Secunia - Stay Secure
Home Corporate Website Jobs Updated Mailing Lists RSS Blog  Online Shop Advertise
Software Inspectors
  Scan Online
  Personal (PSI)
  Network (NSI 2.0)

Solutions For
  Security Professionals
  Security Vendors

Free Solutions For
  Open Communities
  Journalists & Media

Secunia Advisories
  Search
  Historic Advisories
  Listed By Product
  Listed By Vendor
  Statistics / Graphs
  Secunia Research
  Report Vulnerability
  About Advisories

Virus Information
  Chronological List
  Last 10 Virus Alerts
  About Virus Information

Secunia Customers
  Customer Area


Debian update for zope2.7 Advisory Available in Danish 

Secunia Advisory: SA21953  
Release Date: 2006-09-18

Critical:
Moderately critical
Impact: Exposure of sensitive information
Where: From remote
Solution Status: Vendor Patch

OS:Debian GNU/Linux 3.1
Debian GNU/Linux unstable alias sid


CVE reference:CVE-2006-4684 (Secunia mirror)

Want to know the next time vulnerabilities are fixed in this product?
- Companies can be alerted via email and SMS!


Description:
Debian has issued an update for zope2.7. This fixes a vulnerability, which can be exploited by malicious people to disclose potentially sensitive information.

For more information:
SA21947

Solution:
Apply updated packages.

-- Debian GNU/Linux 3.1 alias sarge --

Source archives:

http://security.debian.org/pool/updates/main/z/zope2.7/zope2.7_2.7.5-2sarge3.dsc
Size/MD5 checksum: 906 b4ea5636227d16c5df630894d2b76967
http://security.debian.org/pool/updat...zope2.7/zope2.7_2.7.5-2sarge3.diff.gz
Size/MD5 checksum: 51399 ee75bf3e88b6eb161ccc431e1077bce8
http://security.debian.org/pool/updates/main/z/zope2.7/zope2.7_2.7.5.orig.tar.gz
Size/MD5 checksum: 2885871 5b5c5823c62370d9f7325c6014a49d8b

Alpha architecture:

http://security.debian.org/pool/updat...pe2.7/zope2.7_2.7.5-2sarge3_alpha.deb
Size/MD5 checksum: 2669566 2c4d8fb2ac3e9dba4f7de9caf0868b51

AMD64 architecture:

http://security.debian.org/pool/updat...pe2.7/zope2.7_2.7.5-2sarge3_amd64.deb
Size/MD5 checksum: 2661080 8108a298111e6abad30073cbd002093e

ARM architecture:

http://security.debian.org/pool/updat...zope2.7/zope2.7_2.7.5-2sarge3_arm.deb
Size/MD5 checksum: 2616068 9d77c1ccce693668a3a7e2bb0f35491d

HP Precision architecture:

http://security.debian.org/pool/updat...ope2.7/zope2.7_2.7.5-2sarge3_hppa.deb
Size/MD5 checksum: 2736774 1fd5611ff6fa57d561b15bae9d836fe7

Intel IA-32 architecture:

http://security.debian.org/pool/updat...ope2.7/zope2.7_2.7.5-2sarge3_i386.deb
Size/MD5 checksum: 2608554 779c9e75c919a1d39d0db7a9a6fc14d9

Intel IA-64 architecture:

http://security.debian.org/pool/updat...ope2.7/zope2.7_2.7.5-2sarge3_ia64.deb
Size/MD5 checksum: 2959538 d800e88a7a988d9bb0db833df57f074a

Motorola 680x0 architecture:

http://security.debian.org/pool/updat...ope2.7/zope2.7_2.7.5-2sarge3_m68k.deb
Size/MD5 checksum: 2601510 cdd9b090bf745ab74545361936b415c8

Big endian MIPS architecture:

http://security.debian.org/pool/updat...ope2.7/zope2.7_2.7.5-2sarge3_mips.deb
Size/MD5 checksum: 2675666 260205e53eb3802ad50c4adcc8ac0d5f

Little endian MIPS architecture:

http://security.debian.org/pool/updat...e2.7/zope2.7_2.7.5-2sarge3_mipsel.deb
Size/MD5 checksum: 2678458 dc9af18e0027a9fb7ae507ff33e050b9

PowerPC architecture:

http://security.debian.org/pool/updat...2.7/zope2.7_2.7.5-2sarge3_powerpc.deb
Size/MD5 checksum: 2723958 90e0b09a7f8d299a60c09947b86a72e5

IBM S/390 architecture:

http://security.debian.org/pool/updat...ope2.7/zope2.7_2.7.5-2sarge3_s390.deb
Size/MD5 checksum: 2663150 a5f76f5bc20b8fde2ed6ffcf24dffa33

Sun Sparc architecture:

http://security.debian.org/pool/updat...pe2.7/zope2.7_2.7.5-2sarge3_sparc.deb
Size/MD5 checksum: 2670708 66e3bd2e47d38d33bf951711e59f7592

-- Debian GNU/Linux unstable alias sid --

Fixed in version 2.8.8-2 (Debian GNU/Linux unstable alias sid does not contain zope2.7 packages anymore).

Original Advisory:
http://www.us.debian.org/security/2006/dsa-1176

Other References:
SA21947:
http://secunia.com/advisories/21947/



Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.

1214 Related Secunia Security Advisories, displaying 10

1. Debian update for tiff
2. Debian update for libxml2
3. Debian update for postfix
4. Debian update for pdns
5. Debian update for httracker
6. Debian update for opensc
7. Debian update for cupsys
8. Debian update for libxslt
9. Debian update for newsx
10. Debian update for ruby1.9

Show all related advisories


Send Feedback to Secunia

If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.








Secunia PSI
Scan | Patch | Track
Free Download

Secunia Poll

Do you think it's important to read Setup/User Guides for applications for use within your network?


See Results   


Most Popular Advisories

1.
OpenOffice "rtl_allocateMe mory()" Truncation Vulnerability
2.
JustSystems Ichitaro Products Unspecified Code Execution Vulnerability
3.
Red Hat update for tomcat
4.
Ampache "gather-message s.sh" Insecure Temporary Files
5.
Tiger "genmsgidx" Insecure Temporary Files
6.
R "javareconf" Insecure Temporary Files
7.
HP-UX update for Apache
8.
Honeyd "test.sh" Insecure Temporary Files
9.
Red Hat update for openoffice.org
10.
Citadel "migrate_aliase s.sh" Insecure Temporary Files





Vulnerability Management - Terms & Conditions - Copyright 2002-2008 Secunia - Compliance - Contact Secunia