OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
[SA30136] Ubuntu update for openvpn

From: Secunia Security Advisories (sec-advsecunia.com)
Date: Wed May 14 2008 - 18:30:05 CDT


----------------------------------------------------------------------

Secunia Network Software Inspector 2.0 (NSI) - Public Beta

The Public Beta has ended. Thanks to all that participated.

Learn more:
http://secunia.com/network_software_inspector_2/

----------------------------------------------------------------------

TITLE:
Ubuntu update for openvpn

SECUNIA ADVISORY ID:
SA30136

VERIFY ADVISORY:
http://secunia.com/advisories/30136/

CRITICAL:
Moderately critical

IMPACT:
Security Bypass

WHERE:
From remote

OPERATING SYSTEM:
Ubuntu Linux 7.04
http://secunia.com/product/14068/
Ubuntu Linux 7.10
http://secunia.com/product/16251/
Ubuntu Linux 8.04
http://secunia.com/product/18611/

DESCRIPTION:
Ubuntu has issued an update for openvpn. This fixes a security issue,
which can lead to weak cryptographic key material.

For more information:
SA30221

SOLUTION:
Apply updated packages. Please see vendor advisory for further
details.

-- Ubuntu 7.04 --

Source archives:

http://security.ubuntu.com/ubuntu/pool/universe/o/openvpn/openvpn_2.0.9-5ubuntu0.1.diff.gz
Size/MD5:60747 8a64cba41a38497fe25ef36afa3297a4
http://security.ubuntu.com/ubuntu/pool/universe/o/openvpn/openvpn_2.0.9-5ubuntu0.1.dsc
Size/MD5:641 18586d5869fb67929f2330dba3730498
http://security.ubuntu.com/ubuntu/pool/universe/o/openvpn/openvpn_2.0.9.orig.tar.gz
Size/MD5: 669076 60745008b90b7dbe25fe8337c550fec6

amd64 architecture (Athlon64, Opteron, EM64T Xeon):

http://security.ubuntu.com/ubuntu/pool/universe/o/openvpn/openvpn_2.0.9-5ubuntu0.1_amd64.deb
Size/MD5: 356162 cff07c3dbbc6b56a4932d91b6049499e

i386 architecture (x86 compatible Intel/AMD):

http://security.ubuntu.com/ubuntu/pool/universe/o/openvpn/openvpn_2.0.9-5ubuntu0.1_i386.deb
Size/MD5: 337190 2ece431df11236714da50fc28a63f238

powerpc architecture (Apple Macintosh G3/G4/G5):

http://security.ubuntu.com/ubuntu/pool/universe/o/openvpn/openvpn_2.0.9-5ubuntu0.1_powerpc.deb
Size/MD5: 357868 b9877bc7840768f0002a8e8016e8401a

sparc architecture (Sun SPARC/UltraSPARC):

http://security.ubuntu.com/ubuntu/pool/universe/o/openvpn/openvpn_2.0.9-5ubuntu0.1_sparc.deb
Size/MD5: 335978 8ff9625fb34f49e64cfb8811bb787b3a

-- Ubuntu 7.10 --

Source archives:

http://security.ubuntu.com/ubuntu/pool/universe/o/openvpn/openvpn_2.0.9-8ubuntu0.1.diff.gz
Size/MD5:64195 02287a5ee333a17db50cb43c9d902433
http://security.ubuntu.com/ubuntu/pool/universe/o/openvpn/openvpn_2.0.9-8ubuntu0.1.dsc
Size/MD5:642 d2a6e3308144f656dbfd35526e944187
http://security.ubuntu.com/ubuntu/pool/universe/o/openvpn/openvpn_2.0.9.orig.tar.gz
Size/MD5: 669076 60745008b90b7dbe25fe8337c550fec6

amd64 architecture (Athlon64, Opteron, EM64T Xeon):

http://security.ubuntu.com/ubuntu/pool/universe/o/openvpn/openvpn_2.0.9-8ubuntu0.1_amd64.deb
Size/MD5: 361852 19adb72a25cb5a4803bbc7e4b787d08f

i386 architecture (x86 compatible Intel/AMD):

