|
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
- --------------------------------------------------------------------------
Trustix Secure Linux Security Advisory #2007-0007
Package names: fetchmail, gd, php, postgresql, samba
Summary: Multiple vulnerabilities
Date: 2007-02-13
Affected versions: Trustix Secure Linux 2.2
Trustix Secure Linux 3.0
Trustix Operating System - Enterprise Server 2
- --------------------------------------------------------------------------
Package description:
fetchmail
Fetchmail is a remote mail retrieval and forwarding utility intended
for use over on-demand TCP/IP links, like SLIP or PPP connections.
Fetchmail supports every remote-mail protocol currently in use on
the Internet (POP2, POP3, RPOP, APOP, KPOP, all IMAPs, ESMTP ETRN,
IPv6,and IPSEC) for retrieval. Then Fetchmail forwards the mail
through SMTP so you can read it through your favorite mail client.
gd
gd is a graphics library. It allows your code to quickly draw images
complete with lines, arcs, text, multiple colors, cut and paste from
other images, and flood fills, and write out the result as a PNG or
JPEG file. This is particularly useful in World Wide Web applications,
where PNG and JPEG are two of the formats accepted for inline images
by most browsers.
php
PHP is an HTML-embedded scripting language. PHP attempts to make
it easy for developers to write dynamically generated web pages.
PHP also offers built-in database integration for several commercial
and non-commercial database management systems, so writing a
database-enabled web page with PHP is fairly simple. The most
common use of PHP coding is probably as a replacement for CGI
scripts. The mod_php module enables the Apache web server to
understand and process the embedded PHP language in web pages.
postgresql
PostgreSQL is an advanced Object-Relational database management
system (DBMS) that supports almost all SQL constructs (including
transactions, subselects and user-defined types and functions).
The postgresql package includes the client programs and libraries
that you'll need to access a PostgreSQL DBMS server. These PostgreSQL
client programs are programs that directly manipulate the internal
structure of PostgreSQL databases on a PostgreSQL server. These
client programs can be located on the same machine with the PostgreSQL
server, or may be on a remote machine which accesses a PostgreSQL
server over a network connection. This package contains the docs
in HTML for the whole package, as well as command-line utilities for
managing PostgreSQL databases on a PostgreSQL server.
samba
Samba provides an SMB server which can be used to provide network
services to SMB (sometimes called "Lan Manager") clients, including
various versions of MS Windows, OS/2, and other Linux machines. Samba
uses NetBIOS over TCP/IP (NetBT) protocols and does NOT need NetBEUI
(Microsoft Raw NetBIOS frame) protocol.
Problem description:
fetchmail < TSL 3.0 > < TSL 2.2 >
- SECURITY Fix: Fetchmail does not properly enforce TLS and may
transmit cleartext passwords over unsecured links if certain
circumstances occur, which allows remote attackers to obtain
sensitive information via man-in-the-middle (MITM) attacks.
- A vulnerability has been reported in Fetchmail caused due to
a NULL pointer dereference error when rejecting a message sent
to an MDA, which could be exploited by attackers to cause a
denial of service.
The Common Vulnerabilities and Exposures project (cve.mitre.org) has
assigned the names CVE-2006-5867 and CVE-2006-5974 to these issues.
gd < TSL 3.0 > < TSL 2.2 >
- SECURITY Fix: Buffer overflow in the gdImageStringFTEx function
in gdft.c in GD Graphics Library allows remote attackers to cause
a denial of service (application crash) and possibly execute
arbitrary code via a crafted string with a JIS encoded font.
The Common Vulnerabilities and Exposures project (cve.mitre.org)
has assigned the name CVE-2007-0455 to this issue.
php < TSL 3.0 > < TSL 2.2 >
- New Upstream.
- Includes fix for php "out of memory" error, Bug #2062.
- Multiple Security fixes.
postgresql < TSL 3.0 > < TSL 2.2 > < TSEL 2 >
- New upstream.
- SECURITY Fix: An unspecified error can be used to suppress certain
checks, which ensure that SQL functions return the correct data
type. This can be exploited to crash the database backend or
disclose potentially sensitive information.
- An unspecified error when changing the data type of a table column
can be exploited to crash the database backend or disclose
potentially sensitive information.
The Common Vulnerabilities and Exposures project (cve.mitre.org) has
assigned the names CVE-2007-0555 and CVE-2007-0556 to these issues.
samba < TSL 3.0 > < TSL 2.2 > < TSEL 2 >
- New upstream.
- SECURITY Fix: smbd allows remote authenticated users to cause a
denial of service (memory and CPU exhaustion) by renaming a file
in a way that prevents a request from being removed from the
deferred open queue, which triggers an infinite loop.
- Buffer overflow in the nss_winbind.so.1 library, as used in the
winbindd daemon, allows attackers to execute arbitrary code via
the (1) gethostbyname and (2) getipnodebyname functions.
- Format string vulnerability in the afsacl.so VFS module allows
context-dependent attackers to execute arbitrary code via format
string specifiers in a filename on an AFS file system, which is
not properly handled during Windows ACL mapping.
The Common Vulnerabilities and Exposures project (cve.mitre.org)
has assigned the names CVE-2007-0452, CVE-2007-0453 and
CVE-2007-0454 to these issue.
Action:
We recommend that all systems with this package installed be upgraded.
Please note that if you do not need the functionality provided by this
package, you may want to remove it from your system.
Location:
All Trustix Secure Linux updates are available from