|
|
>> Fedora Security Update Fixes ELinks HTTPS Information Disclosure Issue
|
Title : Fedora Security Update Fixes ELinks HTTPS Information Disclosure Issue VUPEN ID : VUPEN/ADV-2007-3397 CVE ID : CVE-2007-5034
Rated as : Low Risk 
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2007-10-09
|
A vulnerability has been identified in Fedora, which could be exploited by attackers to gain knowledge of sensitive information. This issue is caused by an error in ELinks. For additional information, see : VUPEN/ADV-2007-3278
Affected Products
Fedora Core 6
Solution
Upgrade the affected packages :
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/6/
ff66e68e6137ac5530ea68d6da7516d6b1a35ac7 SRPMS/elinks-0.11.3-1.fc6.src.rpm
ff66e68e6137ac5530ea68d6da7516d6b1a35ac7 noarch/elinks-0.11.3-1.fc6.src.rpm
70e7cc9109e1d6cbe4f723a79e9ff7c87a32d8e4 ppc/elinks-0.11.3-1.fc6.ppc.rpm
a8126a4d27de9b2bb2d7e28cbea3d0397cf95363 ppc/debug/elinks-debuginfo-0.11.3-1.fc6.ppc.rpm
4c59e5aa817b7d484497b1cd22f45dd6e693aeef x86_64/elinks-0.11.3-1.fc6.x86_64.rpm
9024172109d4dad82250a81197d6b44ffb2f3591 x86_64/debug/elinks-debuginfo-0.11.3-1.fc6.x86_64.rpm
f39bb4b228b172fd5a2ff2bcd55846ec1d9434ef i386/debug/elinks-debuginfo-0.11.3-1.fc6.i386.rpm
d4b0cd1c3331527b851bf4fc46bef4059d52ec8e i386/elinks-0.11.3-1.fc6.i386.rpm
References
http://www.vupen.com/english/advisories/2007/3397 https://www.redhat.com/archives/fedora-package-announce/2007-October/msg00079.html
ChangeLog
2007-10-09 : Initial release
Vulnerability Management
Subscribe to VUPEN VNS and receive real-time alerts when new advisories or patches relevant to your systems and network configurations are available.
Feedback
If you have additional information or corrections for this security advisory please submit them via our contact form. | |
|