Alerts This Week
Warning Icon 1 619
Alerts This Week
Warning Icon 1 619

Debian 3.0: DSA-2004-064 Critical: OpenSSH Remote Vulnerability Alert

slackware
Calendar Grey February 12, 2004
Dist Slackware Esm H88
Recent updates to XFree86 packages on Slackware address buffer overflow vulnerabilities that could enable unauthorized root access. It is advisable to perform an upgrade to enhance security.
New XFree86 base packages are available for Slackware 8.1, 9.0, 9.1, and -current

Summary

Here are the details from the Slackware 9.1 ChangeLog: Thu Feb 12 10:00:37 PST 2004 patches/packages/xfree86-4.3.0-i486-6.tgz: Patched to fix buffer overflow problems with the parsing of 'font.alias' files that could allow unauthorized code execution. For more details, see: https://www.cve.org/CVERecord?id=CVE-CAN-2004-0083 https://www.cve.org/CVERecord?id=CVE-CAN-2004-0084 https://www.cve.org/CVERecord?id=CVE-CAN-2004-0106 (* Security fix *) WHERE TO FIND THE NEW PACKAGE: Updated package for Slackware 8.1: ftp://ftp.slackware.com/pub/slackware/slackware-8.1/patches/packages/xfree86-4.2.1-i386-3.tgz Updated package for Slackware 9.0: ftp://ftp.slackware.com/pub/slackware/slackware-9.0/patches/packages/xfree86-4.3.0-i386-3.tgz Updated package for Slackware 9.1: ftp://ftp.slackware.com/pub/slackware/slackware-9.1/patches/packages/xfree86-4.3.0-i486-6.tgz Updated package for Slackware -current: MD5 SIGNATURES: Slackware 8.1

Read the Full Advisory

Where Find New Packages

MD5 Signatures

Severity
critical
Lowest
Low
Medium
High
Critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Installation Instructions

Related News

Your message here