kdenetwork-4.3.4-11.AXS4.1
エラータID: AXSA:2011-169:01
リリース日:
2011/04/28 Thursday - 15:45
題名:
kdenetwork-4.3.4-11.AXS4.1
影響のあるチャネル:
Asianux Server 4 for x86
Asianux Server 4 for x86_64
Severity:
High
Description:
Networking applications, including:
* kget: downloader manager
* kopete: chat client
* kppp: dialer and front end for pppd
* krdc: a client for Desktop Sharing and other VNC servers
* krfb: Desktop Sharing server, allow others to access your desktop via VNC
Security issues fixed with this release:
CVE-2011-1586
Directory traversal vulnerability in the KGetMetalink::File::isValidNameAttr function in ui/metalinkcreator/metalinker.cpp in KGet in KDE SC 4.6.2 and earlier allows remote attackers to create arbitrary files via a .. (dot dot) in the name attribute of a file element in a metalink file. NOTE: this vulnerability exists because of an incomplete fix for CVE-2010-1000.
解決策:
Update packages.
CVE:
CVE-2011-1586
Directory traversal vulnerability in the KGetMetalink::File::isValidNameAttr function in ui/metalinkcreator/metalinker.cpp in KGet in KDE SC 4.6.2 and earlier allows remote attackers to create arbitrary files via a .. (dot dot) in the name attribute of a file element in a metalink file. NOTE: this vulnerability exists because of an incomplete fix for CVE-2010-1000.
Directory traversal vulnerability in the KGetMetalink::File::isValidNameAttr function in ui/metalinkcreator/metalinker.cpp in KGet in KDE SC 4.6.2 and earlier allows remote attackers to create arbitrary files via a .. (dot dot) in the name attribute of a file element in a metalink file. NOTE: this vulnerability exists because of an incomplete fix for CVE-2010-1000.
追加情報:
N/A
ダウンロード:
SRPMS
- kdenetwork-4.3.4-11.AXS4.1.src.rpm
MD5: 474e40b075a32b9a82e94f6f8650649e
SHA-256: 642b66d50eebc79c3e7f5ea0b56bae7dcac14872a4361299016a01424723fe1f
Size: 7.40 MB
Asianux Server 4 for x86
- kdenetwork-4.3.4-11.AXS4.1.i686.rpm
MD5: e27eca85a35273dd79de5235c1b2499c
SHA-256: 3c6c63298f618636fe3148e72ccac5d790ae7c554e8f1bb4c0022686b747d9ae
Size: 7.50 MB - kdenetwork-devel-4.3.4-11.AXS4.1.i686.rpm
MD5: 499a6f9873cec340a2b15913d2734ce3
SHA-256: 0dcc909b9fbcf6b7518001b8ba5e3c38bc86e3d23419db760eacffc1720ed17b
Size: 107.77 kB - kdenetwork-libs-4.3.4-11.AXS4.1.i686.rpm
MD5: 55cb52a410690effb4d623f523bf171f
SHA-256: c951de411b2d4224f56f1561c9fc8adcb5c0bbc2510fd7ffc81070bc92582f44
Size: 1.41 MB
Asianux Server 4 for x86_64
- kdenetwork-4.3.4-11.AXS4.1.x86_64.rpm
MD5: 9298e3a7739da0a1b6eec56be6d3f85e
SHA-256: 9519fc4ccf47e76993e980da53796b37fb2d72a9e0310041c64f087968104109
Size: 7.49 MB - kdenetwork-devel-4.3.4-11.AXS4.1.x86_64.rpm
MD5: 17823b001daa628f4a26f5dbc76f70ae
SHA-256: 2fbc6b44474981ce02866b51c568574d978875066010ee9400229745b447998e
Size: 107.45 kB - kdenetwork-libs-4.3.4-11.AXS4.1.x86_64.rpm
MD5: 9bbc9ae35fbcc8598622fade38e8a608
SHA-256: 0e8417dd8bc1232b76219e9bd47143f66079141a17f4930044e492f00e4f121a
Size: 1.41 MB - kdenetwork-devel-4.3.4-11.AXS4.1.i686.rpm
MD5: 499a6f9873cec340a2b15913d2734ce3
SHA-256: 0dcc909b9fbcf6b7518001b8ba5e3c38bc86e3d23419db760eacffc1720ed17b
Size: 107.77 kB - kdenetwork-libs-4.3.4-11.AXS4.1.i686.rpm
MD5: 55cb52a410690effb4d623f523bf171f
SHA-256: c951de411b2d4224f56f1561c9fc8adcb5c0bbc2510fd7ffc81070bc92582f44
Size: 1.41 MB