---------------------------------------------------------------------- Secunia is pleased to announce the release of the annual Secunia report for 2008. Highlights from the 2008 report: * Vulnerability Research * Software Inspection Results * Secunia Research Highlights * Secunia Advisory Statistics Request the full 2008 Report here: http://secunia.com/advisories/try_vi/request_2008_report/ Stay Secure, Secunia ---------------------------------------------------------------------- TITLE: SUSE update for krb5 SECUNIA ADVISORY ID: SA34637 VERIFY ADVISORY: http://secunia.com/advisories/34637/ DESCRIPTION: SUSE has issued an update for krb5. This fixes some vulnerabilities, which can be exploited by malicious people to potentially disclose sensitive information, cause a DoS (Denial of Service), or potentially compromise a vulnerable system. For more information: SA34347 SOLUTION: Apply updated packages. x86 Platform: openSUSE 11.1: http://download.opensuse.org/debug/update/11.1/rpm/i586/krb5-debuginfo-1.6.3-132.3.1.i586.rpm http://download.opensuse.org/debug/update/11.1/rpm/i586/krb5-debuginfo-1.6.3-132.5.1.i586.rpm http://download.opensuse.org/debug/update/11.1/rpm/i586/krb5-debugsource-1.6.3-132.3.1.i586.rpm http://download.opensuse.org/debug/update/11.1/rpm/i586/krb5-debugsource-1.6.3-132.5.1.i586.rpm http://download.opensuse.org/update/11.1/rpm/i586/krb5-1.6.3-132.3.1.i586.rpm http://download.opensuse.org/update/11.1/rpm/i586/krb5-1.6.3-132.5.1.i586.rpm http://download.opensuse.org/update/11.1/rpm/i586/krb5-apps-clients-1.6.3-132.3.1.i586.rpm http://download.opensuse.org/update/11.1/rpm/i586/krb5-apps-clients-1.6.3-132.5.1.i586.rpm http://download.opensuse.org/update/11.1/rpm/i586/krb5-apps-servers-1.6.3-132.3.1.i586.rpm http://download.opensuse.org/update/11.1/rpm/i586/krb5-apps-servers-1.6.3-132.5.1.i586.rpm http://download.opensuse.org/update/11.1/rpm/i586/krb5-client-1.6.3-132.3.1.i586.rpm http://download.opensuse.org/update/11.1/rpm/i586/krb5-client-1.6.3-132.5.1.i586.rpm http://download.opensuse.org/update/11.1/rpm/i586/krb5-devel-1.6.3-132.3.1.i586.rpm http://download.opensuse.org/update/11.1/rpm/i586/krb5-devel-1.6.3-132.5.1.i586.rpm http://download.opensuse.org/update/11.1/rpm/i586/krb5-server-1.6.3-132.3.1.i586.rpm http://download.opensuse.org/update/11.1/rpm/i586/krb5-server-1.6.3-132.5.1.i586.rpm openSUSE 11.0: http://download.opensuse.org/debug/update/11.0/rpm/i586/krb5-debuginfo-1.6.3-50.3.i586.rpm http://download.opensuse.org/debug/update/11.0/rpm/i586/krb5-debuginfo-1.6.3-50.5.i586.rpm http://download.opensuse.org/debug/update/11.0/rpm/i586/krb5-debugsource-1.6.3-50.3.i586.rpm http://download.opensuse.org/debug/update/11.0/rpm/i586/krb5-debugsource-1.6.3-50.5.i586.rpm http://download.opensuse.org/update/11.0/rpm/i586/krb5-1.6.3-50.3.i586.rpm http://download.opensuse.org/update/11.0/rpm/i586/krb5-1.6.3-50.5.i586.rpm