---------------------------------------------------------------------- Secunia customers receive relevant and filtered advisories. Delivery is done via different channels including SMS, Email, Web, and https based XML feed. http://corporate.secunia.com/trial/38/request/ ---------------------------------------------------------------------- TITLE: Mandriva update for krb5 SECUNIA ADVISORY ID: SA24785 VERIFY ADVISORY: http://secunia.com/advisories/24785/ CRITICAL: Moderately critical IMPACT: Security Bypass, DoS, System access WHERE: >From remote OPERATING SYSTEM: Mandriva Linux 2007 http://secunia.com/product/12165/ Mandriva Linux 2006 http://secunia.com/product/9020/ DESCRIPTION: Mandriva has issued an update for krb5. This fixes some vulnerabilities, which can be exploited by malicious users to cause a DoS or compromise a vulnerable system and by malicious people to bypass certain security restrictions. For more information: SA24740 SOLUTION: Apply updated packages. Mandriva Linux 2006 f76875e9839deaf87628a3c7e0a81632 2006.0/i586/ftp-client-krb5-1.4.2-2.2.20060mdk.i586.rpm d2448392e0c350d3ca488d2e73e57f6d 2006.0/i586/ftp-server-krb5-1.4.2-2.2.20060mdk.i586.rpm 42e6330603ecaed04ea0649f7050a4c1 2006.0/i586/krb5-server-1.4.2-2.2.20060mdk.i586.rpm adadd1cad1f1bc5f01809a508d2b8fd1 2006.0/i586/krb5-workstation-1.4.2-2.2.20060mdk.i586.rpm ab8987522600f8e629901563e3be90c2 2006.0/i586/libkrb53-1.4.2-2.2.20060mdk.i586.rpm 7d70bb7bb821c3e91e9d062330528815 2006.0/i586/libkrb53-devel-1.4.2-2.2.20060mdk.i586.rpm f4104abdc22e16574bcddde0a178d935 2006.0/i586/telnet-client-krb5-1.4.2-2.2.20060mdk.i586.rpm 110f54ead0abc486faa1f2b47057122b 2006.0/i586/telnet-server-krb5-1.4.2-2.2.20060mdk.i586.rpm 8cc03b4b7cc34cb3c2b53e4f9f9b73dd 2006.0/SRPMS/krb5-1.4.2-2.2.20060mdk.src.rpm Mandriva Linux 2006/X86_64 0f2d7c3fc50552aa586dd6c5b12a5b85 2006.0/x86_64/ftp-client-krb5-1.4.2-2.2.20060mdk.x86_64.rpm bbd94e005c67b4b94cf544b736028416 2006.0/x86_64/ftp-server-krb5-1.4.2-2.2.20060mdk.x86_64.rpm f406f21d7b210ae6d489c77c15d34a60 2006.0/x86_64/krb5-server-1.4.2-2.2.20060mdk.x86_64.rpm 9d00284ec202ed44e63266698a1d85e6 2006.0/x86_64/krb5-workstation-1.4.2-2.2.20060mdk.x86_64.rpm 8ca28a4cc9eb7f292a1d73b975740fab 2006.0/x86_64/lib64krb53-1.4.2-2.2.20060mdk.x86_64.rpm 565b9a19c5cf7b94dcf28e1bc1e21d2e 2006.0/x86_64/lib64krb53-devel-1.4.2-2.2.20060mdk.x86_64.rpm 5c931d032ce9d3ed91a4e4b04f20bfb8 2006.0/x86_64/telnet-client-krb5-1.4.2-2.2.20060mdk.x86_64.rpm 27b39ae245a43322d4abbb4191da56ac 2006.0/x86_64/telnet-server-krb5-1.4.2-2.2.20060mdk.x86_64.rpm 8cc03b4b7cc34cb3c2b53e4f9f9b73dd 2006.0/SRPMS/krb5-1.4.2-2.2.20060mdk.src.rpm Mandriva Linux 2007 