Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 461
Alerts This Week
Warning Icon 1 461

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -5 articles for you...
89

Fedora 40: FEDORA-2024-2b429e720e moderate: php parameter injection

PHP version 8.3.12 (26 Sep 2024) CGI: Fixed bug GHSA-p99j-rfp4-xqvq (Bypass of CVE-2024-4577, Parameter Injection Vulnerability). (CVE-2024-8926) (nielsdos) Fixed bug GHSA-94p6-54jq-9mwp (cgi.force_redirect configuration is bypassable. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-2b429e720e 2024-10-02 02:58:10.993110 -------------------------------------------------------------------------------- Name : php Product : Fedora 40 Version : 8.3.12 Release : 1.fc40 URL : http://www.php.net/ Summary : PHP scripting language for creating dynamic web sites Description : PHP is an HTML-embedded scripting language. PHP attempts to make it easy for developers to write dynamically generated web pages. PHP also offers built-in database integration for several commercial and non-commercial database management systems, so writing a database-enabled webpage with PHP is fairly simple. The most common use of PHP coding is probably as a replacement for CGI scripts. -------------------------------------------------------------------------------- Update Information: PHP version 8.3.12 (26 Sep 2024) CGI: Fixed bug GHSA-p99j-rfp4-xqvq (Bypass of CVE-2024-4577, Parameter Injection Vulnerability). (CVE-2024-8926) (nielsdos) Fixed bug GHSA-94p6-54jq-9mwp (cgi.force_redirect configuration is bypassable due to the environment variable collision). (CVE-2024-8927) (nielsdos) Core: Fixed bug GH-15408 (MSan false-positve on zend_max_execution_timer). (zeriyoshi) Fixed bug GH-15515 (Configure error grep illegal option q). (Peter Kokot) Fixed bug GH-15514 (Configure error: genif.sh: syntax error). (Peter Kokot) Fixed bug GH-15565 (--disable-ipv6 during compilation produces error EAI_SYSTEM not found). (nielsdos) Fixed bug GH-15587 (CRC32 API build error on arm 32-bit). (Bernd Kuhls, Thomas Petazzoni) Fixed bug GH-15330 (Do not scan generator frames more than once). (Arnaud) Fixed uninitializedlineno in constant AST of internal enums. (ilutov) Curl: FIxed bug GH-15547 (curl_multi_select overflow on timeout argument). (David Carlier) DOM: Fixed bug GH-15551 (Segmentation fault (access null pointer) in ext/dom/xml_common.h). (nielsdos) Fixed bug GH-15654 (Signed integer overflow in ext/dom/nodelist.c). (nielsdos) Fileinfo: Fixed bug GH-15752 (Incorrect error message for finfo_file with an empty filename argument). (DanielEScherzer) FPM: Fixed bug GHSA-865w-9rf3-2wh5 (Logs from childrens may be altered). (CVE-2024-9026) (Jakub Zelenka) MySQLnd: Fixed bug GH-15432 (Heap corruption when querying a vector). (cmb, Kamil Tekiela) Opcache: Fixed bug GH-15661 (Access null pointer in Zend/Optimizer/zend_inference.c). (nielsdos) Fixed bug GH-15658 (Segmentation fault in Zend/zend_vm_execute.h). (nielsdos) SAPI: Fixed bug GHSA-9pqp-7h25-4f32 (Erroneous parsing of multipart form data). (CVE-2024-8925) (Arnaud) Standard: Fixed bug GH-15552 (Signed integer overflow in ext/standard/scanf.c). (cmb) Streams: Fixed bug GH-15628 (php_stream_memory_get_buffer() not zero-terminated). (cmb) -------------------------------------------------------------------------------- ChangeLog: * Wed Sep 25 2024 Remi Collet - 8.3.12-1 - Update to 8.3.12 - http://www.php.net/releases/8_3_12.php - enable command history in phpdbg -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-2b429e720e' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue . The Laravel patch for Ubuntu resolves multiple vulnerabilities including request forgery, session fixation, and risks in 9.5.7. Fedora PHP Update, Security Advisory, PHP Parameter Injection. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Oct 02, 2024 Important Fedora
87

Debian: DSA-1914-1 Critical: Mapserver Remote Code Execution

