Date:         Mon, 8 Oct 2007 15:23:22 -0500
Reply-To:     Troy Dawson 
Sender:       Security Errata for Scientific Linux
              
From:         Troy Dawson 
Subject:      Security ERRATA for opal on SL5.x i386/x86_64
Comments: To: scientific-linux-errata@fnal.gov

Synopsis:	Moderate: opal security update
Issue date:	2007-10-08
CVE Names:	CVE-2007-4924

In Scientific Linux 5, the Ekiga application uses opal.

A flaw was discovered in the way opal handled certain Session Initiation
Protocol (SIP) packets.  An attacker could use this flaw to crash an
application, such as Ekiga, which is linked with opal. (CVE-2007-4924)

SL 5.x

   SRPMS:
opal-2.2.2-1.1.0.1.src.rpm
   i386:
opal-2.2.2-1.1.0.1.i386.rpm
opal-devel-2.2.2-1.1.0.1.i386.rpm
   x86_64:
opal-2.2.2-1.1.0.1.x86_64.rpm
opal-devel-2.2.2-1.1.0.1.x86_64.rpm

-Connie Sieh
-Troy Dawson

SciLinux: CVE-2007-4924 opal SL5.x i386/x86_64

Moderate: opal security update

Summary

Date:         Mon, 8 Oct 2007 15:23:22 -0500Reply-To:     Troy Dawson Sender:       Security Errata for Scientific Linux              From:         Troy Dawson Subject:      Security ERRATA for opal on SL5.x i386/x86_64Comments: To: scientific-linux-errata@fnal.govSynopsis:	Moderate: opal security updateIssue date:	2007-10-08CVE Names:	CVE-2007-4924In Scientific Linux 5, the Ekiga application uses opal.A flaw was discovered in the way opal handled certain Session InitiationProtocol (SIP) packets.  An attacker could use this flaw to crash anapplication, such as Ekiga, which is linked with opal. (CVE-2007-4924)SL 5.x   SRPMS:opal-2.2.2-1.1.0.1.src.rpm   i386:opal-2.2.2-1.1.0.1.i386.rpmopal-devel-2.2.2-1.1.0.1.i386.rpm   x86_64:opal-2.2.2-1.1.0.1.x86_64.rpmopal-devel-2.2.2-1.1.0.1.x86_64.rpm-Connie Sieh-Troy Dawson



Security Fixes

Severity

Related News