Secunia - Stay Secure
Gartner
Home Corporate Website Jobs Mailing Lists RSS Blog New entry Advertise
Software Inspectors
  Scan Online
  Personal (PSI)
  Network (NSI 2.0)
  - NEW -

Solutions For
  Security Professionals
  Security Vendors

Free Solutions For
  Open Communities
  Journalists & Media

Secunia Advisories
  Search
  Historic Advisories
  Listed By Product
  Listed By Vendor
  Statistics / Graphs
  Secunia Research
  Report Vulnerability
  About Advisories

Virus Information
  Chronological List
  Last 10 Virus Alerts
  About Virus Information

Secunia Customers
  Customer Area


SUSE update for krb5 Advisory Available in German 

Secunia Advisory: SA29424  
Release Date: 2008-03-19

Critical:
Highly critical
Impact: System access
DoS
Exposure of sensitive information
Where: From remote
Solution Status: Vendor Patch

OS:openSUSE 10.2
openSUSE 10.3
SUSE Linux 10.1
SUSE Linux Enterprise Server 10


CVE reference:CVE-2008-0062 (Secunia mirror)
CVE-2008-0063 (Secunia mirror)
CVE-2008-0947 (Secunia mirror)
CVE-2008-0948 (Secunia mirror)

Want to know the next time vulnerabilities are fixed in this product?
- Companies can be alerted via email and SMS!


Description:
SUSE has issued an update for krb5. This fixes some vulnerabilities, which can be exploited by malicious people to disclose potentially sensitive information, cause a DoS (Denial of Service), or potentially compromise a vulnerable system.

For more information:
SA29428

Solution:
Apply updated packages.

x86 Platform:

openSUSE 10.3:

http://download.opensuse.org/pub/open...0.3/rpm/i586/krb5-1.6.2-22.4.i586.rpm
53f6c9b454e27c47ec4cb32679757c48

http://download.opensuse.org/pub/open...krb5-apps-clients-1.6.2-22.4.i586.rpm
66ee0e785595b000842c5cd2c9162c55

http://download.opensuse.org/pub/open...krb5-apps-servers-1.6.2-22.4.i586.rpm
f3fba89b56860b8f46691c69bba8b3c7

http://download.opensuse.org/pub/open.../i586/krb5-client-1.6.2-22.4.i586.rpm
193a8298aa8bb866e19e0c48f23e523e

http://download.opensuse.org/pub/open...m/i586/krb5-devel-1.6.2-22.4.i586.rpm
a9b01b5c846e02c588664cddcae4c5c6

http://download.opensuse.org/pub/open.../i586/krb5-server-1.6.2-22.4.i586.rpm
ff536136c01b5f900aebe6fdc1ec62e6

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/i586/krb5-1.5.1-23.14.i586.rpm
5764e87b834c6a5b8a467fa6aa8ec40e

ftp://ftp.suse.com/pub/suse/update/10...rb5-apps-clients-1.5.1-23.14.i586.rpm
94db70009c4c6e099a9807584c701686

ftp://ftp.suse.com/pub/suse/update/10...rb5-apps-servers-1.5.1-23.14.i586.rpm
5881c8be92dc3eb215a1e837b6468922

ftp://ftp.suse.com/pub/suse/update/10...i586/krb5-client-1.5.1-23.14.i586.rpm
c45980b430614c2371dd1ad4f8d21a34

ftp://ftp.suse.com/pub/suse/update/10.2/rpm/i586/krb5-devel-1.5.1-23.14.i586.rpm
1c6a45d60e5eabffedc2c1e3e755ac73

ftp://ftp.suse.com/pub/suse/update/10...i586/krb5-server-1.5.1-23.14.i586.rpm
03793b23aced1c01d9e2817648d7c777

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/krb5-1.4.3-19.30.6.i586.rpm
51d1c53aaf25a36dd1e2e74662cbabd9

ftp://ftp.suse.com/pub/suse/update/10...5-apps-clients-1.4.3-19.30.6.i586.rpm
6b4d89a932988685993dba1e87aea95f

ftp://ftp.suse.com/pub/suse/update/10...5-apps-servers-1.4.3-19.30.6.i586.rpm
c7ff44ef5a8453d5223da71d670fdea4

ftp://ftp.suse.com/pub/suse/update/10...86/krb5-client-1.4.3-19.30.6.i586.rpm
bc0456ed7708ee3ffdc2501e849e9dbe

ftp://ftp.suse.com/pub/suse/update/10...586/krb5-devel-1.4.3-19.30.6.i586.rpm
9942cbbfd032ea80d8a20daa34ce5374

ftp://ftp.suse.com/pub/suse/update/10...86/krb5-server-1.4.3-19.30.6.i586.rpm
d4596d47caafa6ea4ee4b4f4e218f831