http://download.opensuse.org/update/11.0/rpm/i586/krb5-apps-clients-1.6.3-50.3.i586.rpm http://download.opensuse.org/update/11.0/rpm/i586/krb5-apps-clients-1.6.3-50.5.i586.rpm http://download.opensuse.org/update/11.0/rpm/i586/krb5-apps-servers-1.6.3-50.3.i586.rpm http://download.opensuse.org/update/11.0/rpm/i586/krb5-apps-servers-1.6.3-50.5.i586.rpm http://download.opensuse.org/update/11.0/rpm/i586/krb5-client-1.6.3-50.3.i586.rpm http://download.opensuse.org/update/11.0/rpm/i586/krb5-client-1.6.3-50.5.i586.rpm http://download.opensuse.org/update/11.0/rpm/i586/krb5-devel-1.6.3-50.3.i586.rpm http://download.opensuse.org/update/11.0/rpm/i586/krb5-devel-1.6.3-50.5.i586.rpm http://download.opensuse.org/update/11.0/rpm/i586/krb5-server-1.6.3-50.3.i586.rpm http://download.opensuse.org/update/11.0/rpm/i586/krb5-server-1.6.3-50.5.i586.rpm openSUSE 10.3: http://download.opensuse.org/update/10.3/rpm/i586/krb5-1.6.2-22.7.i586.rpm http://download.opensuse.org/update/10.3/rpm/i586/krb5-1.6.2-22.9.i586.rpm http://download.opensuse.org/update/10.3/rpm/i586/krb5-apps-clients-1.6.2-22.7.i586.rpm http://download.opensuse.org/update/10.3/rpm/i586/krb5-apps-clients-1.6.2-22.9.i586.rpm http://download.opensuse.org/update/10.3/rpm/i586/krb5-apps-servers-1.6.2-22.7.i586.rpm http://download.opensuse.org/update/10.3/rpm/i586/krb5-apps-servers-1.6.2-22.9.i586.rpm http://download.opensuse.org/update/10.3/rpm/i586/krb5-client-1.6.2-22.7.i586.rpm http://download.opensuse.org/update/10.3/rpm/i586/krb5-client-1.6.2-22.9.i586.rpm http://download.opensuse.org/update/10.3/rpm/i586/krb5-devel-1.6.2-22.7.i586.rpm http://download.opensuse.org/update/10.3/rpm/i586/krb5-devel-1.6.2-22.9.i586.rpm http://download.opensuse.org/update/10.3/rpm/i586/krb5-server-1.6.2-22.7.i586.rpm http://download.opensuse.org/update/10.3/rpm/i586/krb5-server-1.6.2-22.9.i586.rpm Power PC Platform: openSUSE 11.1: http://download.opensuse.org/debug/update/11.1/rpm/ppc/krb5-debuginfo-1.6.3-132.3.1.ppc.rpm http://download.opensuse.org/debug/update/11.1/rpm/ppc/krb5-debuginfo-1.6.3-132.5.1.ppc.rpm http://download.opensuse.org/debug/update/11.1/rpm/ppc/krb5-debuginfo-64bit-1.6.3-132.5.1.ppc.rpm http://download.opensuse.org/debug/update/11.1/rpm/ppc/krb5-debugsource-1.6.3-132.3.1.ppc.rpm http://download.opensuse.org/debug/update/11.1/rpm/ppc/krb5-debugsource-1.6.3-132.5.1.ppc.rpm http://download.opensuse.org/update/11.1/rpm/ppc/krb5-1.6.3-132.3.1.ppc.rpm http://download.opensuse.org/update/11.1/rpm/ppc/krb5-1.6.3-132.5.1.ppc.rpm http://download.opensuse.org/update/11.1/rpm/ppc/krb5-64bit-1.6.3-132.3.1.ppc.rpm http://download.opensuse.org/update/11.1/rpm/ppc/krb5-64bit-1.6.3-132.5.1.ppc.rpm http://download.opensuse.org/update/11.1/rpm/ppc/krb5-apps-clients-1.6.3-132.3.1.ppc.rpm http://download.opensuse.org/update/11.1/rpm/ppc/krb5-apps-clients-1.6.3-132.5.1.ppc.rpm