Linux SuSE vulnerabilidad muy critica para thttpd


1 de Noviembre de 2003

Suse a publicado un parche de seguridad del thttpd, se considerada muy critica y es muy recomendable actualizar el sistema.

La vulnerabilidad que se puede explotar puede divulgar información del sistema y compromete seriamente a la seguridad de la maquina. El fallo no es nuevo dentro de thttpd, el famoso "defang()"

Las versiones afectadas son; SuSE-9.0 - SuSE-8.2 - SuSE-8.1 - SuSE-8 - SuSE-7.3

Los paquetes actualizados los puede descargar de;


SuSE-9.0:
ftp://ftp.suse.com/pub/suse/i386...86/thttpd-2.23beta1-165.i586.rpm
e33f3897cac1e1fe117eff8ca252ec0f
patch rpm(s):
ftp://ftp.suse.com/pub/suse/i386...tpd-2.23beta1-165.i586.patch.rpm
cd5c2aeb6d31d6a6781f392af17a4989
source rpm(s):
ftp://ftp.suse.com/pub/suse/i386...src/thttpd-2.23beta1-165.src.rpm
c6e2446bc94c8c00d35b7741b67df678

SuSE-8.2:
ftp://ftp.suse.com/pub/suse/i386...86/thttpd-2.23beta1-164.i586.rpm
a491b55f562fa0f3b1679ee819140c72
patch rpm(s):
ftp://ftp.suse.com/pub/suse/i386...tpd-2.23beta1-164.i586.patch.rpm
bbb3dd624b19d8683223049a070d4cf2
source rpm(s):
ftp://ftp.suse.com/pub/suse/i386...src/thttpd-2.23beta1-164.src.rpm
2710751ff1ee8fbab3c2934c5cb09f3d

SuSE-8.1:
ftp://ftp.suse.com/pub/suse/i386...86/thttpd-2.23beta1-163.i586.rpm
428db4fb2eccebb5ed16cb28161ba2a5
patch rpm(s):
ftp://ftp.suse.com/pub/suse/i386...tpd-2.23beta1-163.i586.patch.rpm
b32fb0a87d8d7de3ed1953e64da89bc8
source rpm(s):
ftp://ftp.suse.com/pub/suse/i386...src/thttpd-2.23beta1-163.src.rpm
e64bc1488747a414f6bd60735f82385f

SuSE-8.0:
ftp://ftp.suse.com/pub/suse/i386.../8.0/n4/thttpd-2.20c-98.i386.rpm
952dcca179b647afdeea02b987e3daf8
patch rpm(s):
ftp://ftp.suse.com/pub/suse/i386...4/thttpd-2.20c-98.i386.patch.rpm
e596221f34a73ba6fdd29abcecb6e211
source rpm(s):
ftp://ftp.suse.com/pub/suse/i386.../8.0/zq1/thttpd-2.20c-98.src.rpm
8500be9c635d1c5c9618ecca2a09a5e7

SuSE-7.3:
ftp://ftp.suse.com/pub/suse/i386...7.3/n1/thttpd-2.20b-175.i386.rpm
16ffc5238c1f57b8a1e6e02989524e82
source rpm(s):
ftp://ftp.suse.com/pub/suse/i386...7.3/zq1/thttpd-2.20b-175.src.rpm
b5c4b9c65182fcd2a326e3edad7b2dfb


-- PPC Power PC Platform --

SuSE-7.3:
ftp://ftp.suse.com/pub/suse/ppc/update/7.3/n1/thttpd-2.20b-112.ppc.rpm
e7aaff82bd90c459849dd78b1cc47515
source rpm(s):
ftp://ftp.suse.com/pub/suse/ppc/...7.3/zq1/thttpd-2.20b-112.src.rpm
8ac31eb38063a891e37ed327a5ddbc0c