Several vulnerabilities have been discovered in mapserver, a CGI-based web framework to publish spatial data and interactive mapping applications. The Common Vulnerabilities and Exposures project identifies the following problems: . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - -------------------------------------------------------------------------- Debian Security Advisory DSA-1914-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Nico Golde October 22nd, 2009 http://www.debian.org/security/faq - -------------------------------------------------------------------------- Package : mapserver Vulnerability : several Problem type : remote Debian-specific: no Debian bug : #535340 #523027 CVE ID : CVE-2009-0843 CVE-2009-0842 CVE-2009-0841 CVE-2009-0840 CVE-2009-0839 CVE-2009-2281 Several vulnerabilities have been discovered in mapserver, a CGI-based web framework to publish spatial data and interactive mapping applications. The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2009-0843 Missing input validation on a user supplied map queryfile name can be used by an attacker to check for the existence of a specific file by using the queryfile GET parameter and checking for differences in error messages. CVE-2009-0842 A lack of file type verification when parsing a map file can lead to partial disclosure of content from arbitrary files through parser error messages. CVE-2009-0841 Due to missing input validation when saving map files under certain conditions it is possible to perform directory traversal attacks and to create arbitrary files. NOTE: Unless the attacker is able to create directories in the image path or there is already a readable directory this doesn't affect installations on Linux as the fopen() syscall will fail in case a sub path is not readable. CVE-2009-0839 It was discovered that mapserver is vulnerable toa stack-based buffer overflow when processing certain GET parameters. An attacker can use this to execute arbitrary code on the server via crafted id parameters. CVE-2009-0840 An integer overflow leading to a heap-based buffer overflow when processing the Content-Length header of an HTTP request can be used by an attacker to execute arbitrary code via crafted POST requests containing negative Content-Length values. CVE-2009-2281 An integer overflow when processing HTTP requests can lead to a heap-based buffer overflow. An attacker can use this to execute arbitrary code either via crafted Content-Length values or large HTTP request. This is partly because of an incomplete fix for CVE-2009-0840. For the oldstable distribution (etch), this problem has been fixed in version 4.10.0-5.1+etch4. For the stable distribution (lenny), this problem has been fixed in version 5.0.3-3+lenny4. For the testing distribution (squeeze), this problem has been fixed in version 5.4.2-1. For the unstable distribution (sid), this problem has been fixed in version 5.4.2-1. We recommend that you upgrade your mapserver packages. Upgrade instructions - -------------------- wget url will fetch the file for you dpkg -i file.deb will install the referenced file. If you are using the apt-get package manager, use the line for sources.list as given below: apt-get update will update the internal database apt-get upgrade will install corrected packages You may use an automated update by adding the resources from the footer to the proper configuration. Debian GNU/Linux 4.0 alias etch - ------------------------------- Debian (oldstable) - ------------------ Oldstable updates are available for alpha, amd64, arm, hppa, i386, ia64, mips, mipsel, powerpc, s390 and sparc. Source archives: Size/MD5 checksum: 1324 da6dc400ad2809025a367588eb931523 Size/MD5 checksum: 1782838 4668bbd017c20c251e962a5cd09c8f31 Size/MD5 checksum: 8576261bec011ac70ab92c0ebdf064bbbe3ed Architecture independent packages: Size/MD5 checksum: 94768 a6b8887a85643d4be20e5e1fc1c94c4d alpha architecture (DEC Alpha) Size/MD5 checksum: 505828 d90975f9345f55213725ba30836248b3 Size/MD5 checksum: 3721704 aa3689eb024673362bc1f4eba5bcf506 Size/MD5 checksum: 612294 e87d84530f20dff11900357b1000c266 Size/MD5 checksum: 640400 ee763dfbcd9d96af2e7d68f379ac8b6f Size/MD5 checksum: 613754 e11196261729f9b148c78ec494ed16d9 Size/MD5 checksum: 776080 b4f3464ee84e5cd99221fc7f13456158 arm architecture (ARM) Size/MD5 checksum: 524598 0f85fc0fe42f0a79d3ad6ccb424ab1f5 Size/MD5 checksum: 540312 c06accd457ff567d7028c124f72e7b60 Size/MD5 checksum: 660318 ce3a9044a866184881cbe798e72dc8ab Size/MD5 checksum: 435310 275339dd1b3bf757ff1c2efaa13ac5ac Size/MD5 checksum: 3166716 6e1d3953e09230dfba91e2559f652e06 Size/MD5 checksum: 523334 ed00d5edf3b5a264ea061f34f7f22946 i386 architecture (Intel ia32) Size/MD5 checksum: 539580 c269364509931789eb6ef47bae61a5f3 Size/MD5 checksum: 443446 ea0800ac81efc45f849c7e43dcdca16c Size/MD5 checksum: 552550 98c002338bed5b2ef37146bcf379e68a Size/MD5 checksum: 538672 d6c93b0c09a6c4af02835dc192379b95 Size/MD5 checksum: 3229784 6a7c29331b215039c8e444d778250077 Size/MD5 checksum: 684270 6254390f2d12c31173c1d8dcb92d142f ia64 architecture (Intel ia64) Size/MD5 checksum: 828736 60856f8a15e3c05b33336507c27b9b84 Size/MD5 checksum: 987262 2d376547ba3042c15dfa4fea57aed858 Size/MD5 checksum: 686356 80fcf125d9286bb6a23dafc6a0ba415c Size/MD5 checksum: 790836 