http://download.opensuse.org/update/11.1/rpm/ppc/krb5-apps-servers-1.6.3-132.3.1.ppc.rpm http://download.opensuse.org/update/11.1/rpm/ppc/krb5-apps-servers-1.6.3-132.5.1.ppc.rpm http://download.opensuse.org/update/11.1/rpm/ppc/krb5-client-1.6.3-132.3.1.ppc.rpm http://download.opensuse.org/update/11.1/rpm/ppc/krb5-client-1.6.3-132.5.1.ppc.rpm http://download.opensuse.org/update/11.1/rpm/ppc/krb5-devel-1.6.3-132.3.1.ppc.rpm http://download.opensuse.org/update/11.1/rpm/ppc/krb5-devel-1.6.3-132.5.1.ppc.rpm http://download.opensuse.org/update/11.1/rpm/ppc/krb5-devel-64bit-1.6.3-132.3.1.ppc.rpm http://download.opensuse.org/update/11.1/rpm/ppc/krb5-devel-64bit-1.6.3-132.5.1.ppc.rpm http://download.opensuse.org/update/11.1/rpm/ppc/krb5-server-1.6.3-132.3.1.ppc.rpm http://download.opensuse.org/update/11.1/rpm/ppc/krb5-server-1.6.3-132.5.1.ppc.rpm openSUSE 11.0: http://download.opensuse.org/debug/update/11.0/rpm/ppc/krb5-debuginfo-1.6.3-50.3.ppc.rpm http://download.opensuse.org/debug/update/11.0/rpm/ppc/krb5-debuginfo-1.6.3-50.5.ppc.rpm http://download.opensuse.org/debug/update/11.0/rpm/ppc/krb5-debugsource-1.6.3-50.3.ppc.rpm http://download.opensuse.org/debug/update/11.0/rpm/ppc/krb5-debugsource-1.6.3-50.5.ppc.rpm http://download.opensuse.org/update/11.0/rpm/ppc/krb5-1.6.3-50.3.ppc.rpm http://download.opensuse.org/update/11.0/rpm/ppc/krb5-1.6.3-50.5.ppc.rpm http://download.opensuse.org/update/11.0/rpm/ppc/krb5-64bit-1.6.3-50.3.ppc.rpm http://download.opensuse.org/update/11.0/rpm/ppc/krb5-64bit-1.6.3-50.5.ppc.rpm http://download.opensuse.org/update/11.0/rpm/ppc/krb5-apps-clients-1.6.3-50.3.ppc.rpm http://download.opensuse.org/update/11.0/rpm/ppc/krb5-apps-clients-1.6.3-50.5.ppc.rpm http://download.opensuse.org/update/11.0/rpm/ppc/krb5-apps-servers-1.6.3-50.3.ppc.rpm http://download.opensuse.org/update/11.0/rpm/ppc/krb5-apps-servers-1.6.3-50.5.ppc.rpm http://download.opensuse.org/update/11.0/rpm/ppc/krb5-client-1.6.3-50.3.ppc.rpm http://download.opensuse.org/update/11.0/rpm/ppc/krb5-client-1.6.3-50.5.ppc.rpm http://download.opensuse.org/update/11.0/rpm/ppc/krb5-devel-1.6.3-50.3.ppc.rpm http://download.opensuse.org/update/11.0/rpm/ppc/krb5-devel-1.6.3-50.5.ppc.rpm http://download.opensuse.org/update/11.0/rpm/ppc/krb5-devel-64bit-1.6.3-50.3.ppc.rpm http://download.opensuse.org/update/11.0/rpm/ppc/krb5-devel-64bit-1.6.3-50.5.ppc.rpm http://download.opensuse.org/update/11.0/rpm/ppc/krb5-server-1.6.3-50.3.ppc.rpm http://download.opensuse.org/update/11.0/rpm/ppc/krb5-server-1.6.3-50.5.ppc.rpm openSUSE 10.3: http://download.opensuse.org/update/10.3/rpm/ppc/krb5-1.6.2-22.7.ppc.rpm http://download.opensuse.org/update/10.3/rpm/ppc/krb5-1.6.2-22.9.ppc.rpm http://download.opensuse.org/update/10.3/rpm/ppc/krb5-64bit-1.6.2-22.7.ppc.rpm http://download.opensuse.org/update/10.3/rpm/ppc/krb5-64bit-1.6.2-22.9.ppc.rpm http://download.opensuse.org/update/10.3/rpm/ppc/krb5-apps-clients-1.6.2-22.7.ppc.rpm