Secunia - Stay Secure
Home Corporate Website Jobs Updated Mailing Lists RSS Blog  Online Shop Advertise
Software Inspectors
  Scan Online
  Personal (PSI)
  Network (NSI 2.0)

Solutions For
  Security Professionals
  Security Vendors

Free Solutions For
  Open Communities
  Journalists & Media

Secunia Advisories
  Search
  Historic Advisories
  Listed By Product
  Listed By Vendor
  Statistics / Graphs
  Secunia Research
  Report Vulnerability
  About Advisories

Virus Information
  Chronological List
  Last 10 Virus Alerts
  About Virus Information

Secunia Customers
  Customer Area


Ubuntu update for fetchmail Advisory Available in Danish 

Secunia Advisory: SA18266  
Release Date: 2006-01-03

Critical:
Not critical
Impact: DoS
Where: From remote
Solution Status: Vendor Patch

OS:Ubuntu Linux 4.10
Ubuntu Linux 5.04
Ubuntu Linux 5.10


CVE reference:CVE-2005-4348 (Secunia mirror)

Want to know the next time vulnerabilities are fixed in this product?
- Companies can be alerted via email and SMS!


Description:
Ubuntu has issued an update for fetchmail. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).

For more information:
SA17891

Solution:
Apply updated packages.

-- Ubuntu 4.10 --

Source archives:

http://security.ubuntu.com/ubuntu/poo...l/fetchmail_6.2.5-12ubuntu1.3.diff.gz
Size/MD5: 151315 a832d3536f810689cfb51904577afe31
http://security.ubuntu.com/ubuntu/poo...hmail/fetchmail_6.2.5-12ubuntu1.3.dsc
Size/MD5: 656 90dd7402e4cec15abe0bf45e6c274503
http://security.ubuntu.com/ubuntu/poo...fetchmail/fetchmail_6.2.5.orig.tar.gz
Size/MD5: 1257376 9956b30139edaa4f5f77c4d0dbd80225

Architecture independent packages:

http://security.ubuntu.com/ubuntu/poo...tchmail-ssl_6.2.5-12ubuntu1.3_all.deb
Size/MD5: 42434 a7ef705546ce8f4e603075f39a6dde4b
http://security.ubuntu.com/ubuntu/poo...tchmailconf_6.2.5-12ubuntu1.3_all.deb
Size/MD5: 101538 389cd71986280ab56fcbba0e404604f6

amd64 architecture (Athlon64, Opteron, EM64T Xeon)

http://security.ubuntu.com/ubuntu/poo...fetchmail_6.2.5-12ubuntu1.3_amd64.deb
Size/MD5: 297028 067506bbeffaadd42306539a4997e370

i386 architecture (x86 compatible Intel/AMD)

http://security.ubuntu.com/ubuntu/poo.../fetchmail_6.2.5-12ubuntu1.3_i386.deb
Size/MD5: 286240 d5c068f89b48562716e016450e2248df

powerpc architecture (Apple Macintosh G3/G4/G5)

http://security.ubuntu.com/ubuntu/poo...tchmail_6.2.5-12ubuntu1.3_powerpc.deb
Size/MD5: 296246 544f5b58795c986c7a252cc2e2a8727f

-- Ubuntu 5.04 --

Source archives:

http://security.ubuntu.com/ubuntu/poo...il/fetchmail_6.2.5-8ubuntu2.3.diff.gz
Size/MD5: 137257 f0ceaf752282a062c999b384b8b7ff55
http://security.ubuntu.com/ubuntu/poo...chmail/fetchmail_6.2.5-8ubuntu2.3.dsc
Size/MD5: 639 85458cbf69ba7f067527d80ac7ceb4b3
http://security.ubuntu.com/ubuntu/poo...fetchmail/fetchmail_6.2.5.orig.tar.gz
Size/MD5: 1257376 9956b30139edaa4f5f77c4d0dbd80225

