Secunia - Stay Secure
Gartner
Home Corporate Website Jobs Mailing Lists RSS Blog New entry Advertise
Software Inspectors
  Scan Online
  Personal (PSI)
  Network (NSI 2.0)
  - NEW -

Solutions For
  Security Professionals
  Security Vendors

Free Solutions For
  Open Communities
  Journalists & Media

Secunia Advisories
  Search
  Historic Advisories
  Listed By Product
  Listed By Vendor
  Statistics / Graphs
  Secunia Research
  Report Vulnerability
  About Advisories

Virus Information
  Chronological List
  Last 10 Virus Alerts
  About Virus Information

Secunia Customers
  Customer Area


SUSE update for pcre Advisory Available in Danish  Advisory Available in German 

Secunia Advisory: SA27773  
Release Date: 2007-11-26

Critical:
Moderately critical
Impact: Exposure of sensitive information
DoS
System access
Where: From remote
Solution Status: Vendor Patch

OS:openSUSE 10.2
openSUSE 10.3
SUSE Linux 10
SUSE Linux 10.1
SuSE Linux Desktop 1.x
SUSE Linux Enterprise Server 10
SuSE Linux Enterprise Server 8
SUSE Linux Enterprise Server 9
SuSE Linux Openexchange Server 4.x
SuSE Linux Standard Server 8
UnitedLinux 1.0


CVE reference:CVE-2005-4872 (Secunia mirror)
CVE-2006-7227 (Secunia mirror)
CVE-2006-7228 (Secunia mirror)
CVE-2006-7230 (Secunia mirror)
CVE-2007-1659 (Secunia mirror)
CVE-2007-1660 (Secunia mirror)
CVE-2007-1661 (Secunia mirror)
CVE-2007-4766 (Secunia mirror)
CVE-2007-4767 (Secunia mirror)

Want to know the next time vulnerabilities are fixed in this product?
- Companies can be alerted via email and SMS!


Description:
SUSE has issued an update for pcre. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service), disclose potentially sensitive information, and compromise a vulnerable system.

For more information:
SA27543
SA27582

Solution:
Apply updated packages.

x86 Platform:

openSUSE 10.3:

http://download.opensuse.org/pub/open.../10.3/rpm/i586/pcre-7.2-14.2.i586.rpm
638bc8ea3b3049bf8f018cbe2c636c8c

http://download.opensuse.org/pub/open...rpm/i586/pcre-devel-7.2-14.2.i586.rpm
2aba0cac3367280a938bf7d0e75b811c

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/i586/pcre-6.7-25.i586.rpm
aae587979521d9215fcedeba6ffdd5d3
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/i586/pcre-devel-6.7-25.i586.rpm
67e29afb709d1f1d3270cd259afc3302

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/pcre-6.4-14.12.i586.rpm
f23b3c0a085307189770ef6446ddf95e

ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/pcre-devel-6.4-14.12.i586.rpm
360c141d251b19d20bc87f02c014ca85

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/i586/pcre-6.2-2.6.i586.rpm
a6d52c75af7b87f5839c93ad765fc471

ftp://ftp.suse.com/pub/suse/i386/upda.../rpm/i586/pcre-devel-6.2-2.6.i586.rpm
3127d163cb29fe4023d9ce7de694992f

Power PC Platform:

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/ppc/pcre-6.7-25.ppc.rpm
31efc0735941f2ba8e378c5282715a14
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/ppc/pcre-devel-6.7-25.ppc.rpm
10a13246ef2f68b9b59a33e80bb50a7d

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/pcre-6.4-14.12.ppc.rpm
44ddec7ac85dbf91cb34afb089357d4d
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/pcre-devel-6.4-14.12.ppc.rpm
e8e6d6c2f78904a886114f635bf184a9

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/ppc/pcre-6.2-2.6.ppc.rpm
61f6f3eda12cfa2daab879ab39169d22

ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/ppc/pcre-devel-6.2-2.6.ppc.rpm
0e4859e31522fb242ffab6a07aaf77fa

openSUSE 10.3:

http://download.opensuse.org/pub/open...te/10.3/rpm/ppc/pcre-7.2-14.2.ppc.rpm
a54e3a3eddaabc9f89d6019bb12f2081

http://download.opensuse.org/pub/open...3/rpm/ppc/pcre-devel-7.2-14.2.ppc.rpm
9043d0181ba37fc0c86fae3429f1cda0

x86-64 Platform:

openSUSE 10.2:

ftp://ftp.suse.com/pub/suse/update/10.2/rpm/x86_64/pcre-32bit-6.7-25.x86_64.rpm
b4a5e803fba79cce1dca2f60fbf5c72c
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/x86_64/pcre-6.7-25.x86_64.rpm
cb81d1ee51a9ad918168e986f16e028f

ftp://ftp.suse.com/pub/suse/update/10.2/rpm/x86_64/pcre-devel-6.7-25.x86_64.rpm
322c88af597a52657e403a7268e752d0

SUSE LINUX 10.1:

ftp://ftp.suse.com/pub/suse/update/10...86_64/pcre-32bit-6.4-14.12.x86_64.rpm
527b30661fa36d99d80cbd6e3051d45a
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/x86_64/pcre-6.4-14.12.x86_64.rpm
347cf67ca766245983a736af5529cc0d

ftp://ftp.suse.com/pub/suse/update/10...86_64/pcre-devel-6.4-14.12.x86_64.rpm
c8a3ba1109569e7bc39331c1ada22d43