Power PC Platform:

openSUSE 10.3:

http://download.opensuse.org/pub/open.../10.3/rpm/ppc/krb5-1.6.2-22.4.ppc.rpm
f0d1399edebb3e1d715d84568065130a

http://download.opensuse.org/pub/open.../krb5-apps-clients-1.6.2-22.4.ppc.rpm
8e444214994c1e7297b5332d96967ec0

http://download.opensuse.org/pub/open.../krb5-apps-servers-1.6.2-22.4.ppc.rpm
2eecfe960c969bf3a3dcce2fcab010f0

http://download.opensuse.org/pub/open...pm/ppc/krb5-client-1.6.2-22.4.ppc.rpm
8052a7d7a942545a46fa5e962c562ab8

http://download.opensuse.org/pub/open...rpm/ppc/krb5-devel-1.6.2-22.4.ppc.rpm
6a118f48123ebfc23715bf797bf8b7d0

http://download.opensuse.org/pub/open...pm/ppc/krb5-server-1.6.2-22.4.ppc.rpm
fd8f73d6d8757d9ce3dea43997b56b0c

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/ppc/krb5-1.5.1-23.14.ppc.rpm
04289bb24041d226f27eb92025b25463

ftp://ftp.suse.com/pub/suse/update/10...krb5-apps-clients-1.5.1-23.14.ppc.rpm
731ea1ef473c0d1c8990a8045a9fe587

ftp://ftp.suse.com/pub/suse/update/10...krb5-apps-servers-1.5.1-23.14.ppc.rpm
f911f86a0d2e8c9da16930525bd8b163

ftp://ftp.suse.com/pub/suse/update/10.2/rpm/ppc/krb5-client-1.5.1-23.14.ppc.rpm
a4c560015bbaddcbc88603e1e194146e

ftp://ftp.suse.com/pub/suse/update/10.2/rpm/ppc/krb5-devel-1.5.1-23.14.ppc.rpm
64d0f163ebff972f2e70c6cc4d760555

ftp://ftp.suse.com/pub/suse/update/10.2/rpm/ppc/krb5-server-1.5.1-23.14.ppc.rpm
8b06dc5e5ac5b3fa410559017403378a

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/krb5-1.4.3-19.30.6.ppc.rpm
ae1652f3ea622c5c91b0fd1d47b066ef

ftp://ftp.suse.com/pub/suse/update/10...b5-apps-clients-1.4.3-19.30.6.ppc.rpm
a389841f387e37732c80d9d5095f9ae6

ftp://ftp.suse.com/pub/suse/update/10...b5-apps-servers-1.4.3-19.30.6.ppc.rpm
cb6b4e402570e45767c5ae7a5c26e34c

ftp://ftp.suse.com/pub/suse/update/10...ppc/krb5-client-1.4.3-19.30.6.ppc.rpm
3a2c13bc932e84f7a451f3a2c77c99f0

ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/krb5-devel-1.4.3-19.30.6.ppc.rpm
b34f9511e269e0dfc2896ac88cf41cce

ftp://ftp.suse.com/pub/suse/update/10...ppc/krb5-server-1.4.3-19.30.6.ppc.rpm
0263cbb8f0f41e50dacfed082eca0835

x86-64 Platform:

openSUSE 10.3:

http://download.opensuse.org/pub/open...rpm/x86_64/krb5-1.6.2-22.4.x86_64.rpm
6df39c9ddfb04cd4889b5f4bb271213a

http://download.opensuse.org/pub/open...6_64/krb5-32bit-1.6.2-22.4.x86_64.rpm
77ba221640964cc90ad8e0010ad5c07e

http://download.opensuse.org/pub/open...b5-apps-clients-1.6.2-22.4.x86_64.rpm
fccb50e18045baa2c78165f20eb13eec

http://download.opensuse.org/pub/open...b5-apps-servers-1.6.2-22.4.x86_64.rpm
3bfd6270a31f2a6a35728bcd274ae327

http://download.opensuse.org/pub/open..._64/krb5-client-1.6.2-22.4.x86_64.rpm
53b3634e9e92255b62a932ed6d30742d

http://download.opensuse.org/pub/open...6_64/krb5-devel-1.6.2-22.4.x86_64.rpm
54071b2e12004117b0599f53c4a6027b

http://download.opensuse.org/pub/open...rb5-devel-32bit-1.6.2-22.4.x86_64.rpm
07069062d1e7b140c6774cc2aaa821d5

http://download.opensuse.org/pub/open..._64/krb5-server-1.6.2-22.4.x86_64.rpm
b07d395220662db193b6f54753931ccc

openSUSE 10.2:

ftp://ftp.suse.com/pub/suse/update/10.2/rpm/x86_64/krb5-1.5.1-23.14.x86_64.rpm
3f2d8918cf5da2cab839bf2c72af1495

ftp://ftp.suse.com/pub/suse/update/10..._64/krb5-32bit-1.5.1-23.14.x86_64.rpm
4348a17ec69b6c64c69e11f74fa88a08

ftp://ftp.suse.com/pub/suse/update/10...5-apps-clients-1.5.1-23.14.x86_64.rpm
433ffcced3ede0163628854ae3296baf

