lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <20030106122427.E21A033817@mail1.tamperd.net> From: aliz at gentoo.org (Daniel Ahlberg) Subject: GLSA: monopd -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - - -------------------------------------------------------------------- GENTOO LINUX SECURITY ANNOUNCEMENT 200301-5 - - -------------------------------------------------------------------- PACKAGE : monopd SUMMARY : buffer overflow DATE : 2003-01-06 12:01 UTC EXPLOIT : remote - - -------------------------------------------------------------------- A buffer overflow exist in the messaging framework which would allow a remote user to execute commands as the user running the game server. More information is available at http://www.securitytracker.com/alerts/2002/Dec/1005856.html SOLUTION It is recommended that all Gentoo Linux users who are running app-games/monopd-0.4.3-r1 or earlier update their systems as follows: emerge rsync emerge monopd emerge clean - - -------------------------------------------------------------------- aliz@...too.org - GnuPG key is available at www.gentoo.org/~aliz hannes@...too.org - - -------------------------------------------------------------------- -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.1 (GNU/Linux) iD8DBQE+GXV0fT7nyhUpoZMRAldIAJ49oOEsaBXIR/44U8C0XTOEFDc/SACfXegN MY3MC9Z3jntQVNeX2i/Ox6c= =iGOW -----END PGP SIGNATURE-----