OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
[SA15973] Debian update for trac

From: Secunia Security Advisories (sec-advsecunia.com)
Date: Thu Jul 07 2005 - 15:21:29 CDT


----------------------------------------------------------------------

Bist Du interessiert an einem neuen Job in IT-Sicherheit?

Secunia hat zwei freie Stellen als Junior und Senior Spezialist in IT-
Sicherheit:
http://secunia.com/secunia_vacancies/

----------------------------------------------------------------------

TITLE:
Debian update for trac

SECUNIA ADVISORY ID:
SA15973

VERIFY ADVISORY:
http://secunia.com/advisories/15973/

CRITICAL:
Moderately critical

IMPACT:
Manipulation of data, Exposure of sensitive information, System
access

WHERE:
From remote

OPERATING SYSTEM:
Debian GNU/Linux unstable alias sid
http://secunia.com/product/530/
Debian GNU/Linux 3.1
http://secunia.com/product/5307/

DESCRIPTION:
Debian has issued an update for trac. This fixes a vulnerability,
which can be exploited by malicious users to disclose sensitive
information and potentially compromise a vulnerable system.

For more information:
SA15752

SOLUTION:
Apply updated packages.

-- Debian GNU/Linux 3.1 alias sarge --

Source archives:

http://security.debian.org/pool/updates/main/t/trac/trac_0.8.1-3sarge2.dsc
Size/MD5 checksum: 655 17707ec452bb497b18b22a8280b775d6
http://security.debian.org/pool/updates/main/t/trac/trac_0.8.1-3sarge2.diff.gz
Size/MD5 checksum: 6294 386a1ffa63b1ba8709ad317176f1d419
http://security.debian.org/pool/updates/main/t/trac/trac_0.8.1.orig.tar.gz
Size/MD5 checksum: 236791 1b6c44fae90c760074762b73cdc88c8d

Architecture independent components:

http://security.debian.org/pool/updates/main/t/trac/trac_0.8.1-3sarge2_all.deb
Size/MD5 checksum: 196864 85fd50e157531cbac57bf6e4901ad039

-- Debian GNU/Linux unstable alias sid --

Fixed in version 0.8.4-1.

ORIGINAL ADVISORY:
http://www.debian.org/security/2005/dsa-739

OTHER REFERENCES:
SA15752:
http://secunia.com/advisories/15752/

----------------------------------------------------------------------

About:
This Advisory was delivered by Secunia as a free service to help
everybody keeping their systems up to date against the latest
vulnerabilities.

Subscribe:
http://secunia.com/secunia_security_advisories/

Definitions: (Criticality, Where etc.)
http://secunia.com/about_secunia_advisories/

Please Note:
Secunia recommends that you verify all advisories you receive by
clicking the link.
Secunia NEVER sends attached files with advisories.
Secunia does not advise people to install third party patches, only
use those supplied by the vendor.

----------------------------------------------------------------------

Unsubscribe: Secunia Security Advisories

----------------------------------------------------------------------