http://download.opensuse.org/update/10.3/rpm/ppc/krb5-apps-clients-1.6.2-22.9.ppc.rpm http://download.opensuse.org/update/10.3/rpm/ppc/krb5-apps-servers-1.6.2-22.7.ppc.rpm http://download.opensuse.org/update/10.3/rpm/ppc/krb5-apps-servers-1.6.2-22.9.ppc.rpm http://download.opensuse.org/update/10.3/rpm/ppc/krb5-client-1.6.2-22.7.ppc.rpm http://download.opensuse.org/update/10.3/rpm/ppc/krb5-client-1.6.2-22.9.ppc.rpm http://download.opensuse.org/update/10.3/rpm/ppc/krb5-devel-1.6.2-22.7.ppc.rpm http://download.opensuse.org/update/10.3/rpm/ppc/krb5-devel-1.6.2-22.9.ppc.rpm http://download.opensuse.org/update/10.3/rpm/ppc/krb5-devel-64bit-1.6.2-22.7.ppc.rpm http://download.opensuse.org/update/10.3/rpm/ppc/krb5-devel-64bit-1.6.2-22.9.ppc.rpm http://download.opensuse.org/update/10.3/rpm/ppc/krb5-server-1.6.2-22.7.ppc.rpm http://download.opensuse.org/update/10.3/rpm/ppc/krb5-server-1.6.2-22.9.ppc.rpm x86-64 Platform: openSUSE 11.1: http://download.opensuse.org/debug/update/11.1/rpm/x86_64/krb5-debuginfo-1.6.3-132.3.1.x86_64.rpm http://download.opensuse.org/debug/update/11.1/rpm/x86_64/krb5-debuginfo-1.6.3-132.5.1.x86_64.rpm http://download.opensuse.org/debug/update/11.1/rpm/x86_64/krb5-debuginfo-32bit-1.6.3-132.5.1.x86_64.rpm http://download.opensuse.org/debug/update/11.1/rpm/x86_64/krb5-debugsource-1.6.3-132.3.1.x86_64.rpm http://download.opensuse.org/debug/update/11.1/rpm/x86_64/krb5-debugsource-1.6.3-132.5.1.x86_64.rpm http://download.opensuse.org/update/11.1/rpm/x86_64/krb5-1.6.3-132.3.1.x86_64.rpm http://download.opensuse.org/update/11.1/rpm/x86_64/krb5-1.6.3-132.5.1.x86_64.rpm http://download.opensuse.org/update/11.1/rpm/x86_64/krb5-32bit-1.6.3-132.3.1.x86_64.rpm http://download.opensuse.org/update/11.1/rpm/x86_64/krb5-32bit-1.6.3-132.5.1.x86_64.rpm http://download.opensuse.org/update/11.1/rpm/x86_64/krb5-apps-clients-1.6.3-132.3.1.x86_64.rpm http://download.opensuse.org/update/11.1/rpm/x86_64/krb5-apps-clients-1.6.3-132.5.1.x86_64.rpm http://download.opensuse.org/update/11.1/rpm/x86_64/krb5-apps-servers-1.6.3-132.3.1.x86_64.rpm http://download.opensuse.org/update/11.1/rpm/x86_64/krb5-apps-servers-1.6.3-132.5.1.x86_64.rpm http://download.opensuse.org/update/11.1/rpm/x86_64/krb5-client-1.6.3-132.3.1.x86_64.rpm http://download.opensuse.org/update/11.1/rpm/x86_64/krb5-client-1.6.3-132.5.1.x86_64.rpm http://download.opensuse.org/update/11.1/rpm/x86_64/krb5-devel-1.6.3-132.3.1.x86_64.rpm http://download.opensuse.org/update/11.1/rpm/x86_64/krb5-devel-1.6.3-132.5.1.x86_64.rpm http://download.opensuse.org/update/11.1/rpm/x86_64/krb5-devel-32bit-1.6.3-132.3.1.x86_64.rpm http://download.opensuse.org/update/11.1/rpm/x86_64/krb5-devel-32bit-1.6.3-132.5.1.x86_64.rpm http://download.opensuse.org/update/11.1/rpm/x86_64/krb5-server-1.6.3-132.3.1.x86_64.rpm