OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
[SA12361] Debian update for icecast-server

From: Secunia Security Advisories (sec-advsecunia.com)
Date: Tue Aug 24 2004 - 08:51:06 CDT


TITLE:
Debian update for icecast-server

SECUNIA ADVISORY ID:
SA12361

VERIFY ADVISORY:
http://secunia.com/advisories/12361/

CRITICAL:
Moderately critical

IMPACT:
Cross Site Scripting

WHERE:
From remote

OPERATING SYSTEM:
Debian GNU/Linux 3.0
http://secunia.com/product/143/
Debian GNU/Linux unstable alias sid
http://secunia.com/product/530/

DESCRIPTION:
Debian has issued an update for icecast-server. This fixes a
vulnerability, which can be exploited by malicious people to conduct
script insertion attacks.

For more information:
SA12344

SOLUTION:
Apply updated packages.

-- Debian GNU/Linux 3.0 (woody) --

Source:
http://security.debian.org/pool/updates/main/i/icecast-server/icecast-server_1.3.11-4.2.dsc
http://security.debian.org/pool/updates/main/i/icecast-server/icecast-server_1.3.11-4.2.tar.gz

Alpha:
http://security.debian.org/pool/updates/main/i/icecast-server/icecast-server_1.3.11-4.2_alpha.deb

ARM:
http://security.debian.org/pool/updates/main/i/icecast-server/icecast-server_1.3.11-4.2_arm.deb

Intel IA-32:
http://security.debian.org/pool/updates/main/i/icecast-server/icecast-server_1.3.11-4.2_i386.deb

Intel IA-64:
http://security.debian.org/pool/updates/main/i/icecast-server/icecast-server_1.3.11-4.2_ia64.deb

HPPA:
http://security.debian.org/pool/updates/main/i/icecast-server/icecast-server_1.3.11-4.2_hppa.deb

Motorola 680x0:
http://security.debian.org/pool/updates/main/i/icecast-server/icecast-server_1.3.11-4.2_m68k.deb

Big endian MIPS:
http://security.debian.org/pool/updates/main/i/icecast-server/icecast-server_1.3.11-4.2_mips.deb

Little endian MIPS:
http://security.debian.org/pool/updates/main/i/icecast-server/icecast-server_1.3.11-4.2_mipsel.deb

PowerPC:
http://security.debian.org/pool/updates/main/i/icecast-server/icecast-server_1.3.11-4.2_powerpc.deb

IBM S/390:
http://security.debian.org/pool/updates/main/i/icecast-server/icecast-server_1.3.11-4.2_s390.deb

Sun Sparc:
http://security.debian.org/pool/updates/main/i/icecast-server/icecast-server_1.3.11-4.2_sparc.deb

-- Debian GNU/Linux unstable alias sid --

Fixed in version 1.3.12-8.

ORIGINAL ADVISORY:
http://www.debian.org/security/2004/dsa-541

OTHER REFERENCES:
SA12344:
http://secunia.com/advisories/12344/

----------------------------------------------------------------------

About:
This Advisory was delivered by Secunia as a free service to help
everybody keeping their systems up to date against the latest
vulnerabilities.

Subscribe:
http://secunia.com/secunia_security_advisories/

Definitions: (Criticality, Where etc.)
http://secunia.com/about_secunia_advisories/

Please Note:
Secunia recommends that you verify all advisories you receive by
clicking the link.
Secunia NEVER sends attached files with advisories.
Secunia does not advise people to install third party patches, only
use those supplied by the vendor.

----------------------------------------------------------------------

Unsubscribe: Secunia Security Advisories

----------------------------------------------------------------------