Alerts This Week
Warning Icon 1 659
Alerts This Week
Warning Icon 1 659

Debian 3.1/4.0 DSA-1518-1 Moderate: Backup-Manager Password Exposure

debian
Calendar Grey March 15, 2008
Debian Logo
Debian security advisory DSA-1518-1 addresses information exposure due to password handling in backup-manager.
Micha Lenk discovered that backup-manager, a command-line backup tool, sends the password as a command line argument when calling a FTP client, which may allow a local attacker t...

Summary


For the old stable distribution (sarge), this problem has been fixed in
version 0.5.7-1sarge2.

For the unstable distribution (sid), this problem has been fixed in version
0.7.6-3.

We recommend that you upgrade your backup-manager package.

Upgrade instructions
- --------------------wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.

If you are using the apt-get package manager, use the line for
sources.list as given below:

apt-get update
will update the internal database
apt-get upgrade
will install corrected packages

You may use an automated update by adding the resources from the
footer to the proper configuration.


Debian GNU/Linux 3.1 alias sarge

Size/MD5 checksum: 923 fad99430055e40413827e477768dd077
Size/MD5 checksum: 35661 a97a66d03c4a05072924998f48f7b5d6
Size/MD5 checksum: 18510 4c33c9b8711ca3da4eb7f8f77214c26a

Architecture independent packages:

Size/MD5 checksum:...

Read the Full Advisory

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here