Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 524
Alerts This Week
Warning Icon 1 524

Debian: DSA 320-1 Critical: Mikmod Buffer Overflow Threat Report

debian
Calendar Grey June 16, 2003
Scroller Debian
Debian's DSA 320-1 details a critical buffer overflow in mikmod. Update recommended for affected users.
Ingo Saitz discovered a bug in mikmod whereby a long filename inside an archive file can overflow a buffer when the archive is being read by mikmod.

Summary

Ingo Saitz discovered a bug in mikmod whereby a long filename inside
an archive file can overflow a buffer when the archive is being read
by mikmod.

For the stable distribution (woody) this problem has been fixed in
version 3.1.6-4woody3.

For old stable distribution (potato) this problem has been fixed in
version 3.1.6-2potato3.

For the unstable distribution (sid) this problem is fixed in version
3.1.6-6.

We recommend that you update your mikmod package.

Upgrade Instructions
- --------------------

wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.

If you are using the apt-get package manager, use the line for
sources.list as given below:

apt-get update
will update the internal database
apt-get upgrade
will install corrected packages

You may use an automated update by adding the resources from the
footer to the proper configuration.

Debian GNU/Linux 2.2 alias potato

Source archives:


Size/MD5 checksum: 595 d0a811016b5025b32...

Read the Full Advisory

Severity
critical
Lowest
Low
Medium
High
Critical

Package: mikmod

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.