Alerts This Week
Warning Icon 1 631
Alerts This Week
Warning Icon 1 631

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -8 articles for you...
87

Debian 5.0 DSA-1752-1: WebCit Remote Code Execution Risk

Wilfried Goesgens discovered that WebCit, the web-based user interface for the Citadel groupware system, contains a format string vulnerability in the mini_calendar component, possibly allowing arbitrary code execution (CVE-2009-0364). . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - ------------------------------------------------------------------------ Debian Security Advisory DSA-1752-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Florian Weimer March 23, 2009 http://www.debian.org/security/faq - ------------------------------------------------------------------------ Package : webcit Vulnerability : format string vulnerability Problem type : remote Debian-specific: no CVE Id(s) : CVE-2009-0364 Wilfried Goesgens discovered that WebCit, the web-based user interface for the Citadel groupware system, contains a format string vulnerability in the mini_calendar component, possibly allowing arbitrary code execution (CVE-2009-0364). For the stable distribution (lenny), this problem has been fixed in version 7.37-dfsg-7. For the unstable distribution (sid), this problem has been fixed in version 7.38b-dfsg-2. We recommend that you upgrade your webcit packages. Upgrade instructions - -------------------- wget url will fetch the file for you dpkg -i file.deb will install the referenced file. If you are using the apt-get package manager, use the line for sources.list as given below: apt-get update will update the internal database apt-get upgrade will install corrected packages You may use an automated update by adding the resources from the footer to the proper configuration. Debian GNU/Linux 5.0 alias lenny - -------------------------------- Source archives: Size/MD5 checksum: 1192317 e3e47149a6553e43694e826f4885ba46 Size/MD5 checksum: 18735 f30f31bff85ef9cc40aba5bf5f3c1278 Size/MD5 checksum: 1253 f2b409fdfbde0c38af85070180a4321f alpha architecture (DECAlpha) Size/MD5 checksum: 547908 84e6dfa88008d2c51070803d0af04148 amd64 architecture (AMD x86_64 (AMD64)) Size/MD5 checksum: 509426 4e9e9b518be1a1e87cd08d0def32f612 arm architecture (ARM) Size/MD5 checksum: 505092 a3027a329b7a17166eddafe66eff5fde armel architecture (ARM EABI) Size/MD5 checksum: 504990 d6df9145a39f0be111667d14528a0a52 hppa architecture (HP PA RISC) Size/MD5 checksum: 527860 f46e26bac6a926b6b7a28f9f7557077b i386 architecture (Intel ia32) Size/MD5 checksum: 496954 43aac6120f334b606edddd9f9a182b44 ia64 architecture (Intel ia64) Size/MD5 checksum: 605578 2231aac4aaa8ef730485ea8d40c5019b mips architecture (MIPS (Big Endian)) Size/MD5 checksum: 512552 cc2904da25b4ec9e70d56b63d50e57aa mipsel architecture (MIPS (Little Endian)) Size/MD5 checksum: 511294 e0e4de0530cb84f0472765fb2bd6b62f powerpc architecture (PowerPC) Size/MD5 checksum: 522134 a8b1970f336c836884eddb62c614f436 s390 architecture (IBM S/390) Size/MD5 checksum: 505406 621a33e619037bd739bf45451ef589eb sparc architecture (Sun SPARC/UltraSPARC) Size/MD5 checksum: 507950 1d22cf3b4f1faf910d031acb6504bfae These files will probably be moved into the stable distribution on its next update. - --------------------------------------------------------------------------------- For apt-get: deb https://www.debian.org/security/ stable/updates main For dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. Package info: `apt-cache show ' and https://www.debian.org/distrib/packages . Enhance webcit libraries to rectify formatting string vulnerabilities that could enable remote code execution in Debian environments.. WebCit Security, Debian Update, Format String Flaw, Code Execution. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Mar 23, 2009 Important Debian
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here