http://download.opensuse.org/update/11.1/rpm/x86_64/krb5-server-1.6.3-132.5.1.x86_64.rpm openSUSE 11.0: http://download.opensuse.org/debug/update/11.0/rpm/x86_64/krb5-debuginfo-1.6.3-50.3.x86_64.rpm http://download.opensuse.org/debug/update/11.0/rpm/x86_64/krb5-debuginfo-1.6.3-50.5.x86_64.rpm http://download.opensuse.org/debug/update/11.0/rpm/x86_64/krb5-debugsource-1.6.3-50.3.x86_64.rpm http://download.opensuse.org/debug/update/11.0/rpm/x86_64/krb5-debugsource-1.6.3-50.5.x86_64.rpm http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-1.6.3-50.3.x86_64.rpm http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-1.6.3-50.5.x86_64.rpm http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-32bit-1.6.3-50.3.x86_64.rpm http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-32bit-1.6.3-50.5.x86_64.rpm http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-apps-clients-1.6.3-50.3.x86_64.rpm http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-apps-clients-1.6.3-50.5.x86_64.rpm http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-apps-servers-1.6.3-50.3.x86_64.rpm http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-apps-servers-1.6.3-50.5.x86_64.rpm http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-client-1.6.3-50.3.x86_64.rpm http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-client-1.6.3-50.5.x86_64.rpm http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-devel-1.6.3-50.3.x86_64.rpm http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-devel-1.6.3-50.5.x86_64.rpm http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-devel-32bit-1.6.3-50.3.x86_64.rpm http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-devel-32bit-1.6.3-50.5.x86_64.rpm http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-server-1.6.3-50.3.x86_64.rpm http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-server-1.6.3-50.5.x86_64.rpm openSUSE 10.3: http://download.opensuse.org/update/10.3/rpm/x86_64/krb5-1.6.2-22.7.x86_64.rpm http://download.opensuse.org/update/10.3/rpm/x86_64/krb5-1.6.2-22.9.x86_64.rpm http://download.opensuse.org/update/10.3/rpm/x86_64/krb5-32bit-1.6.2-22.7.x86_64.rpm http://download.opensuse.org/update/10.3/rpm/x86_64/krb5-32bit-1.6.2-22.9.x86_64.rpm http://download.opensuse.org/update/10.3/rpm/x86_64/krb5-apps-clients-1.6.2-22.7.x86_64.rpm http://download.opensuse.org/update/10.3/rpm/x86_64/krb5-apps-clients-1.6.2-22.9.x86_64.rpm http://download.opensuse.org/update/10.3/rpm/x86_64/krb5-apps-servers-1.6.2-22.7.x86_64.rpm http://download.opensuse.org/update/10.3/rpm/x86_64/krb5-apps-servers-1.6.2-22.9.x86_64.rpm http://download.opensuse.org/update/10.3/rpm/x86_64/krb5-client-1.6.2-22.7.x86_64.rpm http://download.opensuse.org/update/10.3/rpm/x86_64/krb5-client-1.6.2-22.9.x86_64.rpm http://download.opensuse.org/update/10.3/rpm/x86_64/krb5-devel-1.6.2-22.7.x86_64.rpm http://download.opensuse.org/update/10.3/rpm/x86_64/krb5-devel-1.6.2-22.9.x86_64.rpm