Title : rPath Security Update Fixes krb5 Multiple Remote Code Execution Vulnerabilities VUPEN ID : VUPEN/ADV-2007-2360 CVE ID : CVE-2007-2442 - CVE-2007-2443 - CVE-2007-2798
Rated as : Critical
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2007-06-28
Technical Description
Multiple vulnerabilities have been identified in rPath, which could be exploited by attackers to cause a denial of service or take complete control of an affected system. These issues are caused by errors in krb5. For additional information, see : VUPEN/ADV-2007-2337
Upgrade the affected packages :
krb5=/conary.rpath.com at rpl:devel//1/1.4.1-7.7-1
krb5-server=/conary.rpath.com at rpl:devel//1/1.4.1-7.7-1
krb5-services=/conary.rpath.com at rpl:devel//1/1.4.1-7.7-1
krb5-test=/conary.rpath.com at rpl:devel//1/1.4.1-7.7-1
krb5-workstation=/conary.rpath.com at rpl:devel//1/1.4.1-7.7-1 References