Secunia Logo  
 
SUSE update for heimdal
Secunia Advisory: SA19005
Release Date: 2006-02-27
Popularity: 6,291 views

Critical:
Less critical
Impact: Privilege escalation
DoS
Where: From local network
Solution Status: Vendor Patch

OS:SuSE Linux 9.1
SUSE Linux 9.2
SuSE Linux Desktop 1.x
SuSE Linux Enterprise Server 8
SUSE Linux Enterprise Server 9
UnitedLinux 1.0

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2006-0582
CVE-2006-0677


Description:
SUSE has issued an update for heimdal. This fixes multiple vulnerabilities, which can be exploited by malicious, local users to gain escalated privileges or by malicious people to cause a DoS (Denial of Service).

For more information:
SA18733

Solution:
Apply updated packages.

-- x86 Platform --

SUSE LINUX 9.2:
ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/i586/heimdal-0.6.2-8.6.i586.rpm
3d3d6618cfb387ed34c324d805de0df0
ftp://ftp.suse.com/pub/suse/i386/upda...i586/heimdal-devel-0.6.2-8.6.i586.rpm
7f885d8e091ce98a3bab1816d4165d3e
ftp://ftp.suse.com/pub/suse/i386/upda...m/i586/heimdal-lib-0.6.2-8.6.i586.rpm
021f253a7df8d5ab3caa20b25ea67529
ftp://ftp.suse.com/pub/suse/i386/upda...i586/heimdal-tools-0.6.2-8.4.i586.rpm
748a213e99d7a2be08eeb4496aecb478
ftp://ftp.suse.com/pub/suse/i386/upda...eimdal-tools-devel-0.6.2-8.4.i586.rpm
02b9f64f5be3822307102fb9d5842119

SUSE LINUX 9.1:
ftp://ftp.suse.com/pub/suse/i386/upda.../i586/heimdal-0.6.1rc3-55.21.i586.rpm
235b22414f6129d744f2f62ffccc7962
ftp://ftp.suse.com/pub/suse/i386/upda...heimdal-devel-0.6.1rc3-55.21.i586.rpm
5c17e233db8c0b53798cab0d78f1ede1
ftp://ftp.suse.com/pub/suse/i386/upda...6/heimdal-lib-0.6.1rc3-55.21.i586.rpm
17d0afc2004af42ebbeb8d77af724fe5
ftp://ftp.suse.com/pub/suse/x86_64/up...l-lib-32bit-9.1-200602210606.i586.rpm
38c61584528fa24ff04ece6705d21fb3

-- x86-64 Platform --

SUSE LINUX 9.2:
ftp://ftp.suse.com/pub/suse/i386/upda...m/x86_64/heimdal-0.6.2-8.6.x86_64.rpm
1f899680ff31945963b55e49df6bcfda
ftp://ftp.suse.com/pub/suse/i386/upda...64/heimdal-devel-0.6.2-8.6.x86_64.rpm
1d65e94810c65ccff51b75066569c428
ftp://ftp.suse.com/pub/suse/i386/upda...vel-32bit-9.2-200602211039.x86_64.rpm
068244c514f752985be7c76c5a25418e
ftp://ftp.suse.com/pub/suse/i386/upda...6_64/heimdal-lib-0.6.2-8.6.x86_64.rpm
20b9598b6f5cfaf70de0d3a120f89182
ftp://ftp.suse.com/pub/suse/i386/upda...lib-32bit-9.2-200602211039.x86_64.rpm
93dc79bdf0fc7b7b4cd82a0c3769329e
ftp://ftp.suse.com/pub/suse/i386/upda...64/heimdal-tools-0.6.2-8.4.x86_64.rpm
31d1a3e3da2a794850b3e03710d5263c
ftp://ftp.suse.com/pub/suse/i386/upda...mdal-tools-devel-0.6.2-8.4.x86_64.rpm
71b87841750ba89979c51c3148d315a0

SUSE LINUX 9.1:
ftp://ftp.suse.com/pub/suse/x86_64/up..._64/heimdal-0.6.1rc3-55.21.x86_64.rpm
226be123cb085fb50899ac8af82f5bda
ftp://ftp.suse.com/pub/suse/x86_64/up...imdal-devel-0.6.1rc3-55.21.x86_64.rpm
658aa7a1969078842a0a9368402b83ff
ftp://ftp.suse.com/pub/suse/x86_64/up...heimdal-lib-0.6.1rc3-55.21.x86_64.rpm
dafdcf2c26be6576916f5ba6cf3cd9f6

-- Sources --

SUSE LINUX 9.2:
ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/src/heimdal-0.6.2-8.6.src.rpm
e7333885b6976b490164d28dbc00e905

SUSE LINUX 9.1:
ftp://ftp.suse.com/pub/suse/i386/upda...pm/src/heimdal-0.6.1rc3-55.21.src.rpm
ab5d0a61dbfb9df34dfa200bda28d04a
ftp://ftp.suse.com/pub/suse/x86_64/up...pm/src/heimdal-0.6.1rc3-55.21.src.rpm
0d7fc839fc86c6919931190dbdfbd88e

Original Advisory:
http://lists.suse.de/archive/suse-security-announce/2006-Feb/0009.html

Other References:
SA18733:
http://secunia.com/advisories/18733/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. OpenSSL DSA / ECDSA "EVP_VerifyFinal()" Spoofing Vulnerability // 128 views
2. Joomla! "X_CMS_LIBRARY_PATH" Directory Traversal Vulnerability // 108 views
3. Red Hat update for openssl // 74 views
4. Red Hat update for xterm // 64 views
5. Red Hat update for dbus // 61 views
6. SAP GUI TabOne ActiveX Control Caption List Buffer Overflow // 61 views
7. Symantec Mail Security for SMTP Response Handling Denial of Service // 59 views
8. Cain & Abel Cisco IOS Configuration File Buffer Overflow // 47 views
9. vBulletin Personal Sticky Threads Add-on Security Bypass Vulnerability // 44 views
10. PollHelper "poll.inc" Information Disclosure Security Issue // 43 views