Alerts This Week
Warning Icon 1 664
Alerts This Week
Warning Icon 1 664

Slackware 12.2: SSA:2009-041-02 Moderate: wicd Remote Access Vulnerability

slackware
Calendar Grey February 10, 2009
Dist Slackware Esm H88
Patch issued for sensitive data exposure in wicd D-Bus setup, applicable for Slackware 12.2 and rolling updates.
New wicd packages are available for Slackware 12.2 and -current to fix a security issue with the D-Bus configuration file that could allow local information disclosure (such as net...

Summary

Here are the details from the Slackware 12.2 ChangeLog: patches/packages/wicd/wicd-1.5.9-noarch-1.tgz: Upgraded to wicd-1.5.9. This fixes a security problem with the D-Bus configuration file that allows local users to intercept D-Bus messages, possibly including wireless network credentials. For more information, see: https://www.cve.org/CVERecord?id=CVE-2009-0489 (* Security fix *)

Where Find New Packages

HINT: Getting slow download speeds from ftp.slackware.com? Give slackware.osuosl.org a try. This is another primary FTP site for Slackware that can be considerably faster than downloading directly from ftp.slackware.com.
Thanks to the friendly folks at the OSU Open Source Lab (https://osuosl.org/) for donating additional FTP and rsync hosting to the Slackware project! :-)
Also see the "Get Slack" section on http://www.slackware.com/ for additional mirror sites near you.
Updated package for Slackware 12.2:
Updated package for Slackware -current:

MD5 Signatures

Slackware 12.2 package: 503d6dd8cce8fe148d6799727a51f5a6 wicd-1.5.9-noarch-1_slack12.2.tgz
Slackware -current package: f98aab4483d4aa1f6c16c4517e560b81 wicd-1.5.9-noarch-1.tgz

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Installation Instructions

Installation instructions: Kill any instances of wicd-client: # killall wicd-client Upgrade the package as root: # upgradepkg wicd-1.5.9-noarch-1_slack12.2.tgz Reload D-Bus: # /etc/rc.d/rc.messagebus reload Restart wicd: # /etc/rc.d/rc.wicd restart Finally, restart any stopped instances of wicd-client as the normal user(s). Alternate approach: Upgrade the wicd package and reboot.

Related News

Your message here