French Security Incident Response Team

FrSIRT   

      

   français French  anglais English

 
Vulnerability Notification Service
FrSIRT Partner Program
14-Day Free Trial
Contact FrSIRT Sales Dept.
 

Security Advisories
Linux Security Advisories
Virus and Threats Advisories
Latest Security News
Latest Zero Day Threats
Advisories and vulnerabilities by Vendor
Advisories and vulnerabilities by Keyword
 

Report a security incident
Report a new vulnerability
Security Mailinglist
 

Our Company
FrSIRT in the News
Advertise on FrSIRT.COM
Security Researchers and Exploit Writers Jobs
Contact Us

Fedora Security Update Fixes Python "repr()" Function Buffer Overflow Vulnerability


Title : Fedora Security Update Fixes Python "repr()" Function Buffer Overflow Vulnerability
Advisory ID : FrSIRT/ADV-2006-4373
CVE ID : CVE-2006-4980
Rated as : Moderate Risk 
Remotely Exploitable : Yes
Locally Exploitable : Yes
Release Date : 2006-11-07

Advisory Details

 
  Description
  Affected Products
  Solution
  References
Technical Description    Receive FrSIRT alerts in a Text format  Receive FrSIRT alerts in a PDF format  Receive FrSIRT alerts in an XML format  Receive FrSIRT notifications by SMS 

Fedora has released updated packages to address a vulnerability identified in Python [...]

Solution

Upgrade the affected packages :

http://download.fedora.redhat.com/pub/fedora/linux/core/updates/6/

031d7d3698f24d1aa09d3a19c981a3ccbaf48eec SRPMS/python-2.4.4-1.fc6.src.rpm
031d7d3698f24d1aa09d3a19c981a3ccbaf48eec noarch/python-2.4.4-1.fc6.src.rpm
c01c90c86c458f22f17ea9a2d3b1109c7a85370f ppc/python-devel-2.4.4-1.fc6.ppc.rpm
1263e77c467042989eca678eb4e0f6f726cb99fa ppc/python-2.4.4-1.fc6.ppc.rpm
38d13b8f5209b6f4facf5ff42282113501378999 ppc/tkinter-2.4.4-1.fc6.ppc.rpm
e2c1dd55a6be0e3faaa9b28d2c01eb1eb95f6e72 ppc/python-tools-2.4.4-1.fc6.ppc.rpm
c7e79048d051bff240688d96ad9d12f90a66c6a4 ppc/debug/python-debuginfo-2.4.4-1.fc6.ppc.rpm
aede3231bc8d5af4cabb37c7c36ecd8f10d66316 x86_64/debug/python-debuginfo-2.4.4-1.fc6.x86_64.rpm
20dfab8c8a2317931bf44a2094b0069ef69dab6e x86_64/python-2.4.4-1.fc6.x86_64.rpm
753efc99c31c15c52a1dac4f7f844efb38980989 x86_64/tkinter-2.4.4-1.fc6.x86_64.rpm
5200d817ce411e4e05798e8c7c50b1b25e5b8c35 x86_64/python-devel-2.4.4-1.fc6.x86_64.rpm
9647258ffa97dc602da172cea339e92082e31a88 x86_64/python-tools-2.4.4-1.fc6.x86_64.rpm
9d650d0e873fc1d1b30dfd4fd1de04963f032dbd i386/python-tools-2.4.4-1.fc6.i386.rpm
3518adef83e0d67132fe267f1b5c0180a2936721 i386/debug/python-debuginfo-2.4.4-1.fc6.i386.rpm
68efd05890e856d6d9899449e7aef1f8f03e3367 i386/tkinter-2.4.4-1.fc6.i386.rpm
c33670a98fba4ad1d5397595bfc8507e03bc4fe0 i386/python-devel-2.4.4-1.fc6.i386.rpm
6aedf1db65bcfc3bfaa663007e4a994a4dbca770 i386/python-2.4.4-1.fc6.i386.rpm