ftp://ftp.suse.com/pub/suse/update/10...5-apps-servers-1.5.1-23.14.x86_64.rpm
c24ab880f1314c1d25f3e9561b204c10

ftp://ftp.suse.com/pub/suse/update/10...64/krb5-client-1.5.1-23.14.x86_64.rpm
6022c2534c50718a2a4fd18fde346daf

ftp://ftp.suse.com/pub/suse/update/10..._64/krb5-devel-1.5.1-23.14.x86_64.rpm
d82a0204e6e0f5e9d6bcd8f60aa4fbde

ftp://ftp.suse.com/pub/suse/update/10...b5-devel-32bit-1.5.1-23.14.x86_64.rpm
17dc2896ebc7f252e39fc8e23a41abc1

ftp://ftp.suse.com/pub/suse/update/10...64/krb5-server-1.5.1-23.14.x86_64.rpm
45596c22ec6d0c1eebf42f683e4e0cd4

SUSE LINUX 10.1:

ftp://ftp.suse.com/pub/suse/update/10.1/rpm/x86_64/krb5-1.4.3-19.30.6.x86_64.rpm
684c7d1363494a7854afd3755bdb2a20

ftp://ftp.suse.com/pub/suse/update/10...4/krb5-32bit-1.4.3-19.30.6.x86_64.rpm
b8552a99f0785f1eee434f6d7293731a

ftp://ftp.suse.com/pub/suse/update/10...apps-clients-1.4.3-19.30.6.x86_64.rpm
060fac873ba1bc13e4b5b813ae6a6cd2

ftp://ftp.suse.com/pub/suse/update/10...apps-servers-1.4.3-19.30.6.x86_64.rpm
28235a5328a8a982e2a1784793a17863

ftp://ftp.suse.com/pub/suse/update/10.../krb5-client-1.4.3-19.30.6.x86_64.rpm
056f5e479561d2b831e3dd969261f8de

ftp://ftp.suse.com/pub/suse/update/10...4/krb5-devel-1.4.3-19.30.6.x86_64.rpm
d81c85af0ca1812c273bbd1c6ddf3cb1

ftp://ftp.suse.com/pub/suse/update/10...-devel-32bit-1.4.3-19.30.6.x86_64.rpm
d17b2d40649a83e28afd6a7a3dec96d6

ftp://ftp.suse.com/pub/suse/update/10.../krb5-server-1.4.3-19.30.6.x86_64.rpm
dd8096c153fb51bdd67352cbe8a51953

Sources:

openSUSE 10.3:

http://download.opensuse.org/pub/open.../10.3/rpm/src/krb5-1.6.2-22.4.src.rpm
6ead1c530f58e6255b1c9ba1b78eb3ae

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/src/krb5-1.5.1-23.14.src.rpm
add4417c6743a6dd26f35182e85ee956

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/src/krb5-1.4.3-19.30.6.src.rpm
2185d5b60fe733640f16a3a561ec6888

SUSE Linux Enterprise Server 10 SP1

http://support.novell.com/techcenter/psdb/a1cba9b24d53ae5d2b80a81acd449edb.html

SLE SDK 10 SP1

http://support.novell.com/techcenter/psdb/a1cba9b24d53ae5d2b80a81acd449edb.html

SUSE Linux Enterprise Desktop 10 SP1

http://support.novell.com/techcenter/psdb/a1cba9b24d53ae5d2b80a81acd449edb.html

Original Advisory:
http://lists.opensuse.org/opensuse-security-announce/2008-03/msg00006.html

Other References:
SA29428:
http://secunia.com/advisories/29428/



Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.

192 Related Secunia Security Advisories, displaying 10

1. SUSE Update for Multiple Packages
2. SUSE Update for Multiple Packages
3. SUSE update for OpenOffice_org
4. SUSE update for IBM Java
5. SUSE update for clamav
6. SUSE update for flash-player
7. SUSE update for openssh and opera
8. SUSE update for cups
9. SUSE update for MozillaFirefox
10. SUSE update for apache and apache2

Show all related advisories


Send Feedback to Secunia

If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.








Secunia PSI
Scan | Patch | Track
Free Download

Secunia Poll

Do you think it's important to read Setup/User Guides for applications for use within your network?


See Results   


Most Popular Advisories

1.
Microsoft Windows XP I2O Utility Filter Driver Privilege Escalation
2.
Citrix Access Gateway Unspecified Authentication Bypass
3.
Novell Client Login Long Username/Contex t Buffer Overflow
4.
Kmita Mail "file" File Inclusion Vulnerability
5.
Debian update for kernel
6.
Gentoo update for aterm, eterm, rxvt, mrxvt, multi-aterm, wterm, and rxvt-unicode
7.
rxvt-unicode X11 Display Security Issue
8.
mrxvt X11 Display Security Issue
9.
Internet Explorer "DisableCaching OfSSLPages" Weakness
10.
wterm X11 Display Security Issue





Vulnerability Management - Terms & Conditions - Copyright 2002-2008 Secunia - Compliance - Contact Secunia