Architecture independent packages:

http://security.ubuntu.com/ubuntu/poo...etchmailconf_6.2.5-8ubuntu2.3_all.deb
Size/MD5: 101674 8a30c5316f2ea1fcce14b3c36ba370bf

amd64 architecture (Athlon64, Opteron, EM64T Xeon)

http://security.ubuntu.com/ubuntu/poo.../fetchmail_6.2.5-8ubuntu2.3_amd64.deb
Size/MD5: 555760 8d4672ed29e7dbe60d9a4f473158aa61

i386 architecture (x86 compatible Intel/AMD)

http://security.ubuntu.com/ubuntu/poo...l/fetchmail_6.2.5-8ubuntu2.3_i386.deb
Size/MD5: 546362 0cbed65c2404592f5e1bd055574fe53b

powerpc architecture (Apple Macintosh G3/G4/G5)

http://security.ubuntu.com/ubuntu/poo...etchmail_6.2.5-8ubuntu2.3_powerpc.deb
Size/MD5: 556200 3927a92d2deba7534c5a67bbdecc77fc

-- Ubuntu 5.10 --

Source archives:

http://security.ubuntu.com/ubuntu/poo...l/fetchmail_6.2.5-13ubuntu3.2.diff.gz
Size/MD5: 131595 f8ee0c74b53ffb107a8f9b8d9ded75d1
http://security.ubuntu.com/ubuntu/poo...hmail/fetchmail_6.2.5-13ubuntu3.2.dsc
Size/MD5: 830 64e499d812a87ad755bcd32b352f2b00
http://security.ubuntu.com/ubuntu/poo...fetchmail/fetchmail_6.2.5.orig.tar.gz
Size/MD5: 1257376 9956b30139edaa4f5f77c4d0dbd80225

Architecture independent packages:

http://security.ubuntu.com/ubuntu/poo...tchmail-ssl_6.2.5-13ubuntu3.2_all.deb
Size/MD5: 42940 7a6644925b26ac82e571c8a191df1d3e
http://security.ubuntu.com/ubuntu/poo...tchmailconf_6.2.5-13ubuntu3.2_all.deb
Size/MD5: 102024 36fe4801b83466c7b4aad98fd64505b7

amd64 architecture (Athlon64, Opteron, EM64T Xeon)

http://security.ubuntu.com/ubuntu/poo...fetchmail_6.2.5-13ubuntu3.2_amd64.deb
Size/MD5: 299512 5b3da4915bcff58587ba8d7f8262a09c

i386 architecture (x86 compatible Intel/AMD)

http://security.ubuntu.com/ubuntu/poo.../fetchmail_6.2.5-13ubuntu3.2_i386.deb
Size/MD5: 286284 bd2eb14e845caaec8f157c5591e7ee5e

powerpc architecture (Apple Macintosh G3/G4/G5)

http://security.ubuntu.com/ubuntu/poo...tchmail_6.2.5-13ubuntu3.2_powerpc.deb
Size/MD5: 297134 9b60cdcc559a884589943c136359b336

Original Advisory:
http://www.ubuntulinux.org/usn/usn-233-1

Other References:
SA17891:
http://secunia.com/advisories/17891/



Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.

343 Related Secunia Security Advisories, displaying 10

1. Ubuntu update for kdelibs and qt-x11-free
2. Ubuntu update for ipsec-tools
3. Ubuntu update for freetype, libxfont, xorg, and xorg-server
4. Ubuntu update for krb5
5. Ubuntu update for openoffice.org
6. Ubuntu update for xmms
7. Ubuntu update for nas
8. Ubuntu update for file
9. Ubuntu update for inkscape
10. Ubuntu update for libwpd

Show all related advisories


Send Feedback to Secunia

If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.








Secunia PSI
Scan | Patch | Track
Free Download

Secunia Poll

Do you think it's important to read Setup/User Guides for applications for use within your network?


See Results   


Most Popular Advisories

1.
phpBB reveals user IPs
2.
HP TCP/IP Services for OpenVMS Finger Format String Vulnerability
3.
Adium MSN SLP Message Integer Overflow Vulnerabilities
4.
GpsDrive "geo-code" Insecure Temporary Files
5.
Blogn Cross-Site Scripting and Cross-Site Request Forgery
6.
Novell eDirectory Multiple Vulnerabilities
7.
geo-* Insecure Temporary Files
8.
Sun Solaris Kernel Covert Channel Security Bypass
9.
Caudium "configvar" Insecure Temporary Files
10.
dotProject SQL Injection and Cross-Site Scripting





Vulnerability Management - Terms & Conditions - Copyright 2002-2008 Secunia - Compliance - Contact Secunia