French Security Incident Response Team

Termes et NomenclatureDéfinition des niveaux de risquesConfidentialité et Charte de confianceService FrSIRT VNS

FrSIRT   

      

   français Français   anglais English

 
Veille en vulnérabilités
FrSIRT VNS Publisher
Demande d'informations
Période d'essai gratuite
 

Bulletins et avis de vulnérabilités
Bulletins de sécurité et avis de vulnérabilités Linux
Virus & AlertesMenaces en temps réel / Blog Sécurité Informatique
Attaques Zero-day (0-jour)
Rechercher une vulnérabilité
 

Déclarer un incident de sécurité
Mailing liste Newsletter Sécurité informatique
 

A propos de FrSIRT / ADConsulting
Nos Clients & RéférencesFrSIRT Dans la presse
Espace Annonceurs
Offre d'emploi et stage Sécurité Informatique
Nous contacter

Mandriva Security Update Fixes perl-Tk Code Execution Vulnerability


Date de Publication : 2008-03-27 © FrSIRT.COM
Titre : Mandriva Security Update Fixes perl-Tk Code Execution Vulnerability
Identifiant : FrSIRT/AVIS-2008-1002
CVE ID : CVE-2006-4484
Risque : Modéré (2/4) -
Exploitable à distance : Oui
Exploitable en local : Oui
 

En savoir plus

 
  Description
  Produits affectés
  Solution
  Références
Description Technique    TXT (Plain Text)  PDF (Portable Document Format)  XML (Extensible Markup Language)  SMS (Short Message Service) 

Une vulnérabilité a été identifiée dans Mandriva, elle pourrait être exploitée par des attaquants afin de causer un déni de service [...]

Solution

Installer les mises à jour :

Mandriva Linux 2007.0:
617890813c4fbde09881f93318d8fb0c 2007.0/i586/perl-Tk-804.027-7.1mdv2007.0.i586.rpm
e9a52dbb6ae3c66329e8804db7540255 2007.0/i586/perl-Tk-devel-804.027-7.1mdv2007.0.i586.rpm
62ec6966a6e1b75a32cc69ba429383d9 2007.0/i586/perl-Tk-doc-804.027-7.1mdv2007.0.i586.rpm
35c904dd5d8fdfcb1289cff6f5683ffd 2007.0/SRPMS/perl-Tk-804.027-7.1mdv2007.0.src.rpm

Mandriva Linux 2007.0/X86_64:
1c90b8668b367864a7a745e7c5fe7a3e 2007.0/x86_64/perl-Tk-804.027-7.1mdv2007.0.x86_64.rpm
94e06f5c06bdaaca2387d78f883bd42b 2007.0/x86_64/perl-Tk-devel-804.027-7.1mdv2007.0.x86_64.rpm
c716b24bd69c972f60d8a77a297571fb 2007.0/x86_64/perl-Tk-doc-804.027-7.1mdv2007.0.x86_64.rpm
35c904dd5d8fdfcb1289cff6f5683ffd 2007.0/SRPMS/perl-Tk-804.027-7.1mdv2007.0.src.rpm

Mandriva Linux 2007.1:
ccd8c93b6638f18f44956e3a7976843f 2007.1/i586/perl-Tk-804.027-7.1mdv2007.1.i586.rpm
6f36c284047f89d996039a4890ef24a5 2007.1/i586/perl-Tk-devel-804.027-7.1mdv2007.1.i586.rpm
ea68a42b822f65622c08401438e18f3a 2007.1/i586/perl-Tk-doc-804.027-7.1mdv2007.1.i586.rpm
ba77b6b3ba20990bb584112edd8a8a11 2007.1/SRPMS/perl-Tk-804.027-7.1mdv2007.1.src.rpm

Mandriva Linux 2007.1/X86_64:
64c30b9a6521ee330c3ab503c7af4a81 2007.1/x86_64/perl-Tk-804.027-7.1mdv2007.1.x86_64.rpm
3af0d32f148366759bc38b6ebe9d0ed2 2007.1/x86_64/perl-Tk-devel-804.027-7.1mdv2007.1.x86_64.rpm
a7deec6b34f5ae1b4a2415f184fce3f6 2007.1/x86_64/perl-Tk-doc-804.027-7.1mdv2007.1.x86_64.rpm
ba77b6b3ba20990bb584112edd8a8a11 2007.1/SRPMS/perl-Tk-804.027-7.1mdv2007.1.src.rpm

Mandriva Linux 2008.0:
c0640864a0032ccb32e154b1eeb31e46 2008.0/i586/perl-Tk-804.027-7.1mdv2008.0.i586.rpm
cc4587989566c6cc9834aa766a97de70 2008.0/i586/perl-Tk-devel-804.027-7.1mdv2008.0.i586.rpm
bbff9b65728eb4be47ffd4fdde627364 2008.0/i586/perl-Tk-doc-804.027-7.1mdv2008.0.i586.rpm
08a52245b151a07de2f1ff578f5b94d4 2008.0/SRPMS/perl-Tk-804.027-7.1mdv2008.0.src.rpm

