Secunia - Stay Secure
Gartner
Home Corporate Website Jobs Updated Mailing Lists RSS Blog  Online Shop Advertise
Software Inspectors
  Scan Online
  Personal (PSI)
  Network (NSI 2.0)

Solutions For
  Security Professionals
  Security Vendors

Free Solutions For
  Open Communities
  Journalists & Media

Secunia Advisories
  Search
  Historic Advisories
  Listed By Product
  Listed By Vendor
  Statistics / Graphs
  Secunia Research
  Report Vulnerability
  About Advisories

Virus Information
  Chronological List
  Last 10 Virus Alerts
  About Virus Information

Secunia Customers
  Customer Area


Fedora update for libXfont Advisory Available in Danish  Advisory Available in German 

Secunia Advisory: SA28500  
Release Date: 2008-01-23

Critical:
Less critical
Impact: Privilege escalation
Where: Local system
Solution Status: Vendor Patch

OS:Fedora 7
Fedora 8


CVE reference:CVE-2008-0006 (Secunia mirror)

Want to know the next time vulnerabilities are fixed in this product?
- Companies can be alerted via email and SMS!


Description:
Fedora has issued an update for libXfont. This fixes a vulnerability, which can be exploited by malicious, local users to gain escalated privileges.

For more information:
SA28532

Solution:
Apply updated packages.

-- Fedora 7 --

1abee4f6382d77b18380b62bc93d6ebcf9ff3d5b libXfont-debuginfo-1.2.9-3.fc7.ppc64.rpm
26064c202e1f72378dddffa2d67379b0798812c8 libXfont-devel-1.2.9-3.fc7.ppc64.rpm
80d0e6d684fad97bb7fa9c7ac3fd6696414fed41 libXfont-1.2.9-3.fc7.ppc64.rpm
397ede7646d407f7ad378191e81ff041b104fe4e libXfont-debuginfo-1.2.9-3.fc7.i386.rpm
71b600559094d736eda79478724f727b79de72de libXfont-devel-1.2.9-3.fc7.i386.rpm
d549935e282061059ed038c447b119e4c797c0e6 libXfont-1.2.9-3.fc7.i386.rpm
4be18dadb722d2e5f90dd3b1104f749292cc9162 libXfont-debuginfo-1.2.9-3.fc7.x86_64.rpm
c108759b4f2d560ed2efff16beb551d0790c74b7 libXfont-1.2.9-3.fc7.x86_64.rpm
5bccd560713d698e4478b91dc35b320f488eb22b libXfont-devel-1.2.9-3.fc7.x86_64.rpm
0a9ba458464bd1ea7ede5e4ecf796dd48769c174 libXfont-debuginfo-1.2.9-3.fc7.ppc.rpm
9034776dfb6309621435809aa1f3a15fdbb6c290 libXfont-devel-1.2.9-3.fc7.ppc.rpm
7f715606185271404684d5e0edee5514f03829f5 libXfont-1.2.9-3.fc7.ppc.rpm
225367431ad0b28e673b187773c5c32073b929f8 libXfont-1.2.9-3.fc7.src.rpm

-- Fedora 8 --

90ddbe53973110318f542b58f0c5129eac810f70 libXfont-debuginfo-1.3.1-2.fc8.ppc64.rpm
5522e05e6b677bd3f39a03a819a831ec8cbcdeb5 libXfont-devel-1.3.1-2.fc8.ppc64.rpm
a1d73ad828b14abda0db3b48d3ceb7ef735b8e5f libXfont-1.3.1-2.fc8.ppc64.rpm
e38ec3ab2d62b6dd83fb75ffd709401768192409 libXfont-debuginfo-1.3.1-2.fc8.i386.rpm
b3542ffe428cc16c0c806b0aa3fb8680d14f0587 libXfont-devel-1.3.1-2.fc8.i386.rpm
e5deb9de3bc594b48ba5f22b9a4c557376e1fd17 libXfont-1.3.1-2.fc8.i386.rpm
b2fe10c4bee6f4cc6b8801ad59279f97510dd1f1 libXfont-debuginfo-1.3.1-2.fc8.x86_64.rpm
95e1c4408daf5c8444d61972e33e103256b75da5 libXfont-devel-1.3.1-2.fc8.x86_64.rpm
725bd5b66b52683e84c5f3412482f8ba6d1415f2 libXfont-1.3.1-2.fc8.x86_64.rpm
815ca48769898279b889cbaa9c803a299a9ec6dc libXfont-debuginfo-1.3.1-2.fc8.ppc.rpm
7cdc60e0c429da43091940a913a87e749a69f4d8 libXfont-devel-1.3.1-2.fc8.ppc.rpm
81c55ea1af85d268527f03dc10c01a98c9524ac4 libXfont-1.3.1-2.fc8.ppc.rpm
0f39a0a56c630212e75ce93373e0cf61925bd7a3 libXfont-1.3.1-2.fc8.src.rpm

Original Advisory:
https://www.redhat.com/archives/fedor...e-announce/2008-January/msg00771.html
https://www.redhat.com/archives/fedor...e-announce/2008-January/msg00674.html

Other References:
SA28532:
http://secunia.com/advisories/28532/



Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.

293 Related Secunia Security Advisories, displaying 10

1. Fedora update for asterisk
2. Fedora update for mantis
3. Fedora update for firefox
4. Fedora update for seamonkey
5. Fedora update for phpMyAdmin
6. Fedora update for clamav
7. Fedora update for wireshark
8. Fedora update for php-pecl-apc
9. Fedora update for newsx
10. Fedora update for drupal

Show all related advisories


Send Feedback to Secunia

If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.








Secunia PSI
Scan | Patch | Track
Free Download

Secunia Poll

Do you think it's important to read Setup/User Guides for applications for use within your network?


See Results   


Most Popular Advisories

1.
OpenBSD BIND Query Port DNS Cache Poisoning
2.
Red Hat update for kernel
3.
Drupal Session Fixation Vulnerability
4.
Debian update for clamav
5.
Linux Kernel LDT Buffer Size Handling Vulnerability
6.
IPCop update for perl
7.
Debian update for xulrunner
8.
Ubuntu update for php
9.
Apple Safari Cross-Domain Cookie Injection Vulnerability
10.
Red Hat update for thunderbird





Vulnerability Management - Terms & Conditions - Copyright 2002-2008 Secunia - Compliance - Contact Secunia