Secunia Logo
Netsikker nu! 2008
 
SUSE update for file
Secunia Advisory: SA25931
Release Date: 2007-07-04
Popularity: 4,697 views

Critical:
Less critical
Impact: DoS
System access
Where: From remote
Solution Status: Vendor Patch

OS:openSUSE 10.2
SUSE Linux 10
SUSE Linux 10.1
SUSE Linux Enterprise Server 10
SUSE Linux Enterprise Server 9

Software:Novell Open Enterprise Server 1.x

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2007-1536
CVE-2007-2799


Description:
SUSE has issued an update for file. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system.

For more information:
SA24548

Solution:
Apply updated packages.

x86 Platform:

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/i586/file-4.17-27.i586.rpm
71fb39025842635d3d2a369f67d36966
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/i586/file-devel-4.17-27.i586.rpm
58c8c5cc8219c3a27c6fa35c00d562d1

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/file-4.16-15.13.i586.rpm
0dfcb7061a69c3ea263e259cdc5622a3
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/file-devel-4.16-15.13.i586.rpm
81647420e3676bd1327ad3ee93a2d66c

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/i586/file-4.14-3.5.i586.rpm
2b6b5eb1e6713683ab0062237b18b270
ftp://ftp.suse.com/pub/suse/i386/upda...rpm/i586/file-devel-4.14-3.5.i586.rpm
c2341c2361c6ff61a975471a077d8370

Power PC Platform:

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/ppc/file-4.17-27.ppc.rpm
a34ffaaa3557c9d95b410fb13305feb5
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/ppc/file-devel-4.17-27.ppc.rpm
f37b44f3b7faaa5614108f243199478d

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/file-4.16-15.13.ppc.rpm
56f3f787274846955a55a47df9d80f47
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/file-devel-4.16-15.13.ppc.rpm
293aaa3d05a2446c4735e5d60ece2e61

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/ppc/file-4.14-3.5.ppc.rpm
01722877b74c715ccaf9bfc57cdb4537
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/ppc/file-devel-4.14-3.5.ppc.rpm
d46fdd9f2cf95e14bea4e6bdfd304d78

x86-64 Platform:

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/x86_64/file-32bit-4.17-27.x86_64.rpm
04fa107453847fdbacba7ac20c416c14
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/x86_64/file-4.17-27.x86_64.rpm
9b25a6c3c36b64da56d18c64c0d41541
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/x86_64/file-devel-4.17-27.x86_64.rpm
43ad432ef1020371d63a955cba3b4904

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10...6_64/file-32bit-4.16-15.13.x86_64.rpm
97f580b6bd4ab6afc3484bb9c75aa27a
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/x86_64/file-4.16-15.13.x86_64.rpm
5b2fc247062c970cc6bfd8fcd7de8b51
ftp://ftp.suse.com/pub/suse/update/10...6_64/file-devel-4.16-15.13.x86_64.rpm
6857325d13a32187461b980f47f8e52f

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/upda...x86_64/file-32bit-4.14-3.5.x86_64.rpm
a84f3907a7384a27b532c370bfc90371
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/x86_64/file-4.14-3.5.x86_64.rpm
09430fce30b187c0bc78829ace54fbe6
ftp://ftp.suse.com/pub/suse/i386/upda...x86_64/file-devel-4.14-3.5.x86_64.rpm
17168aee14e6bffdf6b300e24e3e2568

Sources:

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/src/file-4.17-27.src.rpm
63b8e44129d7526ffb6562a2d811933f

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/src/file-4.16-15.13.src.rpm
06e9f7f0ce0217a20bab1b572004a513

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/src/file-4.14-3.5.src.rpm
515371c885768d38cf506c1cd8227ca3

Our maintenance customers are notified individually. The packages are
offered for installation from the maintenance web:

SUSE Linux Enterprise Server 10 SP1
http://support.novell.com/techcenter/psdb/16b049160f20102b048862a6595a6130.html

SLE SDK 10 SP1
http://support.novell.com/techcenter/psdb/16b049160f20102b048862a6595a6130.html

SUSE Linux Enterprise Desktop 10 SP1
http://support.novell.com/techcenter/psdb/16b049160f20102b048862a6595a6130.html

Open Enterprise Server
http://support.novell.com/techcenter/psdb/40f3a050df9659ee95c994d2fde2b2b0.html

Novell Linux POS 9
http://support.novell.com/techcenter/psdb/40f3a050df9659ee95c994d2fde2b2b0.html

Novell Linux Desktop 9
http://support.novell.com/techcenter/psdb/40f3a050df9659ee95c994d2fde2b2b0.html

SUSE SLES 9
http://support.novell.com/techcenter/psdb/40f3a050df9659ee95c994d2fde2b2b0.html

Original Advisory:
http://lists.opensuse.org/opensuse-security-announce/2007-07/msg00002.html

Other References:
SA24548:
http://secunia.com/advisories/24548/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

7th Oct, 2008
New advisories: 19
New vulnerabilities: 68
Updated advisories: 62

Moderately // 342 views
Debian update for php5
Moderately // 271 views
Atarone CMS Multiple Vulnerabilities
Moderately // 296 views
Debian update for squid
Less // 296 views
SUSE update for mercurial
Moderately // 344 views
SUSE update for openssh
Less // 277 views
Fedora update for mediawiki

Solutions | More...  


Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. Juniper Products Neighbor Discovery Protocol Neighbor Solicitation Vulnerability // 31 views
2. HP-UX NFS/ONCplus Denial of Service Vulnerability // 28 views
3. H-Sphere webshell4 Cross-Site Scripting and Request Forgery // 25 views
4. Debian update for php5 // 25 views
5. Atarone CMS Multiple Vulnerabilities // 25 views
6. D-Bus "_dbus_validate_signature_with_reason()" Denial of Service // 24 views
7. CMME Information Disclosure Security Issues // 22 views
8. SUSE update for openssh // 21 views
9. noName CMS "index.php" SQL Injection Vulnerabilities // 20 views
10. Debian update for squid // 20 views