---------------------------------------------------------------------- Secunia Network Software Inspector 2.0 (NSI) - Public Beta 2 days left of beta period. The 1st generation of the Secunia Network Software Inspector (NSI) has been available for corporate users for almost 1 year and its been a tremendous success. The 2nd generation Secunia NSI is built on the same technology as the award winning Secunia PSI, which has already been downloaded and installed on more than 400,000 computers world wide. Learn more / Download (instant access): http://secunia.com/network_software_inspector_2/ ---------------------------------------------------------------------- TITLE: Debian update for kronolith SECUNIA ADVISORY ID: SA29945 VERIFY ADVISORY: http://secunia.com/advisories/29945/ CRITICAL: Less critical IMPACT: Cross Site Scripting WHERE: >From remote OPERATING SYSTEM: Debian GNU/Linux 4.0 http://secunia.com/product/13844/ Debian GNU/Linux unstable alias sid http://secunia.com/product/530/ DESCRIPTION: Debian has issued an update for kronolith. This fixes a vulnerability, which can be exploited by malicious people to conduct cross-site scripting attacks. For more information: SA29920 SOLUTION: Apply updated packages. -- Debian GNU/Linux 4.0 alias etch -- Source archives: http://security.debian.org/pool/updates/main/k/kronolith2/kronolith2_2.1.4-1etch1.dsc Size/MD5 checksum: 988 bed4712a2341c3a5043c6e69ad6e8309 http://security.debian.org/pool/updates/main/k/kronolith2/kronolith2_2.1.4-1etch1.diff.gz Size/MD5 checksum: 5388 580890a3d47459f77dd89aa664ca4a44 http://security.debian.org/pool/updates/main/k/kronolith2/kronolith2_2.1.4.orig.tar.gz Size/MD5 checksum: 1691114 df6d6fc99012865b18b089212c7544ad Architecture independent packages: http://security.debian.org/pool/updates/main/k/kronolith2/kronolith2_2.1.4-1etch1_all.deb Size/MD5 checksum: 1694916 d93492c52a99397b76f862705b7fd24e -- Debian GNU/Linux unstable alias sid -- Reportedly, the problem will be fixed soon. ORIGINAL ADVISORY: http://lists.debian.org/debian-security-announce/2008/msg00134.html OTHER REFERENCES: SA29920: http://secunia.com/advisories/29920/ ---------------------------------------------------------------------- About: This Advisory was delivered by Secunia as a free service to help everybody keeping their systems up to date against the latest vulnerabilities. Subscribe: http://secunia.com/secunia_security_advisories/ Definitions: (Criticality, Where etc.) http://secunia.com/about_secunia_advisories/ Please Note: Secunia recommends that you verify all advisories you receive by clicking the link. Secunia NEVER sends attached files with advisories. Secunia does not advise people to install third party patches, only use those supplied by the vendor. ---------------------------------------------------------------------- Unsubscribe: Secunia Security Advisories http://secunia.com/sec_adv_unsubscribe/?email=packet%40packetstormsecurity.org ----------------------------------------------------------------------