Secunia Logo  
 
Ubuntu update for gnupg
Secunia Advisory: SA23110
Release Date: 2006-11-30
Popularity: 4,840 views

Critical:
Moderately critical
Impact: System access
Where: From remote
Solution Status: Vendor Patch

OS:Ubuntu Linux 5.10
Ubuntu Linux 6.06
Ubuntu Linux 6.10

Subscribe: Instant alerts on relevant vulnerabilities


Description:
Ubuntu has isssued an update for gnupg. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system.

For more information:
SA23094

Solution:
Apply updated packages.

-- Ubuntu 5.10 --

Source archives:

http://security.ubuntu.com/ubuntu/poo.../gnupg/gnupg_1.4.1-1ubuntu1.5.diff.gz
Size/MD5: 21914 9c398c7ad981984ce7e2d5c73d39646c
http://security.ubuntu.com/ubuntu/pool/main/g/gnupg/gnupg_1.4.1-1ubuntu1.5.dsc
Size/MD5: 684 99674acf9842bede50bfc9cee94233bc
http://security.ubuntu.com/ubuntu/pool/main/g/gnupg/gnupg_1.4.1.orig.tar.gz
Size/MD5: 4059170 1cc77c6943baaa711222e954bbd785e5

amd64 architecture (Athlon64, Opteron, EM64T Xeon)

http://security.ubuntu.com/ubuntu/poo...nupg/gnupg_1.4.1-1ubuntu1.5_amd64.deb
Size/MD5: 1136516 6f95cee543adea0d34af0db0270e8301
http://security.ubuntu.com/ubuntu/poo...gpgv-udeb_1.4.1-1ubuntu1.5_amd64.udeb
Size/MD5: 152280 91e6fec1a7cac200e6607a5aca8e283c

i386 architecture (x86 compatible Intel/AMD)

http://security.ubuntu.com/ubuntu/poo...gnupg/gnupg_1.4.1-1ubuntu1.5_i386.deb
Size/MD5: 1044704 511314c5de795b3f732fbc48fa9bc245
http://security.ubuntu.com/ubuntu/poo.../gpgv-udeb_1.4.1-1ubuntu1.5_i386.udeb
Size/MD5: 130672 c2af84edf925cf93e92df0afd1747a8b

powerpc architecture (Apple Macintosh G3/G4/G5)

http://security.ubuntu.com/ubuntu/poo...pg/gnupg_1.4.1-1ubuntu1.5_powerpc.deb
Size/MD5: 1119908 d942ad0abd5921bb771fd6180d32f28b
http://security.ubuntu.com/ubuntu/poo...gv-udeb_1.4.1-1ubuntu1.5_powerpc.udeb
Size/MD5: 140214 ac880f5f3a32fe0bba76d61ef5374f61

sparc architecture (Sun SPARC/UltraSPARC)

http://security.ubuntu.com/ubuntu/poo...nupg/gnupg_1.4.1-1ubuntu1.5_sparc.deb
Size/MD5: 1064488 49125a2b181ce9e4ca22b67b6712b153
http://security.ubuntu.com/ubuntu/poo...gpgv-udeb_1.4.1-1ubuntu1.5_sparc.udeb
Size/MD5: 139606 f97c2b5b2f406afb0cc8478df8529a1c

-- Ubuntu 6.06 LTS --

Source archives:

http://security.ubuntu.com/ubuntu/poo...nupg/gnupg_1.4.2.2-1ubuntu2.3.diff.gz
Size/MD5: 20808 4208a73338b5624d39f355e553927548
http://security.ubuntu.com/ubuntu/pool/main/g/gnupg/gnupg_1.4.2.2-1ubuntu2.3.dsc
Size/MD5: 690 858b47da7b535136aa99ab7ccbd2aaef
http://security.ubuntu.com/ubuntu/pool/main/g/gnupg/gnupg_1.4.2.2.orig.tar.gz
Size/MD5: 4222685 50d8fd9c5715ff78b7db0e5f20d08550

amd64 architecture (Athlon64, Opteron, EM64T Xeon)

http://security.ubuntu.com/ubuntu/poo...pg/gnupg_1.4.2.2-1ubuntu2.3_amd64.deb
Size/MD5: 1066374 7e03df9183620a5c23db7caefb3f5b2b
http://security.ubuntu.com/ubuntu/poo...gv-udeb_1.4.2.2-1ubuntu2.3_amd64.udeb
Size/MD5: 140312 9384b3aa9a950db2bb80ad20f820529c

i386 architecture (x86 compatible Intel/AMD)

http://security.ubuntu.com/ubuntu/poo...upg/gnupg_1.4.2.2-1ubuntu2.3_i386.deb
Size/MD5: 981392 75eba5633769eb5c8e4fbd863d0ffed9
http://security.ubuntu.com/ubuntu/poo...pgv-udeb_1.4.2.2-1ubuntu2.3_i386.udeb
Size/MD5: 120284 5ab02d409b4b475657f5c52081d3ccf9

powerpc architecture (Apple Macintosh G3/G4/G5)

http://security.ubuntu.com/ubuntu/poo.../gnupg_1.4.2.2-1ubuntu2.3_powerpc.deb
Size/MD5: 1053850 43d575debcff4457419d48f78d164449
http://security.ubuntu.com/ubuntu/poo...-udeb_1.4.2.2-1ubuntu2.3_powerpc.udeb
Size/MD5: 130154 9491f62000cc12df6f23b8d66fd97859

sparc architecture (Sun SPARC/UltraSPARC)

http://security.ubuntu.com/ubuntu/poo...pg/gnupg_1.4.2.2-1ubuntu2.3_sparc.deb
Size/MD5: 994040 09848e3252cae2efeefeef913e4ef9d5
http://security.ubuntu.com/ubuntu/poo...gv-udeb_1.4.2.2-1ubuntu2.3_sparc.udeb
Size/MD5: 127412 56d3912d3002bf3f0377a6437a6f851c

