[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[cobalt-users] Fw: [SA11432] ArX libneon Client Code Format String Vulnerabilities



Good Idea to check your updates !!

Franklin S. Werren  www.bagpipes.net   www.chautauqualake.net
www.franksradio.net http://stvef.chautauqualake.net
http://rtcw.chautauqualake.net

My 2 cents: Never get caught between an ISP and a telco in a pissing match!!
                  The customer looses every time!!!


----- Original Message ----- From: "Secunia Security Advisories" <sec-adv@xxxxxxxxxxx>
To: <admin@xxxxxxxxxxxx>
Sent: Tuesday, April 20, 2004 10:34 AM
Subject: [SA11432] ArX libneon Client Code Format String Vulnerabilities



TITLE:
ArX libneon Client Code Format String Vulnerabilities

SECUNIA ADVISORY ID:
SA11432

VERIFY ADVISORY:
http://secunia.com/advisories/11432/

CRITICAL:
Moderately critical

IMPACT:
System access

WHERE:
From remote

SOFTWARE:
ArX 1.0.x

DESCRIPTION:
ArX is affected by some vulnerabilities in libneon, which potentially
can be exploited by malicious people to compromise a vulnerable
system.

For more information:
SA11363

SOLUTION:
Update to version 1.0.19:
http://superbeast.ucsd.edu/~landry/ArX/ArX-1.0.19.tar.gz

OTHER REFERENCES:
SA11363:
http://secunia.com/advisories/11363/

----------------------------------------------------------------------

About:
This Advisory was delivered by Secunia as a free service to help
everybody keeping their systems up to date against the latest
vulnerabilities.

Subscribe:
http://secunia.com/secunia_security_advisories/

Definitions: (Criticality, Where etc.)
http://secunia.com/about_secunia_advisories/


Please Note:
Secunia recommends that you verify all advisories you receive by
clicking the link.
Secunia NEVER sends attached files with advisories.
Secunia does not advise people to install third party patches, only
use those supplied by the vendor.

----------------------------------------------------------------------