "index.php" SQL Injection Vulnerabilities // 26 views