Get a Pentest and security assessment of your IT network.

Advisories

Mandriva Linux Security Advisory 2009-099

Mandriva Linux Security Advisory 2009-099 – The cache manager in the client in OpenAFS 1.0 through 1.4.8 and 1.5.0 through 1.5.58 on Linux allows remote attackers to cause a denial of service (system crash) via an RX response with a large error-code value that is interpreted as a pointer and dereferenced, related to use of the ERR_PTR macro. Heap-based buffer overflow in the cache manager in the client in OpenAFS 1.0 through 1.4.8 and 1.5.0 through 1.5.58 on Unix platforms allows remote attackers to cause a denial of service (system crash) or possibly execute arbitrary code via an RX response containing more data than specified in a request, related to use of XDR arrays. The updated packages have been patched to correct these issues.

 

You can download this advisory from the following link: https://packetstormsecurity.com/files/download/77060/MDVSA-2009-099.txt

Source: https://packetstormsecurity.com/files/77060/Mandriva-Linux-Security-Advisory-2009-099.html

Related posts
Advisories

Secunia Security Advisory 16074

Advisories

Secunia Security Advisory 19116

Advisories

Secunia Security Advisory 21833

Advisories

Ubuntu Security Notice 451-1