Secunia - Stay Secure
Gartner
Home Corporate Website Jobs Updated Mailing Lists RSS Blog  Online Shop Advertise
Software Inspectors
  Scan Online
  Personal (PSI)
  Network (NSI 2.0)

Solutions For
  Security Professionals
  Security Vendors

Free Solutions For
  Open Communities
  Journalists & Media

Secunia Advisories
  Search
  Historic Advisories
  Listed By Product
  Listed By Vendor
  Statistics / Graphs
  Secunia Research
  Report Vulnerability
  About Advisories

Virus Information
  Chronological List
  Last 10 Virus Alerts
  About Virus Information

Secunia Customers
  Customer Area


Debian update for openssl096 Advisory Available in Danish 

Secunia Advisory: SA21873  
Release Date: 2006-09-12

Critical:
Less critical
Impact: Security Bypass
Where: From remote
Solution Status: Vendor Patch

OS:Debian GNU/Linux 3.1


CVE reference:CVE-2006-4339 (Secunia mirror)

Want to know the next time vulnerabilities are fixed in this product?
- Companies can be alerted via email and SMS!


Description:
Debian has issued an update for openssl096. This fixes a vulnerability, which can be exploited by malicious people to bypass certain security restrictions.

For more information:
SA21709

Solution:
Apply updated packages.

-- Debian GNU/Linux 3.1 alias sarge --

Source archives:

http://security.debian.org/pool/updat...nssl096/openssl096_0.9.6m-1sarge2.dsc
Size/MD5 checksum: 617 018a88ab90403cb04c62fb3e30b74447
http://security.debian.org/pool/updat...096/openssl096_0.9.6m-1sarge2.diff.gz
Size/MD5 checksum: 19110 ebf3d65348f1a0e2b09543b02f1752ff
http://security.debian.org/pool/updat...nssl096/openssl096_0.9.6m.orig.tar.gz
Size/MD5 checksum: 2184918 1b63bfdca1c37837dddde9f1623498f9

Alpha architecture:

http://security.debian.org/pool/updat.../libssl0.9.6_0.9.6m-1sarge2_alpha.deb
Size/MD5 checksum: 1965098 f321c9d2831643d65718730f8ff81f16

AMD64 architecture:

http://security.debian.org/pool/updat.../libssl0.9.6_0.9.6m-1sarge2_amd64.deb
Size/MD5 checksum: 578014 b47b9fb2acd8c6e22aac6812c7ad4dda

ARM architecture:

http://security.debian.org/pool/updat...96/libssl0.9.6_0.9.6m-1sarge2_arm.deb
Size/MD5 checksum: 518746 29a69a8d997445d4ae2a53c337678cc6

HP Precision architecture:

http://security.debian.org/pool/updat...6/libssl0.9.6_0.9.6m-1sarge2_hppa.deb
Size/MD5 checksum: 587368 4291ac3835b28ae9acf555ec90242d26

Intel IA-32 architecture:

http://security.debian.org/pool/updat...6/libssl0.9.6_0.9.6m-1sarge2_i386.deb
Size/MD5 checksum: 1755640 d9fb8d8383c96d0d4ebe4af8cb5e9a3a

Intel IA-64 architecture:

http://security.debian.org/pool/updat...6/libssl0.9.6_0.9.6m-1sarge2_ia64.deb
Size/MD5 checksum: 814966 1a366b00181bba9bd04b2312f4ae8f42

Motorola 680x0 architecture:

http://security.debian.org/pool/updat...6/libssl0.9.6_0.9.6m-1sarge2_m68k.deb
Size/MD5 checksum: 476722 2002d9eeb9b36d329855042466c9dfc1

Big endian MIPS architecture:

http://security.debian.org/pool/updat...6/libssl0.9.6_0.9.6m-1sarge2_mips.deb
Size/MD5 checksum: 576764 2001e7d3f5d72e0328b8d46f83bb0b4d

Little endian MIPS architecture:

http://security.debian.org/pool/updat...libssl0.9.6_0.9.6m-1sarge2_mipsel.deb
Size/MD5 checksum: 568756 3b25b7c66ff42626c8f458be9485f9bb

PowerPC architecture:

http://security.debian.org/pool/updat...ibssl0.9.6_0.9.6m-1sarge2_powerpc.deb
Size/MD5 checksum: 582402 e677ab4fd68d34affff58a9c7d2cd823

IBM S/390 architecture:

http://security.debian.org/pool/updat...6/libssl0.9.6_0.9.6m-1sarge2_s390.deb
Size/MD5 checksum: 602334 674b58c6811c7e60ad2bb53ec7c1bcdc

Sun Sparc architecture:

http://security.debian.org/pool/updat.../libssl0.9.6_0.9.6m-1sarge2_sparc.deb
Size/MD5 checksum: 1458574 d9ab5370d48647780172587e58682297

Original Advisory:
http://www.us.debian.org/security/2006/dsa-1174

Other References:
SA21709:
http://secunia.com/advisories/21709/



Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.

638 Related Secunia Security Advisories, displaying 10

1. Debian update for openoffice.org
2. Debian update for xine-lib
3. Debian update for exiftags
4. Debian firebird2 Multiple Vulnerabilities
5. Debian update for krb5
6. Debian update for unzip
7. Debian update for smarty
8. Debian update for horde3
9. Debian update for dovecot
10. Debian update for backup-manager

Show all related advisories


Send Feedback to Secunia

If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.








Secunia PSI
Scan | Patch | Track
Free Download

Secunia Poll

Do you think it's important to read Setup/User Guides for applications for use within your network?


See Results   


Most Popular Advisories

1.
Red Hat update for vsftpd
2.
Red Hat update for rdesktop
3.
Red Hat update for rdesktop
4.
OpenBSD BIND Query Port DNS Cache Poisoning
5.
Linux Kernel LDT Buffer Size Handling Vulnerability
6.
Debian update for clamav
7.
Red Hat update for coreutils
8.
Red Hat update for nss_ldap
9.
Drupal Session Fixation Vulnerability
10.
Apple Safari Cross-Domain Cookie Injection Vulnerability





Vulnerability Management - Terms & Conditions - Copyright 2002-2008 Secunia - Compliance - Contact Secunia