Secunia - Stay Secure
Gartner
Home Corporate Website Jobs Mailing Lists RSS Blog Advertise
Software Inspectors
  Scan Online
  Personal (PSI)
  Network (NSI 2.0)

Solutions For
  Security Professionals
  Security Vendors

Free Solutions For
  Open Communities
  Journalists & Media

Secunia Advisories
  Search
  Historic Advisories
  Listed By Product
  Listed By Vendor
  Statistics / Graphs
  Secunia Research
  Report Vulnerability
  About Advisories

Virus Information
  Chronological List
  Last 10 Virus Alerts
  About Virus Information

Secunia Customers
  Customer Area


Debian update for unzip Advisory Available in German 

Secunia Advisory: SA29432  
Release Date: 2008-03-18

Critical:
Moderately critical
Impact: System access
Where: From remote
Solution Status: Vendor Patch

OS:Debian GNU/Linux 3.1
Debian GNU/Linux 4.0
Debian GNU/Linux unstable alias sid


CVE reference:CVE-2008-0888 (Secunia mirror)

Want to know the next time vulnerabilities are fixed in this product?
- Companies can be alerted via email and SMS!


Description:
Debian has issued an update for unzip. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system.

For more information:
SA29415

Solution:
Apply updated packages.

-- Debian GNU/Linux 3.1 alias sarge --

Source archives:

http://security.debian.org/pool/updates/main/u/unzip/unzip_5.52.orig.tar.gz
Size/MD5 checksum:1140291 9d23919999d6eac9217d1f41472034a9
http://security.debian.org/pool/updates/main/u/unzip/unzip_5.52-1sarge5.diff.gz
Size/MD5 checksum: 6624 f4c389ef9a5f917416c68e8c0add754c
http://security.debian.org/pool/updates/main/u/unzip/unzip_5.52-1sarge5.dsc
Size/MD5 checksum:820 d0458a4fb2dbf3f040a78ba05d760884

alpha architecture (DEC Alpha)

http://security.debian.org/pool/updat.../u/unzip/unzip_5.52-1sarge5_alpha.deb
Size/MD5 checksum: 175112 ccbb3a82f15dd1b8d7c1c7d038aa97bb

amd64 architecture (AMD x86_64 (AMD64))

http://security.debian.org/pool/updat.../u/unzip/unzip_5.52-1sarge5_amd64.deb
Size/MD5 checksum: 155144 cec288676d7ac195c013ffbd5b96db3c

arm architecture (ARM)

http://security.debian.org/pool/updates/main/u/unzip/unzip_5.52-1sarge5_arm.deb
Size/MD5 checksum: 155706 eac17a818a4debec6782606199988963

hppa architecture (HP PA RISC)

http://security.debian.org/pool/updates/main/u/unzip/unzip_5.52-1sarge5_hppa.deb
Size/MD5 checksum: 163094 64cb7f948ac502dd7700f193277f54c4

i386 architecture (Intel ia32)

http://security.debian.org/pool/updates/main/u/unzip/unzip_5.52-1sarge5_i386.deb
Size/MD5 checksum: 145370 25acd84205d972fa65875593299403eb

ia64 architecture (Intel ia64)

http://security.debian.org/pool/updates/main/u/unzip/unzip_5.52-1sarge5_ia64.deb
Size/MD5 checksum: 206728 761bbebd459da89bd49abd4dea12786f

m68k architecture (Motorola Mc680x0)

http://security.debian.org/pool/updates/main/u/unzip/unzip_5.52-1sarge5_m68k.deb
Size/MD5 checksum: 134162 fbd7716086863fe16105d1f5f2119e69

mips architecture (MIPS (Big Endian))

http://security.debian.org/pool/updates/main/u/unzip/unzip_5.52-1sarge5_mips.deb
Size/MD5 checksum: 163330 a9ba43871f5e4d3ce3ff1e467414763c

mipsel architecture (MIPS (Little Endian))

http://security.debian.org/pool/updat...u/unzip/unzip_5.52-1sarge5_mipsel.deb
Size/MD5 checksum: 164240 63ec0268379ebd88e7994861e1403056

powerpc architecture (PowerPC)

http://security.debian.org/pool/updat.../unzip/unzip_5.52-1sarge5_powerpc.deb
Size/MD5 checksum: 157564 e22e222f4ca08bbfcdbe639e9f63aff3

s390 architecture (IBM S/390)

http://security.debian.org/pool/updates/main/u/unzip/unzip_5.52-1sarge5_s390.deb
Size/MD5 checksum: 156696 06f222f0b745fa4288cb1091769a55e7

sparc architecture (Sun SPARC/UltraSPARC)

http://security.debian.org/pool/updat.../u/unzip/unzip_5.52-1sarge5_sparc.deb
Size/MD5 checksum: 155286 12031b8c655980f08d115450c865166f

