Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 431
Alerts This Week
Warning Icon 1 431

Debian: DSA-1326 Critical: Fireflier-Server Insecure File Handling

debian
Calendar Grey July 1, 2007
Scroller Debian
A critical vulnerability in Fireflier-server on Debian has been identified, necessitating an immediate update to protect your system against exploits
Steve Kemp from the Debian Security Audit project discovered that fireflier-server, an interactive firewall rule creation tool, uses temporary files in an unsafe manner which may...

Summary


For the stable distribution (etch) this problem has been fixed in
version 1.1.6-3etch1.

For the unstable distribution (sid) this problem will be fixed shortly.

We recommend that you upgrade your fireflier-server package.


Upgrade instructions
- --------------------wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.

If you are using the apt-get package manager, use the line for
sources.list as given below:

apt-get update
will update the internal database
apt-get upgrade
will install corrected packages

You may use an automated update by adding the resources from the
footer to the proper configuration.



Debian GN/Linux 3.1 alias sarge

Source archives:

Size/MD5 checksum: 754 fd653a7d7e2c4475d1a2c2640b3e142a
Size/MD5 checksum: 499949 4ae52e40866c6ca977ddcbf8a8b5fd65

alpha architecture (DEC Alpha)

Size/MD5 checksum: 75194 8c878fe74627e6a6246333d5b14c228f
Size/MD5 checksum: ...

Read the Full Advisory

Severity
critical
Lowest
Low
Medium
High
Critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.