OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
[SA20672] Debian update for horde3

From: Secunia Security Advisories (sec-advsecunia.com)
Date: Thu Jun 15 2006 - 09:02:04 CDT


----------------------------------------------------------------------

Want to join the Secunia Security Team?

Secunia offers a position as a security specialist, where your daily
work involves reverse engineering of software and exploit code,
auditing of source code, and analysis of vulnerability reports.

http://secunia.com/secunia_security_specialist/

----------------------------------------------------------------------

TITLE:
Debian update for horde3

SECUNIA ADVISORY ID:
SA20672

VERIFY ADVISORY:
http://secunia.com/advisories/20672/

CRITICAL:
Less critical

IMPACT:
Cross Site Scripting

WHERE:
From remote

OPERATING SYSTEM:
Debian GNU/Linux unstable alias sid
http://secunia.com/product/530/
Debian GNU/Linux 3.1
http://secunia.com/product/5307/

DESCRIPTION:
Debian has issued an update for horde3. This fixes some
vulnerabilities, which can be exploited by malicious people to
conduct cross-site scripting attacks.

For more information:
SA20661

SOLUTION:
Apply updated packages.

-- Debian GNU/Linux 3.1 alias sarge --

Source archives:

http://security.debian.org/pool/updates/main/h/horde3/horde3_3.0.4-4sarge4.dsc
Size/MD5 checksum: 628 736efdacbeb3dc6963c79a48a43f49bd
http://security.debian.org/pool/updates/main/h/horde3/horde3_3.0.4-4sarge4.diff.gz
Size/MD5 checksum: 12114 faaa734a691a552c451fc67359119280
http://security.debian.org/pool/updates/main/h/horde3/horde3_3.0.4.orig.tar.gz
Size/MD5 checksum: 3378143 e2221d409ba1c8841ce4ecee981d7b61

Architecture independent components:

http://security.debian.org/pool/updates/main/h/horde3/horde3_3.0.4-4sarge4_all.deb
Size/MD5 checksum: 3436798 2c57d60ccb9e4493384212ea69f9fada

-- Debian GNU/Linux unstable alias sid --

Fixed in version 3.1.1-3.

ORIGINAL ADVISORY:
http://www.us.debian.org/security/2006/dsa-1098

OTHER REFERENCES:
SA20661:
http://secunia.com/advisories/20661/

----------------------------------------------------------------------

About:
This Advisory was delivered by Secunia as a free service to help
everybody keeping their systems up to date against the latest
vulnerabilities.

Subscribe:
http://secunia.com/secunia_security_advisories/

Definitions: (Criticality, Where etc.)
http://secunia.com/about_secunia_advisories/

Please Note:
Secunia recommends that you verify all advisories you receive by
clicking the link.
Secunia NEVER sends attached files with advisories.
Secunia does not advise people to install third party patches, only
use those supplied by the vendor.

----------------------------------------------------------------------

Unsubscribe: Secunia Security Advisories

----------------------------------------------------------------------