http://security.ubuntu.com/ubuntu/pool/universe/o/openvpn/openvpn_2.0.9-8ubuntu0.1_i386.deb
Size/MD5: 341626 0fe67ae7eee3fd15900e78243dbec409

lpia architecture (Low Power Intel Architecture):

http://ports.ubuntu.com/pool/universe/o/openvpn/openvpn_2.0.9-8ubuntu0.1_lpia.deb
Size/MD5: 343206 51f7d5738b58ce8315fee4cf9a6855cf

powerpc architecture (Apple Macintosh G3/G4/G5):

http://security.ubuntu.com/ubuntu/pool/universe/o/openvpn/openvpn_2.0.9-8ubuntu0.1_powerpc.deb
Size/MD5: 363094 1b3067714e8cc68a494715d39b2f0b63

sparc architecture (Sun SPARC/UltraSPARC):

http://security.ubuntu.com/ubuntu/pool/universe/o/openvpn/openvpn_2.0.9-8ubuntu0.1_sparc.deb
Size/MD5: 341314 6bf8aa1066a79f4f0a17750fa0376238

-- Ubuntu 8.04 LTS --

Source archives:

http://security.ubuntu.com/ubuntu/pool/main/o/openvpn/openvpn_2.1~rc7-1ubuntu3.1.diff.gz
Size/MD5:35191 c3c32ea1efcc83a0deb61f3adcfc1609
http://security.ubuntu.com/ubuntu/pool/main/o/openvpn/openvpn_2.1~rc7-1ubuntu3.1.dsc
Size/MD5:646 35a1021ae123a548cd57aeba15385b9e
http://security.ubuntu.com/ubuntu/pool/main/o/openvpn/openvpn_2.1~rc7.orig.tar.gz
Size/MD5: 786288 dac8b5104b5eb105ba82b2525d371d58

amd64 architecture (Athlon64, Opteron, EM64T Xeon):

http://security.ubuntu.com/ubuntu/pool/main/o/openvpn/openvpn_2.1~rc7-1ubuntu3.1_amd64.deb
Size/MD5: 390828 537d1c0fba3fd2ea1853f2cd59df8c39

i386 architecture (x86 compatible Intel/AMD):

http://security.ubuntu.com/ubuntu/pool/main/o/openvpn/openvpn_2.1~rc7-1ubuntu3.1_i386.deb
Size/MD5: 372070 402b12a2ba4b1aa706e6160fe4c4c18b

lpia architecture (Low Power Intel Architecture):

http://ports.ubuntu.com/pool/main/o/openvpn/openvpn_2.1~rc7-1ubuntu3.1_lpia.deb
Size/MD5: 371074 acf51c0ab94e0f8a052d8e16de01c918

powerpc architecture (Apple Macintosh G3/G4/G5):

http://ports.ubuntu.com/pool/main/o/openvpn/openvpn_2.1~rc7-1ubuntu3.1_powerpc.deb
Size/MD5: 391320 5315f5eda07a544d11c4ae415414f756

sparc architecture (Sun SPARC/UltraSPARC):

http://ports.ubuntu.com/pool/main/o/openvpn/openvpn_2.1~rc7-1ubuntu3.1_sparc.deb
Size/MD5: 368786 96633aff8986fe2fedcbed30bb3090dd

ORIGINAL ADVISORY:
http://www.ubuntu.com/usn/usn-612-3

OTHER REFERENCES:
SA30221:
http://secunia.com/advisories/30221/

----------------------------------------------------------------------

About:
This Advisory was delivered by Secunia as a free service to help
everybody keeping their systems up to date against the latest
vulnerabilities.

Subscribe:
http://secunia.com/secunia_security_advisories/

Definitions: (Criticality, Where etc.)
http://secunia.com/about_secunia_advisories/

Please Note:
Secunia recommends that you verify all advisories you receive by
clicking the link.
Secunia NEVER sends attached files with advisories.
Secunia does not advise people to install third party patches, only
use those supplied by the vendor.

----------------------------------------------------------------------

Unsubscribe: Secunia Security Advisories

----------------------------------------------------------------------