Secunia Logo
Netsikker nu! 2008
 
Fedora update for krb5
Secunia Advisory: SA26680
Release Date: 2007-09-06
Last Update: 2007-09-10
Popularity: 5,932 views

Critical:
Highly critical
Impact: DoS
System access
Where: From remote
Solution Status: Vendor Patch

OS:Fedora 7
Fedora Core 6

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2007-3999
CVE-2007-4000
CVE-2007-4743


Description:
Fedora has issued an update for krb5. This fixes some vulnerabilities, which can be exploited by malicious users and malicious people to compromise a vulnerable system.

For more information:
SA26676

Solution:
Apply updated packages.

-- Fedora Core 6 --

062bc017c8fb0037cf8647ba236036ca2b99e537 krb5-workstation-1.6.1-4.fc7.ppc64.rpm
c78319f1acfb09915789b362e42033522d845a67 krb5-server-ldap-1.6.1-4.fc7.ppc64.rpm
99100267037e5b4166890737097c40e80aa10ca1 krb5-debuginfo-1.6.1-4.fc7.ppc64.rpm
2cdca2c60cf769d0769c93e5e57cb16369734f96 krb5-devel-1.6.1-4.fc7.ppc64.rpm
8e0df85199d6504c42a654e2e2a2ff654af1855b krb5-server-1.6.1-4.fc7.ppc64.rpm
dbc6636478fca9f3f5adb52c89628d1a695ad30e krb5-workstation-clients-1.6.1-4.fc7.ppc64.rpm
437830f38c0323c7a1b43a1757fd7eba7fc177a0 krb5-libs-1.6.1-4.fc7.ppc64.rpm
f6208052c97c4e1f44256b696546e90244e43236 krb5-workstation-servers-1.6.1-4.fc7.ppc64.rpm
d7805026a66bc6ffd47734f65bc060ea7920322c krb5-workstation-servers-1.6.1-4.fc7.i386.rpm
d16ffd27efb3cedf9ae4a6b5eb8c515b49043054 krb5-server-1.6.1-4.fc7.i386.rpm
4a5683495cb1f8c2df552ac79f08723f26c577c4 krb5-libs-1.6.1-4.fc7.i386.rpm
0ae7373dfda05cf3da04439c35e2eb1a9b635cbd krb5-workstation-1.6.1-4.fc7.i386.rpm
723bd4dc92af7e6d51288139c256eb40b54c9abf krb5-debuginfo-1.6.1-4.fc7.i386.rpm
773f532d5fb4178c3649bf1b299984b24886d427 krb5-workstation-clients-1.6.1-4.fc7.i386.rpm
567dabff5da88624a4acf106599bd8229090cfeb krb5-server-ldap-1.6.1-4.fc7.i386.rpm
9c26f85f7aa102713874d4d0e1b893ef8166cd8d krb5-devel-1.6.1-4.fc7.i386.rpm
f771eaeb4b4d7b70f459ce35431399899baef4cf krb5-server-ldap-1.6.1-4.fc7.x86_64.rpm
0bb652cf7f8d87ce0b7ca8d6b37b949e6725b17c krb5-debuginfo-1.6.1-4.fc7.x86_64.rpm
30b7ab856d9e417d647203c52c8e139354400a7e krb5-server-1.6.1-4.fc7.x86_64.rpm
7a6dc0193cefea4ed9bbaa1d6b62108b392c4cd9 krb5-libs-1.6.1-4.fc7.x86_64.rpm
f79349c65bb86f59cae5a417e2f4917e65da7cbe krb5-workstation-servers-1.6.1-4.fc7.x86_64.rpm
91b8e9dc61bfb5af45a81ca85d4a18755189a586 krb5-workstation-clients-1.6.1-4.fc7.x86_64.rpm
88ae1dae7fbfde68b163423701eeb6abf8048f4d krb5-workstation-1.6.1-4.fc7.x86_64.rpm
25d40a9b7f7ea05d36cc781c088613d496c49d29 krb5-devel-1.6.1-4.fc7.x86_64.rpm
2bf1be05fca98fc46245169c1746febef78eecf4 krb5-server-1.6.1-4.fc7.ppc.rpm
48d99309aaf66885a90cbdaaaeab716009316700 krb5-workstation-clients-1.6.1-4.fc7.ppc.rpm
71034ed9cf5f92158bfa61fe92a24cb59d87d01a krb5-libs-1.6.1-4.fc7.ppc.rpm
e3e4a2e2af257aeb014870dad1b2f6cbc4cc518e krb5-debuginfo-1.6.1-4.fc7.ppc.rpm
f39e08a32241927e082f11b27abb1e2b3e1e19a2 krb5-workstation-servers-1.6.1-4.fc7.ppc.rpm
dc9720291f1a0e0719df47b818e800347269c6de krb5-server-ldap-1.6.1-4.fc7.ppc.rpm
32ad5f5cb95e0cfd799693c116f3510b9317a5c4 krb5-devel-1.6.1-4.fc7.ppc.rpm
6209f46411cd63fb67e37475964ebe7a0b18da00 krb5-workstation-1.6.1-4.fc7.ppc.rpm
547f500edbc0da059d472ac233267c6ae2c45603 krb5-1.6.1-4.fc7.src.rpm