c11e9b1eb17ead28a428366355695275 Size/MD5 checksum: 5109184 b30a07d58eab67c84285a3b92f3eeddd Size/MD5 checksum: 789878 7a0c80a55e536dcd6df60be5baf22bb4 mipsel architecture (MIPS (Little Endian)) Size/MD5 checksum: 555028 be6ff689cb0ea08d06393c957b4cba12 Size/MD5 checksum: 5656608cfacd3fc20884e0b6c6ac3f589010db Size/MD5 checksum: 553884 369bac7623153f8e3a54f87668895ae6 Size/MD5 checksum: 486622 a03198abeeab6d71bf4ab40b29de7b0e Size/MD5 checksum: 3561220 81c5a3254387d9126bb840d5f45357d6 Size/MD5 checksum: 600622 da0b19672fa100e835432a07bc2560ae powerpc architecture (PowerPC) Size/MD5 checksum: 561992 acbcfbb04f3db588562f2be72c1b1a9d Size/MD5 checksum: 585282 d4652893b6c25c2f21ceced832ca6205 Size/MD5 checksum: 3348742 e4d99aec224d9f1289d9f02c2d3510b9 Size/MD5 checksum: 458854 c8428751ba59008c4dbed9b1b362cb15 Size/MD5 checksum: 715146 5f57edca2c6c18ec17480a1f33e15458 Size/MD5 checksum: 563384 034eb83b319e5cc0aa1c3a3b3c37dee4 s390 architecture (IBM S/390) Size/MD5 checksum: 587272 2183ffa1e862ebfd7239f237612b2b5b Size/MD5 checksum: 559922 6528f0036a1555ad307298e55d1ca0af Size/MD5 checksum: 3341944 da6e735cae80a3b0b1cd80f567584c8d Size/MD5 checksum: 561112 58614ce7d6b4f3e15d504cfbc938c48f Size/MD5 checksum: 611700 d25cc74ad733b652b53add8c6983dde6 Size/MD5 checksum: 457848 f8c8ad80313f306f9f4df642bf7146b9 sparc architecture (Sun SPARC/UltraSPARC) Size/MD5 checksum: 547472 5e9921fe7eb781e690bb8a86725f1abb Size/MD5 checksum: 548778 b09f7ca97de9d1103758184b13192b71 Size/MD5 checksum: 708650 3da45c28d243436b775fd0b52644c63f Size/MD5 checksum: 447924 b2eaae9234ca38a0c20eb27a97c5ddb5 Size/MD5 checksum: 3256348 0d4f0358dff2591e64a79fdc00647c74 Size/MD5 checksum: 574136 7fa36c4bee299e6c333a5616e80bc0b3 Debian GNU/Linux 5.0 alias lenny - -------------------------------- Debian (stable) - --------------- Stable updates are available for alpha, amd64, arm, armel, hppa, i386, ia64, mips, mipsel, powerpc, s390 and sparc. Source archives: Size/MD5 checksum: 1806528 953a131497132baef84ca33f8432d299 Size/MD5 checksum: 2033 04fead45bba690c1f1c330356671a590 Size/MD5 checksum: 1472269871cf7ca37e7d3f9bd91d9434f7dc2e1 Architecture independent packages: Size/MD5 checksum: 44796 ae4a1cd5ae7d5facb4f41141ba5e045b Size/MD5 checksum: 168520 1f4f8fba19dec0708ab0efdffb48724b alpha architecture (DEC Alpha) Size/MD5 checksum: 652082 5ff1023e8dba0c34aee31fbe91c0b5c6 Size/MD5 checksum: 1600930 39225645f9d1003594c4f8f8fa51444d Size/MD5 checksum: 987646 8875c04bc7051d676c835195a732bcf8 Size/MD5 checksum: 844564 12b690e0a65ab7350d1c381f23d522a5 Size/MD5 checksum: 4836306 c2be854b94d75bd78676993331e95bf0 Size/MD5 checksum: 783362 143f2b5759d631112cafb2a6afcb37d9 Size/MD5 checksum: 844292 5cdfb8ff6e522fa1bd6685bd340a70b7 arm architecture (ARM) Size/MD5 checksum: 666318 202c434d413a63c68e4105a01b15b146 Size/MD5 checksum: 4147952 2caa2f6bd96402938c2e9b9155831208 Size/MD5 checksum: 738408 e305001d7e1071430012cc8401c464a2 Size/MD5 checksum: 829300 a0f364a7496f590054229fa274e8b996 Size/MD5 checksum: 738186 5e727ab69c9a3d94e664bc7a123de96e Size/MD5 checksum: 567678 96b9d51f90a125c32736f96844f803b7 Size/MD5 checksum: 1358228 fdd6e7debc208625f4a784926931c7fa armel architecture (ARM EABI) Size/MD5 checksum: 4484238 6ebf262957abd2ef478516c01e69d16e Size/MD5 checksum: 785530 cfaee32501906f1d13f9907cccd29656 Size/MD5 checksum: 609520 a1eab66be442721531ee776b5a375fa4 Size/MD5 checksum: 710168 e436e7606be6580b87a451807d705e91 Size/MD5 checksum: 878968 2bb3ed4fef4bd8a0c8edf6741dee4d89 Size/MD5 checksum: 1450614 fa192b3758695cf454b30b5dd1313e9d Size/MD5 checksum: 785174 854cee84208047890d9c34ff3726fc17 i386 architecture (Intel ia32) Size/MD5 checksum: 4200908 1e7aa6fa9fd97e44bab454dd4b8885d2 Size/MD5 checksum: 689968 b786f12da9328751343567514a4b080a Size/MD5 checksum: 742666 cf98bfdc6a4ba63f02d1071229be12e7 Size/MD5 checksum: 742818 a0f4d369a474871ce56abdf8b0005d6b Size/MD5 checksum: 867270c93c9f5a3c95212f749bbe45d1337b36 Size/MD5 checksum: 1390226 35b0e1ccb9371d5361d1c739a5829f89 Size/MD5 checksum: 572826 2b082c5f96aa661ad923c6a689cf8a72 ia64 architecture (Intel ia64) Size/MD5 checksum: 1017178 40b12d345b65b9a81e73ccd6b974d2e5 Size/MD5 checksum: 6675022 98adddf9cdfd916faf4a0020acbf1d1e Size/MD5 checksum: 1247906 07695fb1f4d82ecb56fb0c8fb1aa5416 Size/MD5 checksum: 1131092 ecbe4c220838d97aadce335fcdd80352 Size/MD5 checksum: 890286 ff8bd142806cddd9c3395d000b3db5b7 Size/MD5 checksum: 1130862 08e8bf87a278bf783a849e38fd051fab Size/MD5 checksum: 2109502 b11b361cb0f78540ef2cefeec126ae1d mips architecture (MIPS (Big Endian)) Size/MD5 checksum: 631184 13199f051e8b5cc7cf73b1dfbc16cad2 Size/MD5 checksum: 761820 