http://download.fedora.redhat.com/pub/fedora/linux/core/updates/5/

6b53ab4cf428d8498cbabfd56d1411f7b159fc45 SRPMS/python-2.4.3-9.FC5.src.rpm
6b53ab4cf428d8498cbabfd56d1411f7b159fc45 noarch/python-2.4.3-9.FC5.src.rpm
252fc281a988cf5afbf69dfc50c2ae919acf5891 ppc/python-devel-2.4.3-9.FC5.ppc.rpm
c15aef5e65a433b97c77f1b145cd2518ed66634c ppc/python-2.4.3-9.FC5.ppc.rpm
a1102abb3b56987780566f1b801d9b418ce9358c ppc/python-tools-2.4.3-9.FC5.ppc.rpm
d2cbb36949f52f3a59f11307fa6e2bb8a34972d4 ppc/tkinter-2.4.3-9.FC5.ppc.rpm
b262c8d78ebc7a275f3cb20edc9dbbf9561d24cb ppc/debug/python-debuginfo-2.4.3-9.FC5.ppc.rpm
e9cc77cff0c9b18ca55a12c62e74b8a49661cab8 x86_64/python-tools-2.4.3-9.FC5.x86_64.rpm
e6a1bb215ccb68b685782903b9ce998f9c922b88 x86_64/debug/python-debuginfo-2.4.3-9.FC5.x86_64.rpm
4232e75b936751533bb5d37fa9a7466ba52decd3 x86_64/python-2.4.3-9.FC5.x86_64.rpm
bbb77703e0fcf36e3833d20082f8cf4251b52565 x86_64/tkinter-2.4.3-9.FC5.x86_64.rpm
a8e714c12fa4d94564733bc6d61fac00b8dcb123 x86_64/python-devel-2.4.3-9.FC5.x86_64.rpm
ee26d7e0e81bfd41abf788a0e2674905f26a1524 i386/python-tools-2.4.3-9.FC5.i386.rpm
7d03e96dfe92652d623cb97d0653858ffa43c328 i386/tkinter-2.4.3-9.FC5.i386.rpm
0c309e3f60f755963e54760a1a350171e0f6267e i386/python-devel-2.4.3-9.FC5.i386.rpm
0a806cb258acfcda852ac1cfb4280bf7e6e46823 i386/debug/python-debuginfo-2.4.3-9.FC5.i386.rpm
89882d4b2fed5c964ebc639752107d29e4cea5bd i386/python-2.4.3-9.FC5.i386.rpm

ChangeLog

2006-11-07 : Initial release

Vulnerability Management

Subscribe to FrSIRT VNS and receive real-time e-mail and SMS alerts when new vulnerabilities, exploits, or patches relevant to your systems and network configurations are available.

Feedback

If you have additional information or corrections for this security advisory please submit them via our contact form or by email to updates@frsirt.com.


 
 

Search

      

Mailinglist

    
 

Apple iPhone and iPod touch Multiple Code Execution Vulnerabilities

Apple Xcode Code Execution and Information Disclosure Vulnerabilities

Apple TV Data Processing Remote Code Execution Vulnerabilities

Apple Mac OS X Command Execution and Security Bypass Issues

Apple Safari for Mac OS X Remote Code Execution Vulnerability

Apple Mac OS X ARDAgent Local Privilege Escalation Vulnerability

Apple Safari Code Execution and Information Disclosure Vulnerabilities

Cisco Products Remote DNS Cache Poisoning Vulnerability

Cisco Wide Area Application Services CUPS Remote Vulnerability

Cisco UCM Denial of Service and Authentication Bypass Vulnerabilities

Cisco Intrusion Prevention System Jumbo Frame Vulnerability

Cisco VPN Client Deterministic Network Enhancer Privilege Escalation

Cisco Products SNMPv3 Authentication Packets Vulnerabilities

Cisco PIX and ASA Security Bypass and Denial of Service

IBM WebSphere Application Server Security Exposure Vulnerabilities

IBM AIX DNS Transaction ID Remote Cache Poisoning Vulnerability

IBM Tivoli Directory Server Entry Handling Double-Free Vulnerability

IBM AFP Viewer Plug-In "SRC" Property Buffer Overflow Vulnerability

IBM Hardware Management Console Cross Site Scripting Vulnerabilities

IBM OS/400 BrSmRcvAndCheck Local Buffer Overflow Vulnerability

IBM DB2 Multiple Buffer Overflow and Security Bypass Vulnerabilities

Copyright 2003-2008 © FrSIRT.COM - Privacy Policy