Contact | Site en Français               

 


 

Vulnerabilities & Threats

 
  VUPEN Security Advisories
  Linux Security Advisories

  Malware Advisories

  Security Research
  Threat Watch Blog
  Zero-Day Monitor
  Search Engine
  Mailing List & RSS
 
   

>> Fedora Security Update Fixes GnuTLS Denial of Service Vulnerabilities

Title : Fedora Security Update Fixes GnuTLS Denial of Service Vulnerabilities
VUPEN ID : VUPEN/ADV-2006-0517
CVE ID : CVE-2006-0645
Rated as : Moderate Risk 
Remotely Exploitable : Yes
Locally Exploitable : Yes
Release Date : 2006-02-12


Technical Description    Receive VUPEN Security alerts in a Text format  Receive VUPEN Security alerts in a PDF format  Receive VUPEN Security alerts in an XML format  Receive VUPEN Security notifications by SMS 

Fedora has released updated packages to address multiple vulnerabilities identified in GnuTLS. These flaws could be exploited by remote attackers to cause a denial of service. For additional information, see : VUPEN/ADV-2006-0496

Affected Products

Fedora Core 4

Solution

Upgrade the affected packages :

http://download.fedora.redhat.com/pub/fedora/linux/core/updates/4/

2a8248d58b4ed48caaf2ad4d3a872f1a58657682 SRPMS/gnutls-1.0.25-2.FC4.src.rpm
655bde476235bdf107ce3944ed43bac9a6fd6b20 ppc/gnutls-1.0.25-2.FC4.ppc.rpm
044213c3c5c9cc0a4ff6f035d4c133867ea71885 ppc/gnutls-devel-1.0.25-2.FC4.ppc.rpm
2019a56594c39f6f9332378693165e0050290ecb ppc/debug/gnutls-debuginfo-1.0.25-2.FC4.ppc.rpm
7099773b5c3381fde578bf9fcd0c443c78a52fea x86_64/gnutls-1.0.25-2.FC4.x86_64.rpm
8e566d9b5fa64c18238fcaea8b8008fa5917c1eb x86_64/gnutls-devel-1.0.25-2.FC4.x86_64.rpm
23f7f150cf0e80cce32d99e05d4bd32394e9b549 x86_64/debug/gnutls-debuginfo-1.0.25-2.FC4.x86_64.rpm
a6a831200c507c25026103ba1a60040caef2260e i386/gnutls-1.0.25-2.FC4.i386.rpm
c8aa55671bc3e4d4f7bd8e3620ef50911db6f949 i386/gnutls-devel-1.0.25-2.FC4.i386.rpm
8c54d3ff9cba0d5a837e8c509c5ae28b3f82f2fd i386/debug/gnutls-debuginfo-1.0.25-2.FC4.i386.rpm

References

http://www.vupen.com/english/advisories/2006/0517
http://www.frsirt.com/english/reference/5709

ChangeLog

2006-02-12 : Initial release

Vulnerability Management

Subscribe to VUPEN VNS and receive real-time e-mail and SMS alerts when new advisories or patches relevant to your systems and network configurations are available.

Feedback

If you have additional information or corrections for this security advisory please submit them via our contact form.

 

Vulnerability Alerting

Free 14-Day Trial

 
  Latest News

 

  >> 2009-06-10

     

  VUPEN Security Research
  Discovered Critical Flaws
  in Adobe Acrobat and MS

  Office Word


  >> 2009-06-02

     

  VUPEN Security Research
  Discovered Critical Flaws
  in ACDSee Products


  >> 2009-05-22

     

  VUPEN Discovered Two
  Critical Vulnerabilities in
  Novell GroupWise 8 / 7


  >> 2009-05-12

     

  Microsoft Patched 14
  Office PowerPoint Flaws

 

  >> 2009-04-28

     

  Adobe Reader / Acrobat
  Vulnerabilities
Disclosed

 

 

More Informations    
    








Copyright 2003-2009 © VUPEN.COM - Privacy Policy