Alerts This Week
Warning Icon 1 540
Alerts This Week
Warning Icon 1 540

Ubuntu: USN-4395-1 High: OpenSSL Vulnerability Exploit Risk

debian
Calendar Grey April 16, 2015
Debian Logo
Debian's PPP package vulnerability poses a severe risk for DoS attacks, requiring immediate updates to enhance input validation and prevent exploits
Emanuele Rocca discovered that ppp, a daemon implementing the Point-to-Point Protocol, was subject to a buffer overflow when communicating with a RADIUS server

Summary

For the stable distribution (wheezy), this problem has been fixed in
version 2.4.5-5.1+deb7u2.

For the upcoming stable distribution (jessie) and unstable
distribution (sid), this problem has been fixed in version 2.4.6-3.1.

We recommend that you upgrade your ppp packages.

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Package: ppp
CVE ID: CVE-2015-3310

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here