Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

Debian: DSA-1247-1 Critical: Libapache-Mod-Auth-Kerb Heap Overflow DoS

debian
Calendar Grey January 8, 2007
Debian Logo
Mitigating remote DoS vulnerabilities due to heap overflow issues in libapache-mod-auth-kerb. Urgent update advised.
An off-by-one error leading to a heap-based buffer overflow has been identified in libapache-mod-auth-kerb, an Apache module for Kerberos authentication

Summary


For the unstable version (sid) and the forthcoming stable version
(etch), this problem has been fixed in version 5.3-1.

We recommend that you upgrade your libapache-mod-auth-kerb package.

Upgrade instructions
- --------------------wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.

If you are using the apt-get package manager, use the line for
sources.list as given below:

apt-get update
will update the internal database
apt-get upgrade
will install corrected packages

You may use an automated update by adding the resources from the
footer to the proper configuration.

Debian 3.1 (stable)
- -------------------Stable updates are available for alpha, amd64, arm, hppa, i386, ia64, m68k, mips, mipsel, powerpc, s390 and sparc.

Source archives:

Size/MD5 checksum: 744 5e045be08755cab316754a7f214eeaae
Size/MD5 checksum: 49849 3ebbb5101629ddd8917159c1cbdf20ab
Size/MD5 checksum: 68787 b6a6c8...

Read the Full Advisory

Severity
critical
Lowest
Low
Medium
High
Critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here