|
SUSE Update for Multiple Packages
|
|
Secunia Advisory:
|
SA26987
|
|
|
Release Date:
|
2007-10-01
|
|
Popularity:
|
4,549 views
|
|
|
Critical:
|
 Highly critical
|
|
Impact:
|
Security Bypass Exposure of sensitive information Privilege escalation DoS System access
|
|
Where:
|
From remote
|
|
Solution Status:
|
Vendor Patch
|
|
| OS: | openSUSE 10.2 SUSE Linux 10 SUSE Linux 10.1 SUSE Linux Enterprise Server 10 SuSE Linux Enterprise Server 8 SUSE Linux Enterprise Server 9 SuSE Linux Openexchange Server 4.x
|
|
|
Subscribe:
|
Instant alerts on relevant vulnerabilities
|
|
| CVE reference: | CVE-2001-1267 CVE-2002-0399 CVE-2007-0244 CVE-2007-2833 CVE-2007-3780 CVE-2007-3781 CVE-2007-3782 CVE-2007-3999 CVE-2007-4000 CVE-2007-4137 CVE-2007-4460 CVE-2007-4743 CVE-2007-4476 CVE-2007-5007
|
|
Description: SUSE has issued updates for multiple packages. This fixes some security issues and vulnerabilities, which can be exploited by malicious, local users to gain escalated privileges, by malicious users to cause a DoS (Denial of Service), bypass certain security restrictions, gain escalated privileges, and compromise a vulnerable system, and by malicious people to cause a DoS or compromise a vulnerable system.
For more information:
SA25301
SA26536
SA26676
SA26811
SA26947
Note: This also fixes a vulnerability in star, which potentially can be exploited by malicious people to compromise a user's system by overwriting arbitrary files on it.
Solution: Updated packages are available via YaST Online Update or the SUSE FTP server.
Original Advisory: http://lists.opensuse.org/opensuse-security-announce/2007-09/msg00003.html
Other References: SA25301:
http://secunia.com/advisories/25301/
SA26536:
http://secunia.com/advisories/26536/
SA26676:
http://secunia.com/advisories/26676/
SA26811:
http://secunia.com/advisories/26811/
SA26947:
http://secunia.com/advisories/26947/
|
|
|
Track this Secunia Advisory
|
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.
Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.
|
|
|
About this Secunia Advisory
|
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.
Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
|