Alerts This Week
Warning Icon 1 631
Alerts This Week
Warning Icon 1 631

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -8 articles for you...
98

Red Hat: RHSA-2000:078-02 Moderate: Traceroute Root Exploit Fix

A root exploit and several additional bugs in traceroute have beencorrected.. ` --------------------------------------------------------------------- Red Hat, Inc. Security Advisory Synopsis: traceroute setuid root exploit with multiple -g options Advisory ID: RHSA-2000:078-02 Issue date: 2000-10-06 Updated on: 2000-10-06 Product: Red Hat Linux Keywords: traceroute setuid root exploit Cross references: N/A --------------------------------------------------------------------- 1. Topic: a root exploit and several additional bugs in traceroute have been corrected. 2. Relevant releases/architectures: Red Hat Linux 5.0 - i386, alpha, sparc Red Hat Linux 5.1 - i386, alpha, sparc Red Hat Linux 5.2 - i386, alpha, sparc Red Hat Linux 6.0 - i386, alpha, sparc Red Hat Linux 6.1 - i386, alpha, sparc Red Hat Linux 6.2 - i386, alpha, sparc 3. Problem description: A root exploit due to a segfault when using multiple -g options is fixed for Red Hat Linux 6.x and Red Hat Linux 5.x. A potential denial-of-service attack is alleviated by enforcing a maximum buffer size of 64Kb. On Red Hat Linux 6.x, loose source routing (LSRR) now works correctly. 4. Solution: For each RPM for your particular architecture, run: rpm -Fvh [filename] where filename is the name of the RPM. 5. Bug IDs fixed ( for more info): 18466 - traceroute: local root exploit now exists 13466 - segfault while parsing multiple -g arguments 15917 - Maksimum packetlength checked badly (Local DoS) 16281 - traceroute LSRR broken 6. RPMs required: Red Hat Linux 5.x: alpha: sparc: i386: sources: Red Hat Linux 6.x: alpha: sparc: i386: sources: 7. Verification: MD5 sum Package Name -------------------------------------------------------------------------- 1fe1fb918271526d5d4e22046f1da776 5.2/SRPMS/traceroute-1.4a5-24.5x.src.rpm 25a92211082e65df9f89fd71ac7a6888 5.2/alpha/traceroute-1.4a5-24.5x.alpha.rpm 2fc1c66152f3fbd723b695472aadc0a6 5.2/i386/traceroute-1.4a5-24.5x.i386.rpm d60c337c3fa3d23ba2c1cde082c8fee5 5.2/sparc/traceroute-1.4a5-24.5x.sparc.rpm 9fc2151d7cca01185add0ed085efcde0 6.2/SRPMS/traceroute-1.4a5-24.6x.src.rpm f279d9e415a7d806daae86e8112fe8c6 6.2/alpha/traceroute-1.4a5-24.6x.alpha.rpm 49bd824f9f4784ce9c45fa54285c7aa0 6.2/i386/traceroute-1.4a5-24.6x.i386.rpm 498a1e08221e1d9e0115edb7f34ecef9 6.2/sparc/traceroute-1.4a5-24.6x.sparc.rpm These packages are GPG signed by Red Hat, Inc. for security. Our key is available at: You can verify each package with the following command: rpm --checksig If you only wish to verify that each package has not been corrupted or tampered with, examine only the md5sum with the following command: rpm --checksig --nogpg 8. References: Thanks to Pekka Savola for discovering the flaw. See for a complete summary of the flaw. Copyright(c) 2000 Red Hat, Inc. `. Red Hat has issued an alert on a significant security vulnerability in the traceroute utility due to multiple -g flags, posing a denial-of-service risk. A fix is available.. traceroute exploit, Red Hat Linux fix, security advisory, DOS mitigation, setuid exploit. . LinuxSecurity.com Team

Calendar 2 Oct 06, 2000 Red Hat
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here