Secunia Logo
Netsikker nu! 2008
 
Debian update for htdig
Secunia Advisory: SA28062
Release Date: 2007-12-12
Popularity: 2,918 views

Critical:
Less critical
Impact: Cross Site Scripting
Where: From remote
Solution Status: Vendor Patch

OS:Debian GNU/Linux 4.0
Debian GNU/Linux unstable alias sid

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2007-6110


Description:
Debian has issued an update for htdig. This fixes a vulnerability, which can be exploited by malicious people to conduct cross-site scripting attacks.

For more information:
SA14255

Solution:
Apply updated packages.

-- Debian GNU/Linux 4.0 alias etch --

Source archives:

http://security.debian.org/pool/updates/main/h/htdig/htdig_3.2.0b6-3.1etch1.dsc
Size/MD5 checksum: 616 cd4c8534f4615e145331c49ce61d6dc8
http://security.debian.org/pool/updates/main/h/htdig/htdig_3.2.0b6.orig.tar.gz
Size/MD5 checksum: 3104936 8a6952f5b97e305dbb7489045bad220f
http://security.debian.org/pool/updat.../htdig/htdig_3.2.0b6-3.1etch1.diff.gz
Size/MD5 checksum: 86277 c604a5e5b383b92701751cc59dc42f64

Architecture independent packages:

http://security.debian.org/pool/updat...ig/htdig-doc_3.2.0b6-3.1etch1_all.deb
Size/MD5 checksum: 528278 8ef47406cfd1e8e443a1fd52600f5852

alpha architecture (DEC Alpha)

http://security.debian.org/pool/updat...tdig/htdig_3.2.0b6-3.1etch1_alpha.deb
Size/MD5 checksum: 2325066 ef903816a813b83eed9b02c2dbb3077f

amd64 architecture (AMD x86_64 (AMD64))

http://security.debian.org/pool/updat...tdig/htdig_3.2.0b6-3.1etch1_amd64.deb
Size/MD5 checksum: 1999104 8a655e8fdc0afff79c3fef3abd398511

arm architecture (ARM)

http://security.debian.org/pool/updat.../htdig/htdig_3.2.0b6-3.1etch1_arm.deb
Size/MD5 checksum: 1895400 06661a4521788928c65eb8182108eb66

hppa architecture (HP PA RISC)

http://security.debian.org/pool/updat...htdig/htdig_3.2.0b6-3.1etch1_hppa.deb
Size/MD5 checksum: 2080404 ef595c4bc3044c90cd88516e9efd1355

i386 architecture (Intel ia32)

http://security.debian.org/pool/updat...htdig/htdig_3.2.0b6-3.1etch1_i386.deb
Size/MD5 checksum: 1850284 eb919a14cb3b39e5bb897d1402d70c52

ia64 architecture (Intel ia64)

http://security.debian.org/pool/updat...htdig/htdig_3.2.0b6-3.1etch1_ia64.deb
Size/MD5 checksum: 2716226 2180649c4865fbdf33f05bb62c1ac0bf

mips architecture (MIPS (Big Endian))

http://security.debian.org/pool/updat...htdig/htdig_3.2.0b6-3.1etch1_mips.deb
Size/MD5 checksum: 1949730 7b2188c83ce9e299f6994fe3af69fefc

mipsel architecture (MIPS (Little Endian))

http://security.debian.org/pool/updat...dig/htdig_3.2.0b6-3.1etch1_mipsel.deb
Size/MD5 checksum: 1941926 645a9efbaa025dbd39ec27b4b915c00e

powerpc architecture (PowerPC)

http://security.debian.org/pool/updat...ig/htdig_3.2.0b6-3.1etch1_powerpc.deb
Size/MD5 checksum: 1888214 2dd55523e8ac8b405b34bba39da0e6ca

s390 architecture (IBM S/390)

http://security.debian.org/pool/updat...htdig/htdig_3.2.0b6-3.1etch1_s390.deb
Size/MD5 checksum: 2034030 22069288eb255b5d6bb975f14562813b

sparc architecture (Sun SPARC/UltraSPARC)

http://security.debian.org/pool/updat...tdig/htdig_3.2.0b6-3.1etch1_sparc.deb
Size/MD5 checksum: 1866588 a523c05f8841bfed3009c92617fc585f

-- Debian GNU/Linux unstable alias sid --

Fixed in version 1:3.2.0b6-4.

Original Advisory:
http://lists.debian.org/debian-securi...-security-announce-2007/msg00210.html

Other References:
SA14255:
http://secunia.com/advisories/14255/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. Sun Java System Web Proxy Server FTP Subsystem Buffer Overflow // 28 views
2. CA ARCserve Backup Multiple Vulnerabilities // 27 views
3. phpBB Avatar Script Insertion Vulnerability // 26 views
4. ScriptsEz Easy Image Downloader "id" File Disclosure Vulnerability // 24 views
5. phpBB "gen_rand_string()" Predictable RNG Weakness // 23 views
6. FUJITSU Interstage Products Apache Tomcat Security Bypass // 23 views
7. Red Hat update for cups // 22 views
8. Apple Mac OS X Security Update Fixes Multiple Vulnerabilities // 22 views
9. Opera Multiple Vulnerabilities // 22 views
10. DFF PHP Framework API "DFF_config[dir_include]" File Inclusion Vulnerabilities // 20 views