-- Debian GNU/Linux 4.0 alias etch --

Source archives:

http://security.debian.org/pool/updates/main/u/unzip/unzip_5.52-9etch1.diff.gz
Size/MD5 checksum:11786 4d13383683bf9cc67c7746075684f4e6
http://security.debian.org/pool/updates/main/u/unzip/unzip_5.52.orig.tar.gz
Size/MD5 checksum:1140291 9d23919999d6eac9217d1f41472034a9
http://security.debian.org/pool/updates/main/u/unzip/unzip_5.52-9etch1.dsc
Size/MD5 checksum:819 2b208e750aadf9e33373334c7d98dd18

alpha architecture (DEC Alpha)

http://security.debian.org/pool/updates/main/u/unzip/unzip_5.52-9etch1_alpha.deb
Size/MD5 checksum: 185310 4852a24bd4e91ab179b4fe981b12e6d2

amd64 architecture (AMD x86_64 (AMD64))

http://security.debian.org/pool/updates/main/u/unzip/unzip_5.52-9etch1_amd64.deb
Size/MD5 checksum: 161564 35a4168402a9d6baa4e7e6f081cfdb25

arm architecture (ARM)

http://security.debian.org/pool/updates/main/u/unzip/unzip_5.52-9etch1_arm.deb
Size/MD5 checksum: 163704 476e8f4d40eded9200b65ee790912864

hppa architecture (HP PA RISC)

http://security.debian.org/pool/updates/main/u/unzip/unzip_5.52-9etch1_hppa.deb
Size/MD5 checksum: 170130 0f8579b4b22caba32407120a87659ed1

i386 architecture (Intel ia32)

http://security.debian.org/pool/updates/main/u/unzip/unzip_5.52-9etch1_i386.deb
Size/MD5 checksum: 152010 07c17cb71fd58fec087e4085ddf663fe

ia64 architecture (Intel ia64)

http://security.debian.org/pool/updates/main/u/unzip/unzip_5.52-9etch1_ia64.deb
Size/MD5 checksum: 224620 cdf576f5ee72d9e6dc4d6cbab88596e1

mips architecture (MIPS (Big Endian))

http://security.debian.org/pool/updates/main/u/unzip/unzip_5.52-9etch1_mips.deb
Size/MD5 checksum: 170648 06d0beaad2654a277582a866caa4f5c8

mipsel architecture (MIPS (Little Endian))

http://security.debian.org/pool/updat.../u/unzip/unzip_5.52-9etch1_mipsel.deb
Size/MD5 checksum: 170216 137b212825edc0e9c427ea996f8f6451

powerpc architecture (PowerPC)

http://security.debian.org/pool/updat...u/unzip/unzip_5.52-9etch1_powerpc.deb
Size/MD5 checksum: 163698 2ba0eb1b35a090e061fd4392fe2ea4e0

s390 architecture (IBM S/390)

http://security.debian.org/pool/updates/main/u/unzip/unzip_5.52-9etch1_s390.deb
Size/MD5 checksum: 162602 718c9302a309ca9015669155abd548d6

sparc architecture (Sun SPARC/UltraSPARC)

http://security.debian.org/pool/updates/main/u/unzip/unzip_5.52-9etch1_sparc.deb
Size/MD5 checksum: 162024 51be9db04eec6dc2e6214b417ff1a94f

-- Debian GNU/Linux unstable alias sid --

Reportedly, updated packages will be available soon.

Original Advisory:
http://lists.debian.org/debian-security-announce/2008/msg00089.html

Other References:
SA29415:
http://secunia.com/advisories/29415/



Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.

1215 Related Secunia Security Advisories, displaying 10

1. Debian update for gforge
2. Debian update for openssh
3. Debian OpenSSL Predictable Random Number Generator and Update
4. Debian update for kernel
5. Debian update for rdesktop
6. Debian update for php5
7. Debian update for kazehakase
8. Debian update for blender
9. Debian update for b2evolution
10. Debian update for cacti

Show all related advisories


Send Feedback to Secunia

If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.








Secunia PSI
Scan | Patch | Track
Free Download

Secunia Poll

Do you think it's important to read Setup/User Guides for applications for use within your network?


See Results   


Most Popular Advisories

1.
Debian OpenSSL Predictable Random Number Generator and Update
2.
Blender Multiple Temporary File Security Issues
3.
Kostenloses Linkmanagements cript Multiple Vulnerabilities
4.
Model Search "cat" SQL Injection Vulnerability
5.
Symantec Altiris Deployment Solution Multiple Vulnerabilities
6.
Rantx "logininfo" Security Bypass Vulnerability
7.
Linux Kernel Multiple Vulnerabilities
8.
Pet Grooming Management System "useradded.php" Security Bypass
9.
e107 BLOG Engine Plugin "rid" SQL Injection
10.
W1L3D4 Philboard Multiple SQL Injection Vulnerabilities





Vulnerability Management - Terms & Conditions - Copyright 2002-2008 Secunia - Compliance - Contact Secunia