5d222a44d2a1adeafcbebeba7472bd94 Size/MD5 checksum: 4666306 dd0a600d9f8530ac473a80f0161e07d8 Size/MD5 checksum: 701610 d58aab786869ba4f03dcb6f56f75724d Size/MD5 checksum: 722886 97dae8dcd1a612617d268f572ad4d8ac Size/MD5 checksum: 1412214 1c863d8e5b6143aa11f0c0f17476ae89 Size/MD5 checksum: 722590 b6c718d4736d96774b7443ea5df1994a mipsel architecture (MIPS (Little Endian)) Size/MD5 checksum: 632010 62c6e4bd0e0e70ddaf900aedb3803c09 Size/MD5 checksum: 1406838 53bfd5932d0679a1c9edec67b28e9c58 Size/MD5 checksum: 720686 3adf0ef1454c3e6d470c44f8a8a59161 Size/MD5 checksum: 720896 13217294dc826c029a30471e4484d9f7 Size/MD5 checksum: 703238 b12b26bdeff6828c415f11feab234851 Size/MD5 checksum: 761242 2ba9557df2d7973a6b41e71edbc26718 Size/MD5 checksum: 4672572 ef4abed3db1b5be4cdd08a0f9e98e5b9 powerpc architecture (PowerPC) Size/MD5 checksum: 598198 1fd494a0bda3577a4293da0f500e48f1 Size/MD5 checksum: 742888 11c1e63a7fef9e5a1a3ad49cb611487a Size/MD5 checksum: 802144 98e0a397ee0479f213762c900e3d2471 Size/MD5 checksum: 802414 c5385417b9d28c52be4e0723ddf1b51b Size/MD5 checksum: 941542af24159933c8e54b5203c3cd7c307f22 Size/MD5 checksum: 1520850 4b81970502d05a8ae9ab09c3cc4c1d85 Size/MD5 checksum: 4409858 dddcc7a6477a0148ea1cb9d1b30b2b86 sparc architecture (Sun SPARC/UltraSPARC) Size/MD5 checksum: 764904 8fe64aa2804d349adfdc7b3a6907b807 Size/MD5 checksum: 4203198 211300cf53dba47628d1d2ec6e9e4b79 Size/MD5 checksum: 765322 bb79004a547472c268d4a42640a3942f Size/MD5 checksum: 1435726 06543046c2379b0eaebc4069a926579c Size/MD5 checksum: 574678 82da745a969852b0d201599f58367ec8 Size/MD5 checksum: 696576 a6171c3789c939f768ffc6eb54a28442 Size/MD5 checksum: 897036 d63071fbfbb7c248b68ba7e1ee50915a These files will probably be moved into the stable distribution on its next update. - --------------------------------------------------------------------------------- For apt-get: deb https://www.debian.org/security/ stable/updates main For dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. Package info: `apt-cache show ' and https://www.debian.org/distrib/packages . To bolster your Debian security, upgrade the mapserver application to address CGI vulnerabilities with this comprehensive step-by-step guide. Debian MapServer vulnerabilities, CGI security issues, server upgrade guide. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Oct 22, 2009 Critical Debian
87

Debian 3.1: DSA-1235-1 Critical: Ruby CGI Denial Of Service

A denial of service vulnerability has been discovered in the CGI library included with Ruby, the intepreted scripting langauge for quick and easy object-orientated programming.. - ------------------------------------------------------------------------Debian Security Advisory DSA-1235-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Steve Kemp December 13, 2006 - ------------------------------------------------------------------------Package : ruby1.8 Vulnerability : Denial of service Problem type : remote Debian-specific: no CVE Id(s) : CVE-2006-5467 Debian Bug : 398457 A denial of service vulnerability has been discovered in the CGI library included with Ruby, the intepreted scripting langauge for quick and easy object-orientated programming. For the stable distribution (sarge), this problem has been fixed in version 1.8.2-7sarge5. We recommend that you upgrade your ruby1.8 package. Upgrade instructions - --------------------wget url will fetch the file for you dpkg -i file.deb will install the referenced file. If you are using the apt-get package manager, use the line for sources.list as given below: apt-get update will update the internal database apt-get upgrade will install corrected packages You may use an automated update by adding the resources from the footer to the proper configuration. Debian 3.1 (stable) - -------------------Stable updates are available for alpha, amd64, arm, hppa, i386, ia64, m68k, mips, mipsel, powerpc, s390 and sparc. Source archives: Size/MD5 checksum: 1024 912f2bb9a68ba4c1dcad47ebded0946f Size/MD5 checksum: 3623780 4bc5254bec262d18cf1ceef03aae8bdf Size/MD5 checksum: 537107 452d8fc55dd8b09fcce1fa843146316e Architecture independent packages: Size/MD5 checksum: 234904 3c678d4f692f0a815f8e123ce1ec5cbc Size/MD5 checksum: 142342 8aa7ade9e0b3af75caf49850d61188f8 Size/MD5checksum: 166572 9d149f07d1d580561c8fd139b2505806 Size/MD5 checksum: 721046 ca07956a53ad6032c5770d36f6b83be6 Size/MD5 checksum: 219032 4a2eec33f380b225db9c3b73d4925872 alpha architecture (DEC Alpha) Size/MD5 checksum: 796230 c83c345488cb4d6073af0094e3343657 Size/MD5 checksum: 237746 b57a4a2a3d3029098e5ec51456dfbf96 Size/MD5 checksum: 133570 