http://download.opensuse.org/update/10.3/rpm/x86_64/krb5-devel-32bit-1.6.2-22.7.x86_64.rpm http://download.opensuse.org/update/10.3/rpm/x86_64/krb5-devel-32bit-1.6.2-22.9.x86_64.rpm http://download.opensuse.org/update/10.3/rpm/x86_64/krb5-server-1.6.2-22.7.x86_64.rpm http://download.opensuse.org/update/10.3/rpm/x86_64/krb5-server-1.6.2-22.9.x86_64.rpm Sources: openSUSE 11.1: http://download.opensuse.org/update/11.1/rpm/src/krb5-1.6.3-132.3.1.src.rpm http://download.opensuse.org/update/11.1/rpm/src/krb5-1.6.3-132.5.1.src.rpm openSUSE 11.0: http://download.opensuse.org/update/11.0/rpm/src/krb5-1.6.3-50.3.src.rpm http://download.opensuse.org/update/11.0/rpm/src/krb5-1.6.3-50.5.src.rpm openSUSE 10.3: http://download.opensuse.org/update/10.3/rpm/src/krb5-1.6.2-22.7.src.rpm http://download.opensuse.org/update/10.3/rpm/src/krb5-1.6.2-22.9.src.rpm SUSE Linux Enterprise Server 10 SP2 http://download.novell.com/index.jsp?search=Search&keywords=77958995d1329c7d886c1d9558d79cac SLE SDK 10 SP2 http://download.novell.com/index.jsp?search=Search&keywords=77958995d1329c7d886c1d9558d79cac SUSE Linux Enterprise 10 SP2 DEBUGINFO http://download.novell.com/index.jsp?search=Search&keywords=77958995d1329c7d886c1d9558d79cac SUSE Linux Enterprise Desktop 10 SP2 http://download.novell.com/index.jsp?search=Search&keywords=77958995d1329c7d886c1d9558d79cac SLES 11 http://download.novell.com/index.jsp?search=Search&keywords=077b202d02c16bdd595a5ac0beb7479b SLED 11 http://download.novell.com/index.jsp?search=Search&keywords=077b202d02c16bdd595a5ac0beb7479b SLE 11 http://download.novell.com/index.jsp?search=Search&keywords=077b202d02c16bdd595a5ac0beb7479b SLES 11 DEBUGINFO http://download.novell.com/index.jsp?search=Search&keywords=077b202d02c16bdd595a5ac0beb7479b ORIGINAL ADVISORY: SUSE-SA:2009:019: http://lists.opensuse.org/opensuse-security-announce/2009-04/msg00005.html OTHER REFERENCES: SA34347: http://secunia.com/advisories/34347/ ---------------------------------------------------------------------- About: This Advisory was delivered by Secunia as a free service to help everybody keeping their systems up to date against the latest vulnerabilities. Subscribe: http://secunia.com/advisories/secunia_security_advisories/ Definitions: (Criticality, Where etc.) http://secunia.com/advisories/about_secunia_advisories/ Please Note: Secunia recommends that you verify all advisories you receive by clicking the link. Secunia NEVER sends attached files with advisories. Secunia does not advise people to install third party patches, only use those supplied by the vendor. ---------------------------------------------------------------------- Unsubscribe: Secunia Security Advisories http://secunia.com/sec_adv_unsubscribe/?email=packet%40packetstormsecurity.org ----------------------------------------------------------------------