SUSE LINUX 10.0:

ftp://ftp.suse.com/pub/suse/i386/upda.../x86_64/pcre-32bit-6.2-2.6.x86_64.rpm
11bff919ac213631e0b10838de3e2e74

ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/x86_64/pcre-6.2-2.6.x86_64.rpm
dd475be9f1d852b35907d540d1e1afe9

ftp://ftp.suse.com/pub/suse/i386/upda.../x86_64/pcre-devel-6.2-2.6.x86_64.rpm
8a09951c95692f97ae5772594e5f7f44

openSUSE 10.3:

http://download.opensuse.org/pub/open...x86_64/pcre-32bit-7.2-14.2.x86_64.rpm
6132117b7d5c9c22564384d8e16447c4

http://download.opensuse.org/pub/open...3/rpm/x86_64/pcre-7.2-14.2.x86_64.rpm
411c7ab54802ff8bf2abc03cea0d0d39

http://download.opensuse.org/pub/open...x86_64/pcre-devel-7.2-14.2.x86_64.rpm
7856ed6adf0fc2d38e95777b8f050ee0

Sources:

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/src/pcre-6.7-25.src.rpm
f5fbd77e5a2bb3ab5b4e2079eb66c9f8

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/src/pcre-6.4-14.12.src.rpm
605123a0c31cb6019d0a71cc8f998bb5

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/src/pcre-6.2-2.6.src.rpm
edea2557792769392a29bebef2136ea9

openSUSE 10.3:

http://download.opensuse.org/pub/open...te/10.3/rpm/src/pcre-7.2-14.2.src.rpm
3ad3dbb6ba1fe69dd2b0bf265191e267

UnitedLinux 1.0

http://support.novell.com/techcenter/psdb/206d9e9430eb6c86c8470f0497fc9219.html

SuSE Linux Openexchange Server 4

http://support.novell.com/techcenter/psdb/206d9e9430eb6c86c8470f0497fc9219.html

SuSE Linux Enterprise Server 8

http://support.novell.com/techcenter/psdb/206d9e9430eb6c86c8470f0497fc9219.html

SuSE Linux Standard Server 8

http://support.novell.com/techcenter/psdb/206d9e9430eb6c86c8470f0497fc9219.html

SuSE Linux School Server

http://support.novell.com/techcenter/psdb/206d9e9430eb6c86c8470f0497fc9219.html

SUSE LINUX Retail Solution 8

http://support.novell.com/techcenter/psdb/206d9e9430eb6c86c8470f0497fc9219.html

SuSE Linux Desktop 1.0

http://support.novell.com/techcenter/psdb/206d9e9430eb6c86c8470f0497fc9219.html

Open Enterprise Server

http://support.novell.com/techcenter/psdb/9992478cea3704f6f2c2f7741f3e12e2.html

Novell Linux POS 9

http://support.novell.com/techcenter/psdb/9992478cea3704f6f2c2f7741f3e12e2.html

Novell Linux Desktop 9

http://support.novell.com/techcenter/psdb/9992478cea3704f6f2c2f7741f3e12e2.html

SUSE SLES 9

http://support.novell.com/techcenter/psdb/9992478cea3704f6f2c2f7741f3e12e2.html

SUSE Linux Enterprise Server 10 SP1

http://support.novell.com/techcenter/psdb/ed2f85edfa5f04634eda2d480d600b13.html

SLE SDK 10 SP1

http://support.novell.com/techcenter/psdb/ed2f85edfa5f04634eda2d480d600b13.html

SUSE Linux Enterprise Desktop 10 SP1

http://support.novell.com/techcenter/psdb/ed2f85edfa5f04634eda2d480d600b13.html

Original Advisory:
http://lists.opensuse.org/opensuse-security-announce/2007-11/msg00004.html

Other References:
SA27543:
http://secunia.com/advisories/27543/

SA27582:
http://secunia.com/advisories/27582/



Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.

407 Related Secunia Security Advisories, displaying 10

1. SUSE Update for Multiple Packages
2. SUSE Update for Multiple Packages
3. SUSE update for OpenOffice_org
4. SUSE update for IBM Java
5. SUSE update for clamav
6. SUSE update for flash-player
7. SUSE update for openssh and opera
8. SUSE update for cups
9. SUSE update for MozillaFirefox
10. SUSE update for apache and apache2

Show all related advisories


Send Feedback to Secunia

If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.








Secunia PSI
Scan | Patch | Track
Free Download

Secunia Poll

Do you think it's important to read Setup/User Guides for applications for use within your network?


See Results   


Most Popular Advisories

1.
Debian OpenSSL Predictable Random Number Generator and Update
2.
Microsoft Word Two Code Execution Vulnerabilities
3.
Microsoft Malware Protection Engine File Parsing Denial of Service
4.
Microsoft Publisher Object Handler Validation Vulnerability
5.
Microsoft Windows XP I2O Utility Filter Driver Privilege Escalation
6.
Ubuntu update for openssl
7.
Citrix Access Gateway Unspecified Authentication Bypass
8.
Novell Client Login Long Username/Contex t Buffer Overflow
9.
cPanel Cross-Site Scripting and Request Forgery Vulnerabilities
10.
Internet Explorer "DisableCaching OfSSLPages" Weakness





Vulnerability Management - Terms & Conditions - Copyright 2002-2008 Secunia - Compliance - Contact Secunia