d59fed9aabc5fd7bd85e52a5994885ee Size/MD5 checksum: 1468624 30354f8ce99453f748a2b73c0ecbe35d Size/MD5 checksum: 137664 598deb2773a96cc9a3d6c6aa50d41970 Size/MD5 checksum: 1450302 90a592d6acc3c433e3055b7d48d72619 Size/MD5 checksum: 152112 30df21197d9c6f4f79173d4010bececa Size/MD5 checksum: 136106 7bfe56ddd935299f5725d391c7d87c29 Size/MD5 checksum: 827214 cea044e68e0b5c823d99a675c2382e0a amd64 architecture (AMD x86_64 (AMD64)) Size/MD5 checksum: 234196 3c6eeabc8701ba4362f4688b2806e08d Size/MD5 checksum: 1392588 c04ec457b39ebeca3a657b89be94be10 Size/MD5 checksum: 151770 d04f1108db6e218b5ec17f1f63433aa3 Size/MD5 checksum: 780908 efe048b111da22bc9fa7d0272e9f0e73 Size/MD5 checksum: 132778 de3de7b9de8500725f6801528003bdcd Size/MD5 checksum: 1446914 e9d5e1518d9d5f4104c388d8a76ea54b Size/MD5 checksum: 649342 ecdf8db978bbfbd1ff76deb70f7c99f8 Size/MD5 checksum: 135458 48edc1640fe2e46c76be6142cd0f653b Size/MD5 checksum: 136936 99428965f5fa05692ccb1cd4d0cfb93b arm architecture (ARM) Size/MD5 checksum: 660602 0e3ba8cb5f5e6aed2e82183d6adf438e Size/MD5 checksum: 743978 34addffb617940e82a921f7b3fbd4971 Size/MD5 checksum: 222524 95aaaff374f1eca459909e41d73281f3 Size/MD5 checksum: 135618 3299078b49a0d18e8c1ba1df6053374c Size/MD5 checksum: 131882 d624363743612f51583dc365aece3a6c Size/MD5 checksum: 1348448 30160581763c0ca181a27051972f49b7 Size/MD5 checksum: 134512 cc792f596cda0a76187ad0d87f9a78dd Size/MD5 checksum: 1441176fff2f3b698f470e59ae7d1fc38213bee Size/MD5 checksum: 151616 d44dda05ff32853bacf61558a75d329e hppa architecture (HP PA RISC) Size/MD5 checksum: 1453746 324d6165b61f85361d235c84232f9c57 Size/MD5 checksum: 840092 cefc1185f43039b7bb312b8d9eaf446d Size/MD5 checksum: 138316 e6cdba374c69f955382b507829246d0b Size/MD5 checksum: 736170 c363eb08f4cb707fb38b84d384aaed21 Size/MD5 checksum: 133848 1f547a7149e324c2be82b9ea7721e747 Size/MD5 checksum: 136670 cf7e020365d2c1e0f47a07d4ef2afcaf Size/MD5 checksum: 1501190 a554170ecc2e0a5c8c20e1244e08b42b Size/MD5 checksum: 246992 9b222eff056b6cfef4be08be31b14a24 Size/MD5 checksum: 152186 c6c89f82e6a10eaab2d320ba7f3452a4 i386 architecture (Intel ia32) Size/MD5 checksum: 134832 69fe160eaa7a61e977758ca8840f2f68 Size/MD5 checksum: 1473438 d403bf6278df17c91cd29832e217d180 Size/MD5 checksum: 132066 217be9ae92eac89f2c0e02382bc63927 Size/MD5 checksum: 622628 81d3722ed53eeacbc154338472e27b75 Size/MD5 checksum: 758384 7511dc65739e94a64f517aad719e1bc3 Size/MD5 checksum: 151662 5feafa4bbbcc724ee26d79fe7ff30f3f Size/MD5 checksum: 1359432 1c9fc5e0c26b059be2f962d41bde1a4f Size/MD5 checksum: 136006 00832183a598d7f2bdaa18b711fafad8 Size/MD5 checksum: 225248 b7817d365ceee9e6da596e7cb360477b ia64 architecture (Intel ia64) Size/MD5 checksum: 152520 32884dc2d4d81a84bff3bd13cb734d2b Size/MD5 checksum: 998786 f538ed28e4a5a1e8b94aa240b72b44e1 Size/MD5 checksum: 867704 7aedeff3ca8fd793867c87bde17a0a76 Size/MD5 checksum: 265788 abfcef422b02e874dccefaad35c1f519 Size/MD5 checksum: 135912 0d6604955f68bf6e4b3712a5634dcb4a Size/MD5 checksum: 1463086 2213dd9375aa10fb8e049a517a6a86df Size/MD5 checksum: 1704178 923e50fedde26c1d4f7cd3dd98cfcdee Size/MD5 checksum: 140554 e19468af83ef08fcf1d9201b2785112e Size/MD5 checksum: 138710e76a6815cc508d16509c73cb95dcbc84 m68k architecture (Motorola Mc680x0) Size/MD5 checksum: 230926 3dfb38f37e0d6aec8f084f528d31f63f Size/MD5 checksum: 135930 ff3e15385d509399921ce4d5005742fd Size/MD5 checksum: 730266 d9bf2e21bfadfd427310371fd51b5115 Size/MD5 checksum: 553324 16c3f3374ae776484fded03f8db92965 Size/MD5 checksum: 1333048 68a6602dde0f45986ed8a54675b7717c Size/MD5 checksum: 132220 b6bceda24dbdfd364734c43745556c99 Size/MD5 checksum: 134532 3245f121451f94fa4d921f25bd75e16d Size/MD5 checksum: 1439658 23889e93e548b1d45c90a8b7e64a73b3 Size/MD5 checksum: 151552 27d9d1d7216184b5cc91f363463e3bfe mips architecture (MIPS (Big Endian)) Size/MD5 checksum: 215622 402d070be4eda4e233f7e1d3f0c3c392 Size/MD5 checksum: 152320 9c03debe81a9cde0d337668e45d8e132 Size/MD5 checksum: 684456 05543ea183c6bebcd879fd060f8c2716 Size/MD5 checksum: 763988 b4ad8c337b7a250fb0e41e9b67d19c81 Size/MD5 checksum: 131774 2c0c8c5958cff11815b7d8b7541c01c6 Size/MD5 checksum: 134312 79d335494bfdd25c747ea37cb878f643 Size/MD5 checksum: 135682 09f2a8bbedd8fc5b3db44cad299e1e9b Size/MD5 checksum: 1436104 08da269ec8259ead00b1c6fa4946fe5d Size/MD5 checksum: 1356252 4edbd816da55af2ed1b442cee599b38e mipsel architecture (MIPS (Little Endian)) Size/MD5 checksum: 1436276 4c612c84dc2582aa309639f59905c0fa Size/MD5 checksum: 135708 2f21d089db63a23c7cd19a9afad3b2ae Size/MD5 checksum: 134338 9ca8f44c8bfef60b7e143773b033f131 Size/MD5 checksum: 152314 14914c49f3f053273a6bb0110355a104 