-- Fedora 7 --

31792d33dfb5074183726a017c42ad1f66206201 SRPMS/krb5-1.5-23.fc6.src.rpm
31792d33dfb5074183726a017c42ad1f66206201 noarch/krb5-1.5-23.fc6.src.rpm
e5fbc20aea94e21af48d6d46458c92854d508572 ppc/krb5-server-1.5-23.fc6.ppc.rpm
e733f71856b88af79c0b7a1eca0935ed03df1c91 ppc/krb5-workstation-1.5-23.fc6.ppc.rpm
a0b45edc229ff6d81786bace0a6fb80d3c6863c2 ppc/krb5-libs-1.5-23.fc6.ppc.rpm
9c944c93c8d756526366f03bb006b2fc2cd48165 ppc/krb5-devel-1.5-23.fc6.ppc.rpm
e8bab315888665d59369b17f770d23219bfa66c3 ppc/debug/krb5-debuginfo-1.5-23.fc6.ppc.rpm
15d406196836e10b9a301f2b22d94c68f350ee49 x86_64/debug/krb5-debuginfo-1.5-23.fc6.x86_64.rpm
ba18e35c23ea1852a7c22229981cef13fe70009c x86_64/krb5-workstation-1.5-23.fc6.x86_64.rpm
b73254b8763984dd1028765922f3b3110892dfbc x86_64/krb5-server-1.5-23.fc6.x86_64.rpm
eff8153739036c06fddd4bb52cdd4ae3f08d318e x86_64/krb5-libs-1.5-23.fc6.x86_64.rpm
6c21ffe77feb1d30fb69e84465bfbb55d94a2be1 x86_64/krb5-devel-1.5-23.fc6.x86_64.rpm
8bd1055bf64be99828c71ebce200066cafb1a76b i386/debug/krb5-debuginfo-1.5-23.fc6.i386.rpm
4c18272684dce24a4ff144a66e4f1b1f0cabd1ce i386/krb5-devel-1.5-23.fc6.i386.rpm
bb6d99b77ab5cff6583f8724e66a20fbc59a7dc3 i386/krb5-libs-1.5-23.fc6.i386.rpm
9f9f10583ed2b18e7bc2c551d0643bd00591bd66 i386/krb5-server-1.5-23.fc6.i386.rpm
54feec274ab8804c618ddf200ef6d33c97e7624e i386/krb5-workstation-1.5-23.fc6.i386.rpm

Changelog:
2007-09-10: Added Fedora Core 6 as vulnerable product. Updated "Solution" section with information about updated packages for Fedora 7 and Fedora Core 6. Added CVE reference and links to updated advisories.

Original Advisory:
https://www.redhat.com/archives/fedor...announce/2007-September/msg00087.html
https://www.redhat.com/archives/fedor...announce/2007-September/msg00128.html
https://www.redhat.com/archives/fedor...announce/2007-September/msg00140.html

Other References:
SA26676:
http://secunia.com/advisories/26676/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. Debian update for lighttpd // 69 views
2. VMware ESX Server Sun Java JDK / JRE Multiple Vulnerabilities // 62 views
3. Serv-U File Renaming Directory Traversal and STOU Denial of Service // 53 views
4. Zeroboard Multiple Vulnerabilities // 51 views
5. Zeroboard Two Vulnerabilities // 45 views
6. VMware ESX / ESXi "JMP" Privilege Escalation Vulnerability // 45 views
7. Microsoft Windows Vista Page Fault Handling Denial of Service // 44 views
8. VMware VirtualCenter Multiple Vulnerabilities // 43 views
9. HP-UX NFS/ONCplus Denial of Service Vulnerability // 40 views
10. iseemedia LPViewer ActiveX Control Multiple Buffer Overflow Vulnerabilities // 39 views