Alerts This Week
Warning Icon 1 525
Alerts This Week
Warning Icon 1 525

Debian DSA 503-1 Critical: Mah-Jong Denial Of Service Remote Exploit

debian
Calendar Grey May 13, 2004
Debian Logo
Critical Denial of Service issue in mah-jong identified, causing game server crash. Immediate upgrade is recommended.
A problem has been discovered in mah-jong that can be utilised to crash the game server after dereferencing a NULL pointer.

Summary

A problem has been discovered in mah-jong, a variant of the original
Mah-Jong game, that can be utilised to crash the game server after
dereferencing a NULL pointer. This bug be exploited by any client
that connects to the mah-jong server.

For the stable distribution (woody) this problem has been fixed in
version 1.4-3.

For the unstable distribution (sid) this problem has been fixed in
version 1.6.2-1.

We recommend that you upgrade your mah-jong package.


Upgrade Instructions
- --------------------

wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.

If you are using the apt-get package manager, use the line for
sources.list as given below:

apt-get update
will update the internal database
apt-get upgrade
will install corrected packages

You may use an automated update by adding the resources from the
footer to the proper configuration.


Debian GNU/Linux 3.0 alias woody

Source archives:


Size/MD5 checksum: 579 fbaaaa02b4da5b54...

Read the Full Advisory

Severity
critical
Lowest
Low
Medium
High
Critical

Package: mah-jong
CVE ID: CAN-2004-0458

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here