Size/MD5 checksum: 1357612 f5f95bc1374529043a55f2bcd09ab021 Size/MD5 checksum: 214848 51bf577ec7cded96309dd115643c6dbe Size/MD5 checksum: 678152 ff55955ee9df9264c9093563b160c4d9 Size/MD5 checksum: 756850 3cc935447b76a50319e8789536a9da16 Size/MD5 checksum: 131738 04c13c8568b54c366b89a32979eafe9f powerpc architecture (PowerPC) Size/MD5 checksum: 153474 ed53f886f5d7885ee090cf1e4d21124c Size/MD5 checksum: 970434 79062de7e5ff12a997b6b7b8a3538000 Size/MD5 checksum: 1406404 d9095111417711d8e0349bc9c6350359 Size/MD5 checksum: 138038 b8476508d3043c5cbadeb65fd714d18b Size/MD5 checksum: 1444486 140c09dc87544d5ad17928cfe636ce9c Size/MD5 checksum: 136900 0dc3553d639fccf0a046e2194c9798e3 Size/MD5 checksum: 133950 1383efe626c84680889bd9ed10e34646 Size/MD5 checksum: 225206 0f671c8aa9ac26d37dba279879a577fe Size/MD5 checksum: 621408 99e37bf125e6752deaa5e43073face38 s390 architecture (IBM S/390) Size/MD5 checksum: 674956 77eb588bcc256b8c8deac0888c943aa6 Size/MD5 checksum: 240012 41424b52d67ce57ec9ba7c766fefff3d Size/MD5 checksum: 137292 076f97dc2adeaf7bd50ae05d69b7ccc8 Size/MD5 checksum: 1431026 9fe325e746e648e44ea8dd5281b00b63 Size/MD5 checksum: 1447344 73803fc844bf00e8e10de5c623384271 Size/MD5 checksum: 151842 0f315ef8f7fe6760821041eb703571a5 Size/MD5 checksum: 907324 733552cb6eeeef66aee92df2e0313cbd Size/MD5 checksum: 133274 d2124662357a9ab65e80a39df176617b Size/MD5 checksum: 135946 2d1bc2dd26c33d13976c03bab726cb90 sparc architecture (Sun SPARC/UltraSPARC) Size/MD5 checksum: 134790 ad648350a34f40e1707cb9900d921a02 Size/MD5 checksum: 135994 bbdfc1b02895ba5840e1dfcb24e86455 Size/MD5 checksum: 229210 674972fbdae85fb9e27e96f17b152729 Size/MD5 checksum: 748414 cb6fa250ab3a8de01795e1c18d722ce9 Size/MD5 checksum: 1373300 a67833937bdc3c8582ad814c81062a5b Size/MD5 checksum: 1442124 233233f5f41d10c4f4569ba56bb972a5 Size/MD5 checksum: 132142 f073ab78d23ddf91d2a1aac3df82fd36 Size/MD5 checksum: 646830 2486a6445c65bd4ea472b191a2632dfd Size/MD5 checksum: 151616 5dcfbbe976ad2cc05a8f4e7ff0764b16 These files will probably be moved into the stable distribution on its next update. ----------------------------------------------------------------------------------For apt-get: deb https://www.debian.org/security/ stable/updates main For dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Upgrade the ruby1.8 software to mitigate a potential denial of service security flaw that has been detected in Debian environments.. ruby Package Update, Debian Security, Denial of Service. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Dec 13, 2006 Critical Debian
98

Red Hat Enterprise Linux 2.1-3 Moderate RHSA-2004:635-01 CGI DoS Issue

An updated ruby package that fixes a denial of service issue for the CGI instance is now available.. --------------------------------------------------------------------- Red Hat Security Advisory Synopsis: Updated ruby package fixes denial of service issue Advisory ID: RHSA-2004:635-01 Advisory URL: https://access.redhat.com/errata/RHSA-2004:635.html Issue date: 2004-12-13 Updated on: 2004-12-13 Product: Red Hat Enterprise Linux CVE Names: CAN-2004-0983 ---------------------------------------------------------------------1. Summary: An updated ruby package that fixes a denial of service issue for the CGI instance is now available. 2. Relevant releases/architectures: Red Hat Enterprise Linux AS (Advanced Server) version 2.1 - i386 Red Hat Enterprise Linux ES version 2.1 - i386 Red Hat Enterprise Linux WS version 2.1 - i386 Red Hat Enterprise Linux AS version 3 - i386, ia64, ppc, s390, s390x, x86_64 Red Hat Desktop version 3 - i386, x86_64 Red Hat Enterprise Linux ES version 3 - i386, ia64, x86_64 Red Hat Enterprise Linux WS version 3 - i386, ia64, x86_64 3. Problem description: Ruby is an interpreted scripting language for object-oriented programming. A flaw was dicovered in the CGI module of Ruby. If empty data is sent by the POST method to the CGI script which requires MIME type multipart/form-data, it can get stuck in a loop. A remote attacker could trigger this flaw and cause a denial of service. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CAN-2004-0983 to this issue. Users are advised to upgrade to this erratum package, which contains a backported patch to cgi.rb. 4. Solution: Before applying this update, make sure that all previously-released errata relevant to your system have been applied. Use Red Hat Network to download and update your packages. To launch the Red Hat Update Agent, use the following command: up2date Forinformation on how to install packages manually, refer to the following Web page for the System Administration or Customization guide specific to your system: https://docs.redhat.com/en/documentation/red_hat_enterprise_linux/10/ 5. Bug IDs fixed (http://bugzilla.redhat.com/ for more info): 138362 - CAN-2004-0983 Denial of Service in Ruby 6. RPMs required: Red Hat Enterprise Linux AS (Advanced Server) version 2.1: SRPMS: 1c9c90f0ab2a2d99aacb3ca4b14868c2 ruby-1.6.4-2.AS21.1.src.rpm i386: 984de6c8bd15661642cf96852eec8594 irb-1.6.4-2.AS21.1.i386.rpm 228efa4a0710253ed381d0cb7288654b ruby-1.6.4-2.AS21.1.i386.rpm d45f217ef393decea4bfc43822fad7b3 ruby-devel-1.6.4-2.AS21.1.i386.rpm e2eb1318a5a5c800024859f2b8e0bf02 ruby-docs-1.6.4-2.AS21.1.i386.rpm edea06b8999c1710ba66d6c580636934 ruby-libs-1.6.4-2.AS21.1.i386.rpm 83393ce9d2ffcaa9159c85fe2ea877f8 ruby-tcltk-1.6.4-2.AS21.1.i386.rpm Red Hat Enterprise Linux ES version 2.1: SRPMS: 1c9c90f0ab2a2d99aacb3ca4b14868c2 ruby-1.6.4-2.AS21.1.src.rpm i386: 984de6c8bd15661642cf96852eec8594 irb-1.6.4-2.AS21.1.i386.rpm 228efa4a0710253ed381d0cb7288654b ruby-1.6.4-2.AS21.1.i386.rpm d45f217ef393decea4bfc43822fad7b3 ruby-devel-1.6.4-2.AS21.1.i386.rpm e2eb1318a5a5c800024859f2b8e0bf02 ruby-docs-1.6.4-2.AS21.1.i386.rpm edea06b8999c1710ba66d6c580636934 ruby-libs-1.6.4-2.AS21.1.i386.rpm 83393ce9d2ffcaa9159c85fe2ea877f8 ruby-tcltk-1.6.4-2.AS21.1.i386.rpm Red Hat Enterprise Linux WS version 2.1: SRPMS: 1c9c90f0ab2a2d99aacb3ca4b14868c2 ruby-1.6.4-2.AS21.1.src.rpm i386: 984de6c8bd15661642cf96852eec8594 irb-1.6.4-2.AS21.1.i386.rpm 228efa4a0710253ed381d0cb7288654b ruby-1.6.4-2.AS21.1.i386.rpm d45f217ef393decea4bfc43822fad7b3 ruby-devel-1.6.4-2.AS21.1.i386.rpm e2eb1318a5a5c800024859f2b8e0bf02 ruby-docs-1.6.4-2.AS21.1.i386.rpm edea06b8999c1710ba66d6c580636934 ruby-libs-1.6.4-2.AS21.1.i386.rpm 83393ce9d2ffcaa9159c85fe2ea877f8 ruby-tcltk-1.6.4-2.AS21.1.i386.rpm Red Hat Enterprise Linux AS version3: SRPMS: 2f01d4591ff0fc041a544a7903b1808d ruby-1.6.8-9.EL3.3.src.rpm i386: f408badb2510f463b5c7872e69a90efc irb-1.6.8-9.EL3.3.i386.rpm 28689571cc04893ae54659d3bd50600f ruby-1.6.8-9.EL3.3.i386.rpm 6f58c9789a0215e620b07761864d49e1 ruby-devel-1.6.8-9.EL3.3.i386.rpm f2989414a97a41d85efa0386cfd6e63d ruby-docs-1.6.8-9.EL3.3.i386.rpm 645e9618992229a97d7e1de2dbb5c691 ruby-libs-1.6.8-9.EL3.3.i386.rpm f39588cdce470d68cf022ef3d4b7c17d ruby-mode-1.6.8-9.EL3.3.i386.rpm 58f1aaa85a9bb7ab46a85dd339b57004 ruby-tcltk-1.6.8-9.EL3.3.i386.rpm ia64: c592891960b9b93d210b6a83811c847f irb-1.6.8-9.EL3.3.ia64.rpm 7ac0fee7db9ee459261c63e93546983e ruby-1.6.8-9.EL3.3.ia64.rpm 33cfff0cc59df6f4bb99c6f10f7cfe42 ruby-devel-1.6.8-9.EL3.3.ia64.rpm 9646d7fac418cec6cbe503f80d61c0c4 ruby-docs-1.6.8-9.EL3.3.ia64.rpm ac7060784a405a2f2d32c400f20981a9 ruby-libs-1.6.8-9.EL3.3.ia64.rpm 76f778eddc74e655d417cae54b6911ed ruby-mode-1.6.8-9.EL3.3.ia64.rpm 3a61c755364d2c2fc40235ca174c4109 ruby-tcltk-1.6.8-9.EL3.3.ia64.rpm ppc: 2e78623c3afa71514c422606dcea0eb8 irb-1.6.8-9.EL3.3.ppc.rpm 1b494554641426f9cc469bdea01b3de2 ruby-1.6.8-9.EL3.3.ppc.rpm c12cf463dda2389c1865643c04a2f200 ruby-devel-1.6.8-9.EL3.3.ppc.rpm 77ebb60cb2b619401afb643b0e417797 ruby-docs-1.6.8-9.EL3.3.ppc.rpm b20f57bfcdff1732a82a8e3d5f939d80 ruby-libs-1.6.8-9.EL3.3.ppc.rpm 481812301c538d031458b33ac45377ba ruby-mode-1.6.8-9.EL3.3.ppc.rpm 1e68c1c503209d0a00b1d6c49e6f1cc7 ruby-tcltk-1.6.8-9.EL3.3.ppc.rpm s390: 417a2dae8057853d95c01752b855a85b irb-1.6.8-9.EL3.3.s390.rpm fdcecea5dc82c81fa2def2dd6882be61 ruby-1.6.8-9.EL3.3.s390.rpm 101677cc586a6e0ffa2243f4d44e1690 ruby-devel-1.6.8-9.EL3.3.s390.rpm b9c6e991d23c84cf983c0dda0218b056 ruby-docs-1.6.8-9.EL3.3.s390.rpm 551748a998a181b7aa87d64d97e959b2 ruby-libs-1.6.8-9.EL3.3.s390.rpm 331c153e38936930ee94724649129d4e ruby-mode-1.6.8-9.EL3.3.s390.rpm a01479d847ef53fbad6b7878ace4c326 ruby-tcltk-1.6.8-9.EL3.3.s390.rpm s390x: dc524b6c4b51ceb1d09fb9aa8f50bfb5 irb-1.6.8-9.EL3.3.s390x.rpm d067c97c8f1b63216608df91b79f3346 ruby-1.6.8-9.EL3.3.s390x.rpm ca5f632329db91a7d8b0905dfa0c4b98 ruby-devel-1.6.8-9.EL3.3.s390x.rpm 5d54cbc527a849531713ec8569b0b02a ruby-docs-1.6.8-9.EL3.3.s390x.rpm f184c8c8d7c83527fdc981577050416e ruby-libs-1.6.8-9.EL3.3.s390x.rpm 77d175cda989287452933c0f419a2a1e ruby-mode-1.6.8-9.EL3.3.s390x.rpm 69b9dd6dcea803c1e83339fa220ef441 ruby-tcltk-1.6.8-9.EL3.3.s390x.rpm x86_64: 8ba124cf1c2c7afb3ad723a20b7d5c0d irb-1.6.8-9.EL3.3.x86_64.rpm 08fbcb3dbbcc4f6007ff5bb553101e3a ruby-1.6.8-9.EL3.3.x86_64.rpm f919fb4d57ac9007db765d15169bb448 ruby-devel-1.6.8-9.EL3.3.x86_64.rpm 9c878a656d96677a21eaeffc98445862 ruby-docs-1.6.8-9.EL3.3.x86_64.rpm f1b99550c731bb413f8f22bf2af6da95 ruby-libs-1.6.8-9.EL3.3.x86_64.rpm 4900c7792a3c986a8cfcb1ea78ce6045 ruby-mode-1.6.8-9.EL3.3.x86_64.rpm 81255d577d75df37f37461811121aa0e