-- Ubuntu 6.10 --

Source archives:

http://security.ubuntu.com/ubuntu/poo.../gnupg/gnupg_1.4.3-2ubuntu3.1.diff.gz
Size/MD5: 25822 be04724ca7e6d4dcf2a016ebe2d4bd25
http://security.ubuntu.com/ubuntu/pool/main/g/gnupg/gnupg_1.4.3-2ubuntu3.1.dsc
Size/MD5: 697 446e892916ea052627a78152037651d9
http://security.ubuntu.com/ubuntu/pool/main/g/gnupg/gnupg_1.4.3.orig.tar.gz
Size/MD5: 4320394 fcdf572a33dd037653707b128dd150a7

amd64 architecture (Athlon64, Opteron, EM64T Xeon)

http://security.ubuntu.com/ubuntu/poo...nupg-udeb_1.4.3-2ubuntu3.1_amd64.udeb
Size/MD5: 379748 635660a16621f2d7cc752e61cf926208
http://security.ubuntu.com/ubuntu/poo...nupg/gnupg_1.4.3-2ubuntu3.1_amd64.deb
Size/MD5: 1112036 daa0230d7072a2b25996d5ef387d5312
http://security.ubuntu.com/ubuntu/poo...gpgv-udeb_1.4.3-2ubuntu3.1_amd64.udeb
Size/MD5: 142628 db13e0940956c59d2efd2467e30dd27c

i386 architecture (x86 compatible Intel/AMD)

http://security.ubuntu.com/ubuntu/poo...gnupg-udeb_1.4.3-2ubuntu3.1_i386.udeb
Size/MD5: 357538 0cfa39e8bf18bd48991298bc01a733ec
http://security.ubuntu.com/ubuntu/poo...gnupg/gnupg_1.4.3-2ubuntu3.1_i386.deb
Size/MD5: 1055538 67ba9574b18247de52f32ba976d941ef
http://security.ubuntu.com/ubuntu/poo.../gpgv-udeb_1.4.3-2ubuntu3.1_i386.udeb
Size/MD5: 129146 1fb42163be150d7fa7b73dfcbfbcb244

powerpc architecture (Apple Macintosh G3/G4/G5)

http://security.ubuntu.com/ubuntu/poo...pg-udeb_1.4.3-2ubuntu3.1_powerpc.udeb
Size/MD5: 372472 f2b7b44029ff56d7911590d4285be8bd
http://security.ubuntu.com/ubuntu/poo...pg/gnupg_1.4.3-2ubuntu3.1_powerpc.deb
Size/MD5: 1107214 8ac1d1de40130c0b61334fde37692c9b
http://security.ubuntu.com/ubuntu/poo...gv-udeb_1.4.3-2ubuntu3.1_powerpc.udeb
Size/MD5: 136288 023825eced954075f8e3443a227a5aa3

sparc architecture (Sun SPARC/UltraSPARC)

http://security.ubuntu.com/ubuntu/poo...nupg-udeb_1.4.3-2ubuntu3.1_sparc.udeb
Size/MD5: 366138 d98c8c252f725be2895a99a2f1ffd23d
http://security.ubuntu.com/ubuntu/poo...nupg/gnupg_1.4.3-2ubuntu3.1_sparc.deb
Size/MD5: 1042190 01e8b454133f351081d6fab5fdea0443
http://security.ubuntu.com/ubuntu/poo...gpgv-udeb_1.4.3-2ubuntu3.1_sparc.udeb
Size/MD5: 132764 d961891ab18f423819b766f3ce670e39

Original Advisory:
http://www.ubuntu.com/usn/usn-389-1

Other References:
SA23094:
http://secunia.com/advisories/23094/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. Drupal Project Issue Tracking Module Multiple Vulnerabilities // 31 views
2. Drupal Project Module File Upload and Cross-Site Scripting // 27 views
3. Internet Explorer Data Binding Memory Corruption Vulnerability // 23 views
4. SmbFTPD Long Command Processing Vulnerability // 23 views
5. FreeBSD update for openssl // 21 views
6. FreeBSD update for lukemftpd // 20 views
7. Cisco Global Site Selector DNS Request Denial of Service // 20 views
8. PHPLIB Session Handling SQL Injection Vulnerability // 19 views
9. PHP-Fusion Members CV Module "sortby" SQL Injection Vulnerability // 19 views
10. Lasso OpenSSL "DSA_verify()" Spoofing Vulnerability // 19 views