Description: SUSE has issued updates for multiple packages. These fix some vulnerabilities and a weakness, which can be exploited by malicious people to bypass certain security restrictions, to cause a DoS (Denial of Service) or potentially to compromise a user's system.
A boundary error in tiffsplit has also been fixed.
Note: The last issued security update for php4 (SUSE-SA:2006:031) broke functionality of some applications in array handling. Fixed packages are reportedly issued soon.
Solution: Apply updated packages.
Updated packages are available using YaST Online Update or via the SUSE FTP site.
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.
Ideas, suggestions, and other feedback are most welcome.