ruby-tcltk-1.6.8-9.EL3.3.x86_64.rpm Red Hat Desktop version 3: SRPMS: 2f01d4591ff0fc041a544a7903b1808d ruby-1.6.8-9.EL3.3.src.rpm i386: f408badb2510f463b5c7872e69a90efc irb-1.6.8-9.EL3.3.i386.rpm 28689571cc04893ae54659d3bd50600f ruby-1.6.8-9.EL3.3.i386.rpm 6f58c9789a0215e620b07761864d49e1 ruby-devel-1.6.8-9.EL3.3.i386.rpm f2989414a97a41d85efa0386cfd6e63d ruby-docs-1.6.8-9.EL3.3.i386.rpm 645e9618992229a97d7e1de2dbb5c691 ruby-libs-1.6.8-9.EL3.3.i386.rpm f39588cdce470d68cf022ef3d4b7c17d ruby-mode-1.6.8-9.EL3.3.i386.rpm 58f1aaa85a9bb7ab46a85dd339b57004 ruby-tcltk-1.6.8-9.EL3.3.i386.rpm x86_64: 8ba124cf1c2c7afb3ad723a20b7d5c0d irb-1.6.8-9.EL3.3.x86_64.rpm 08fbcb3dbbcc4f6007ff5bb553101e3a ruby-1.6.8-9.EL3.3.x86_64.rpm f919fb4d57ac9007db765d15169bb448 ruby-devel-1.6.8-9.EL3.3.x86_64.rpm 9c878a656d96677a21eaeffc98445862 ruby-docs-1.6.8-9.EL3.3.x86_64.rpm f1b99550c731bb413f8f22bf2af6da95 ruby-libs-1.6.8-9.EL3.3.x86_64.rpm 4900c7792a3c986a8cfcb1ea78ce6045 ruby-mode-1.6.8-9.EL3.3.x86_64.rpm 81255d577d75df37f37461811121aa0e ruby-tcltk-1.6.8-9.EL3.3.x86_64.rpm Red Hat Enterprise Linux ES version3: SRPMS: 2f01d4591ff0fc041a544a7903b1808d ruby-1.6.8-9.EL3.3.src.rpm i386: f408badb2510f463b5c7872e69a90efc irb-1.6.8-9.EL3.3.i386.rpm 28689571cc04893ae54659d3bd50600f ruby-1.6.8-9.EL3.3.i386.rpm 6f58c9789a0215e620b07761864d49e1 ruby-devel-1.6.8-9.EL3.3.i386.rpm f2989414a97a41d85efa0386cfd6e63d ruby-docs-1.6.8-9.EL3.3.i386.rpm 645e9618992229a97d7e1de2dbb5c691 ruby-libs-1.6.8-9.EL3.3.i386.rpm f39588cdce470d68cf022ef3d4b7c17d ruby-mode-1.6.8-9.EL3.3.i386.rpm 58f1aaa85a9bb7ab46a85dd339b57004 ruby-tcltk-1.6.8-9.EL3.3.i386.rpm ia64: c592891960b9b93d210b6a83811c847f irb-1.6.8-9.EL3.3.ia64.rpm 7ac0fee7db9ee459261c63e93546983e ruby-1.6.8-9.EL3.3.ia64.rpm 33cfff0cc59df6f4bb99c6f10f7cfe42 ruby-devel-1.6.8-9.EL3.3.ia64.rpm 9646d7fac418cec6cbe503f80d61c0c4 ruby-docs-1.6.8-9.EL3.3.ia64.rpm ac7060784a405a2f2d32c400f20981a9 ruby-libs-1.6.8-9.EL3.3.ia64.rpm 76f778eddc74e655d417cae54b6911ed ruby-mode-1.6.8-9.EL3.3.ia64.rpm 3a61c755364d2c2fc40235ca174c4109 ruby-tcltk-1.6.8-9.EL3.3.ia64.rpm x86_64: 8ba124cf1c2c7afb3ad723a20b7d5c0d irb-1.6.8-9.EL3.3.x86_64.rpm 08fbcb3dbbcc4f6007ff5bb553101e3a ruby-1.6.8-9.EL3.3.x86_64.rpm f919fb4d57ac9007db765d15169bb448 ruby-devel-1.6.8-9.EL3.3.x86_64.rpm 9c878a656d96677a21eaeffc98445862 ruby-docs-1.6.8-9.EL3.3.x86_64.rpm f1b99550c731bb413f8f22bf2af6da95 ruby-libs-1.6.8-9.EL3.3.x86_64.rpm 4900c7792a3c986a8cfcb1ea78ce6045 ruby-mode-1.6.8-9.EL3.3.x86_64.rpm 81255d577d75df37f37461811121aa0e ruby-tcltk-1.6.8-9.EL3.3.x86_64.rpm Red Hat Enterprise Linux WS version 3: SRPMS: 2f01d4591ff0fc041a544a7903b1808d ruby-1.6.8-9.EL3.3.src.rpm i386: f408badb2510f463b5c7872e69a90efc irb-1.6.8-9.EL3.3.i386.rpm 28689571cc04893ae54659d3bd50600f ruby-1.6.8-9.EL3.3.i386.rpm 6f58c9789a0215e620b07761864d49e1 ruby-devel-1.6.8-9.EL3.3.i386.rpm f2989414a97a41d85efa0386cfd6e63d ruby-docs-1.6.8-9.EL3.3.i386.rpm 645e9618992229a97d7e1de2dbb5c691 ruby-libs-1.6.8-9.EL3.3.i386.rpm f39588cdce470d68cf022ef3d4b7c17d ruby-mode-1.6.8-9.EL3.3.i386.rpm 58f1aaa85a9bb7ab46a85dd339b57004 ruby-tcltk-1.6.8-9.EL3.3.i386.rpm ia64: c592891960b9b93d210b6a83811c847f irb-1.6.8-9.EL3.3.ia64.rpm 7ac0fee7db9ee459261c63e93546983e ruby-1.6.8-9.EL3.3.ia64.rpm 33cfff0cc59df6f4bb99c6f10f7cfe42 ruby-devel-1.6.8-9.EL3.3.ia64.rpm 9646d7fac418cec6cbe503f80d61c0c4 ruby-docs-1.6.8-9.EL3.3.ia64.rpm ac7060784a405a2f2d32c400f20981a9 ruby-libs-1.6.8-9.EL3.3.ia64.rpm 76f778eddc74e655d417cae54b6911ed ruby-mode-1.6.8-9.EL3.3.ia64.rpm 3a61c755364d2c2fc40235ca174c4109 ruby-tcltk-1.6.8-9.EL3.3.ia64.rpm x86_64: 8ba124cf1c2c7afb3ad723a20b7d5c0d irb-1.6.8-9.EL3.3.x86_64.rpm 08fbcb3dbbcc4f6007ff5bb553101e3a ruby-1.6.8-9.EL3.3.x86_64.rpm f919fb4d57ac9007db765d15169bb448 ruby-devel-1.6.8-9.EL3.3.x86_64.rpm 9c878a656d96677a21eaeffc98445862 ruby-docs-1.6.8-9.EL3.3.x86_64.rpm f1b99550c731bb413f8f22bf2af6da95 ruby-libs-1.6.8-9.EL3.3.x86_64.rpm 4900c7792a3c986a8cfcb1ea78ce6045 ruby-mode-1.6.8-9.EL3.3.x86_64.rpm 81255d577d75df37f37461811121aa0e ruby-tcltk-1.6.8-9.EL3.3.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from 7. References: https://www.cve.org/CVERecord?id=CAN-2004-0983 8. Contact: The Red Hat security contact is . More contact details at Copyright 2004 Red Hat, Inc. . Enhanced Python library from CentOS addresses security vulnerability impacting web frameworks on various platforms.. RedHat Ruby DenialOfService CGI, Denial of Service Fix, Red Hat Security Update. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Dec 14, 2004 Important Red Hat
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200