6dfbc8eef1479cce19c957bbed4457aa 2007.0/i586/ftp-client-krb5-1.4.3-6.1mdv2007.0.i586.rpm 54ff3fe8a117603f8700e96f34a1b33a 2007.0/i586/ftp-server-krb5-1.4.3-6.1mdv2007.0.i586.rpm 2caf0205301d01a6be4ad1506944ba39 2007.0/i586/krb5-server-1.4.3-6.1mdv2007.0.i586.rpm b7b4a4f4b1fa356ca6468ffece1dfce8 2007.0/i586/krb5-workstation-1.4.3-6.1mdv2007.0.i586.rpm ab253c6ad6ecd7c15c1d150f5ed34091 2007.0/i586/libkrb53-1.4.3-6.1mdv2007.0.i586.rpm f192ef28bb37286be1e291761d3ced9c 2007.0/i586/libkrb53-devel-1.4.3-6.1mdv2007.0.i586.rpm d208fcaa1c5069c657815061ed3b2687 2007.0/i586/telnet-client-krb5-1.4.3-6.1mdv2007.0.i586.rpm 0f95ea728eca0962591d142c74238700 2007.0/i586/telnet-server-krb5-1.4.3-6.1mdv2007.0.i586.rpm 87c94334c61bc67e3ef95e930ee72149 2007.0/SRPMS/krb5-1.4.3-6.1mdv2007.0.src.rpm Mandriva Linux 2007/X86_64 02a5ebc046e0cb9133162ce621fb3b1f 2007.0/x86_64/ftp-client-krb5-1.4.3-6.1mdv2007.0.x86_64.rpm 0a2b6ae87af0ed4ec445b65531d3408a 2007.0/x86_64/ftp-server-krb5-1.4.3-6.1mdv2007.0.x86_64.rpm e2958d861bb45c52be5cad5bbf08ef35 2007.0/x86_64/krb5-server-1.4.3-6.1mdv2007.0.x86_64.rpm fac1f28b2c5a2065ffa772e2e1cb6d70 2007.0/x86_64/krb5-workstation-1.4.3-6.1mdv2007.0.x86_64.rpm 36bcd1fb2e859c637256680ca4fc468b 2007.0/x86_64/lib64krb53-1.4.3-6.1mdv2007.0.x86_64.rpm 7d936ed2b1441714205e987bd63a2ec5 2007.0/x86_64/lib64krb53-devel-1.4.3-6.1mdv2007.0.x86_64.rpm 4754b9b3ce36cad7d3dfa852a03d7fe0 2007.0/x86_64/telnet-client-krb5-1.4.3-6.1mdv2007.0.x86_64.rpm 71832a8dcf70b4e46b0bb9bc3343860d 2007.0/x86_64/telnet-server-krb5-1.4.3-6.1mdv2007.0.x86_64.rpm 87c94334c61bc67e3ef95e930ee72149 2007.0/SRPMS/krb5-1.4.3-6.1mdv2007.0.src.rpm ORIGINAL ADVISORY: http://www.mandriva.com/security/advisories?name=MDKSA-2007:077 OTHER REFERENCES: SA24740: http://secunia.com/advisories/24740/ ---------------------------------------------------------------------- About: This Advisory was delivered by Secunia as a free service to help everybody keeping their systems up to date against the latest vulnerabilities. Subscribe: http://secunia.com/secunia_security_advisories/ Definitions: (Criticality, Where etc.) http://secunia.com/about_secunia_advisories/ Please Note: Secunia recommends that you verify all advisories you receive by clicking the link. Secunia NEVER sends attached files with advisories. Secunia does not advise people to install third party patches, only use those supplied by the vendor. ---------------------------------------------------------------------- Unsubscribe: Secunia Security Advisories http://secunia.com/sec_adv_unsubscribe/?email=packet%40packetstormsecurity.org ----------------------------------------------------------------------