Contact | Site en Français               

 


 

VUPEN VNS v4.0

 
  Features and Options
  Free 14-Day Trial

  Partner Program

  Receive More Information
 
   
 

Latest Intelligence

 
  VUPEN Security Advisories

  Virus and Malware Alerts

  VUPEN Security Research
  Threat Watch Blog
  Zero-Day Monitor
  Search Engine
  Mailing List & RSS
 
   

>> Fedora Security Update Fixes Python "repr()" Function Buffer Overflow Vulnerability

Title : Fedora Security Update Fixes Python "repr()" Function Buffer Overflow Vulnerability
VUPEN ID : VUPEN/ADV-2006-4373
CVE ID : CVE-2006-4980
CWE ID : VUPEN VNS Only
CVSS V2 : VUPEN VNS Only
Rated as : Moderate Risk 
Remotely Exploitable : Yes
Locally Exploitable : Yes
Release Date : 2006-11-07


Technical Description    Receive VUPEN Security alerts in a Text format  Receive VUPEN Security alerts in a PDF format  Receive VUPEN Security alerts in an XML format 

Fedora has released updated packages to address a vulnerability identified in Python. This flaw could be exploited by attackers to execute arbitrary commands. For additional information, see : VUPEN/ADV-2006-3940

Affected Products

Fedora Core 6
Fedora Core 5

Solution

Upgrade the affected packages :

http://download.fedora.redhat.com/pub/fedora/linux/core/updates/6/

031d7d3698f24d1aa09d3a19c981a3ccbaf48eec SRPMS/python-2.4.4-1.fc6.src.rpm
031d7d3698f24d1aa09d3a19c981a3ccbaf48eec noarch/python-2.4.4-1.fc6.src.rpm
c01c90c86c458f22f17ea9a2d3b1109c7a85370f ppc/python-devel-2.4.4-1.fc6.ppc.rpm
1263e77c467042989eca678eb4e0f6f726cb99fa ppc/python-2.4.4-1.fc6.ppc.rpm
38d13b8f5209b6f4facf5ff42282113501378999 ppc/tkinter-2.4.4-1.fc6.ppc.rpm
e2c1dd55a6be0e3faaa9b28d2c01eb1eb95f6e72 ppc/python-tools-2.4.4-1.fc6.ppc.rpm
c7e79048d051bff240688d96ad9d12f90a66c6a4 ppc/debug/python-debuginfo-2.4.4-1.fc6.ppc.rpm
aede3231bc8d5af4cabb37c7c36ecd8f10d66316 x86_64/debug/python-debuginfo-2.4.4-1.fc6.x86_64.rpm
20dfab8c8a2317931bf44a2094b0069ef69dab6e x86_64/python-2.4.4-1.fc6.x86_64.rpm
753efc99c31c15c52a1dac4f7f844efb38980989 x86_64/tkinter-2.4.4-1.fc6.x86_64.rpm
5200d817ce411e4e05798e8c7c50b1b25e5b8c35 x86_64/python-devel-2.4.4-1.fc6.x86_64.rpm
9647258ffa97dc602da172cea339e92082e31a88 x86_64/python-tools-2.4.4-1.fc6.x86_64.rpm
9d650d0e873fc1d1b30dfd4fd1de04963f032dbd i386/python-tools-2.4.4-1.fc6.i386.rpm
3518adef83e0d67132fe267f1b5c0180a2936721 i386/debug/python-debuginfo-2.4.4-1.fc6.i386.rpm
68efd05890e856d6d9899449e7aef1f8f03e3367 i386/tkinter-2.4.4-1.fc6.i386.rpm
c33670a98fba4ad1d5397595bfc8507e03bc4fe0 i386/python-devel-2.4.4-1.fc6.i386.rpm
6aedf1db65bcfc3bfaa663007e4a994a4dbca770 i386/python-2.4.4-1.fc6.i386.rpm

http://download.fedora.redhat.com/pub/fedora/linux/core/updates/5/

6b53ab4cf428d8498cbabfd56d1411f7b159fc45 SRPMS/python-2.4.3-9.FC5.src.rpm
6b53ab4cf428d8498cbabfd56d1411f7b159fc45 noarch/python-2.4.3-9.FC5.src.rpm
252fc281a988cf5afbf69dfc50c2ae919acf5891 ppc/python-devel-2.4.3-9.FC5.ppc.rpm
c15aef5e65a433b97c77f1b145cd2518ed66634c ppc/python-2.4.3-9.FC5.ppc.rpm
a1102abb3b56987780566f1b801d9b418ce9358c ppc/python-tools-2.4.3-9.FC5.ppc.rpm
d2cbb36949f52f3a59f11307fa6e2bb8a34972d4 ppc/tkinter-2.4.3-9.FC5.ppc.rpm
b262c8d78ebc7a275f3cb20edc9dbbf9561d24cb ppc/debug/python-debuginfo-2.4.3-9.FC5.ppc.rpm
e9cc77cff0c9b18ca55a12c62e74b8a49661cab8 x86_64/python-tools-2.4.3-9.FC5.x86_64.rpm
e6a1bb215ccb68b685782903b9ce998f9c922b88 x86_64/debug/python-debuginfo-2.4.3-9.FC5.x86_64.rpm
4232e75b936751533bb5d37fa9a7466ba52decd3 x86_64/python-2.4.3-9.FC5.x86_64.rpm
bbb77703e0fcf36e3833d20082f8cf4251b52565 x86_64/tkinter-2.4.3-9.FC5.x86_64.rpm
a8e714c12fa4d94564733bc6d61fac00b8dcb123 x86_64/python-devel-2.4.3-9.FC5.x86_64.rpm
ee26d7e0e81bfd41abf788a0e2674905f26a1524 i386/python-tools-2.4.3-9.FC5.i386.rpm
7d03e96dfe92652d623cb97d0653858ffa43c328 i386/tkinter-2.4.3-9.FC5.i386.rpm
0c309e3f60f755963e54760a1a350171e0f6267e i386/python-devel-2.4.3-9.FC5.i386.rpm
0a806cb258acfcda852ac1cfb4280bf7e6e46823 i386/debug/python-debuginfo-2.4.3-9.FC5.i386.rpm
89882d4b2fed5c964ebc639752107d29e4cea5bd i386/python-2.4.3-9.FC5.i386.rpm

References

http://www.vupen.com/english/advisories/2006/4373
https://www.redhat.com/archives/fedora-package-announce/2006-November/msg00044.html
https://www.redhat.com/archives/fedora-package-announce/2006-November/msg00043.html

ChangeLog

2006-11-07 : Initial release

Vulnerability Management

Subscribe to VUPEN VNS and receive real-time alerts with CVE, CWE, and CVSS when new advisories or patches relevant to your systems and network configurations are available.

Feedback

If you have additional information or corrections for this security advisory please submit them via our contact form.

 

VUPEN Vulnerability
Notification Service

 

Latest Advisories

  

   
    





Copyright VUPEN © 2004-2010 - Privacy Policy