Mandriva Linux 2008.0/X86_64:
4784cc19583484e691657d027557e273 2008.0/x86_64/perl-Tk-804.027-7.1mdv2008.0.x86_64.rpm
e2cb98338952dbcf381ac41755c5bbcf 2008.0/x86_64/perl-Tk-devel-804.027-7.1mdv2008.0.x86_64.rpm
8f5e35f7f7ddffe3a0bc557fc7124f97 2008.0/x86_64/perl-Tk-doc-804.027-7.1mdv2008.0.x86_64.rpm
08a52245b151a07de2f1ff578f5b94d4 2008.0/SRPMS/perl-Tk-804.027-7.1mdv2008.0.src.rpm

Corporate 3.0:
664977154c6d3a6cf097535e4e4cffb6 corporate/3.0/i586/perl-Tk-800.024-4.1.C30mdk.i586.rpm
7ac67c7e4768fda4bc24f64f46de052f corporate/3.0/i586/perl-Tk-devel-800.024-4.1.C30mdk.i586.rpm
86a465731211ca4f8b5eb06736580f7a corporate/3.0/i586/perl-Tk-doc-800.024-4.1.C30mdk.i586.rpm
efeb7e3c708c1891dca5291e89a90ffb corporate/3.0/SRPMS/perl-Tk-800.024-4.1.C30mdk.src.rpm

Corporate 3.0/X86_64:
e273a52a8ce4b4df938f6f1a332c5a9a corporate/3.0/x86_64/perl-Tk-800.024-4.1.C30mdk.x86_64.rpm
c626b81ebcca6319a493da41daa64c59 corporate/3.0/x86_64/perl-Tk-devel-800.024-4.1.C30mdk.x86_64.rpm
59ba63dec80a1409340053b8d036c16a corporate/3.0/x86_64/perl-Tk-doc-800.024-4.1.C30mdk.x86_64.rpm
efeb7e3c708c1891dca5291e89a90ffb corporate/3.0/SRPMS/perl-Tk-800.024-4.1.C30mdk.src.rpm

Corporate 4.0:
40a305aea1ccccac122eeaa29623fc9d corporate/4.0/i586/perl-Tk-804.027-4.1.20060mlcs4.i586.rpm
500f724e392a66d8b77883ef45bb0d27 corporate/4.0/i586/perl-Tk-devel-804.027-4.1.20060mlcs4.i586.rpm
c37c8e2110050388d91fb82f23bc365a corporate/4.0/i586/perl-Tk-doc-804.027-4.1.20060mlcs4.i586.rpm
57e6e403c1e65b45c85ea086a3dcf861 corporate/4.0/SRPMS/perl-Tk-804.027-4.1.20060mlcs4.src.rpm

Corporate 4.0/X86_64:
33856879c459ad1b8d105860d6a93bdf corporate/4.0/x86_64/perl-Tk-804.027-4.1.20060mlcs4.x86_64.rpm
cd1461f7f031beea459abbcecfd74780 corporate/4.0/x86_64/perl-Tk-devel-804.027-4.1.20060mlcs4.x86_64.rpm
fa087aea0cf09672dd2a25e57461ab15 corporate/4.0/x86_64/perl-Tk-doc-804.027-4.1.20060mlcs4.x86_64.rpm
57e6e403c1e65b45c85ea086a3dcf861 corporate/4.0/SRPMS/perl-Tk-804.027-4.1.20060mlcs4.src.rpm

Historique

2008-03-27 : Version Initiale

Recevez les bulletins FrSIRT

Le service FrSIRT VNS permet aux professionnels de la sécurité (RSSI, DSI, administrateurs et consultants) de recevoir en temps-réel, par email, SMS et flux RSS/XML, des bulletins de vulnérabilités complets, détaillés et personnalisés.


 
 

Recherche    

      

Newsletter    

    
 

Apple Safari URL Spoofing and Denial of Service

Apple Safari Code Execution and Cross Site Scripting Vulnerabilities

Apple QuickTime Multiple File Handling Code Execution Vulnerabilities

Apple Safari Memory Corruption and Address Bar Spoofing Vulnerabilities

Apple Aperture and iPhoto DNG Image Buffer Overflow Vulnerability

Apple AirPort Extreme AFP Request Denial of Service Vulnerability

Apple Mac OS X Command Execution Vulnerabilities

Sun Java System AS and WS JSP Source Code Disclosure Vulnerability

Sun Solaris Tcl GUI Toolkit Library Code Execution Vulnerabilities

Sun Java System Web Server Cross Site Scripting Vulnerability

Sun Ray Server Kiosk Mode Root Privilege Escalation Vulnerability

Sun Solaris TCP Implementation Remote Denial of Service Vulnerability

Sun Solaris Update Fixes OpenSSH Information Disclosure

Sun Solaris SCTP Protocol Remote Denial of Service

IBM Rational Build Forge Remote Denial of Service Vulnerability

IBM WebSphere Application Server Java Plugin Vulnerability

IBM Lotus Expeditor "cai:" URI Handler Command Injection Vulnerability

IBM DB2 Universal Database Local Privilege Escalation Vulnerabilities

IBM HTTP Server Multiple Cross Site Scripting Vulnerabilities

IBM Lotus Notes Keyview Module Remote Buffer Overflow Vulnerabilities

IBM WebSphere Application Server Security Exposure Vulnerability

  FrSIRT.COM © Tous droits réservés 2003-2008 - Notice Légale  sécurité informatique