Debians sikkerhedsbulletin

DSA-037-1 Athena Widget replacement libraries -- usikker håndtering af midlertidige filer

Rapporteret den:
7. mar 2001
Berørte pakker:
nextaw
xaw3d
xaw95
Sårbar:
Ja
Referencer i sikkerhedsdatabaser:
Der er pt. ingen tilgængelige eksterne sikkerhedsreferencer i andre databaser.
Yderligere oplysninger:
Det er blevet rapporteret af AsciiSrc- og MultiSrc-widget'erne i Athena-widget-biblioteket håndterer midlertidige filer usikkert. Joey Hess har overført rettelsen fra XFree86 til disse Xaw-erstatningsbiblioteker. Rettelserne er tilgængelige i nextaw 0.5.1-34potato1, xaw3d 1.3-6.9potato1 og xaw95 1.1-4.6potato1.
Rettet i:

Debian 2.2 (potato)

Kildekode:
http://security.debian.org/dists/stable/updates/main/source/nextaw_0.5.1-34potato1.diff.gz
http://security.debian.org/dists/stable/updates/main/source/nextaw_0.5.1-34potato1.dsc
http://security.debian.org/dists/stable/updates/main/source/nextaw_0.5.1.orig.tar.gz
http://security.debian.org/dists/stable/updates/main/source/xaw3d_1.3-6.9potato1.diff.gz
http://security.debian.org/dists/stable/updates/main/source/xaw3d_1.3-6.9potato1.dsc
http://security.debian.org/dists/stable/updates/main/source/xaw3d_1.3.orig.tar.gz
http://security.debian.org/dists/stable/updates/main/source/xaw95_1.1-4.6potato1.diff.gz
http://security.debian.org/dists/stable/updates/main/source/xaw95_1.1-4.6potato1.dsc
http://security.debian.org/dists/stable/updates/main/source/xaw95_1.1.orig.tar.gz
i386:
http://security.debian.org/dists/stable/updates/main/binary-i386/nextaw_0.5.1-34potato1_i386.deb
http://security.debian.org/dists/stable/updates/main/binary-i386/nextawg_0.5.1-34potato1_i386.deb
http://security.debian.org/dists/stable/updates/main/binary-i386/xaw3d_1.3-6.9potato1_i386.deb
http://security.debian.org/dists/stable/updates/main/binary-i386/xaw3dg-dev_1.3-6.9potato1_i386.deb
http://security.debian.org/dists/stable/updates/main/binary-i386/xaw3dg_1.3-6.9potato1_i386.deb
http://security.debian.org/dists/stable/updates/main/binary-i386/xaw95g_1.1-4.6potato1_i386.deb
m68k:
http://security.debian.org/dists/stable/updates/main/binary-m68k/nextaw_0.5.1-34potato1_m68k.deb
http://security.debian.org/dists/stable/updates/main/binary-m68k/nextawg_0.5.1-34potato1_m68k.deb
http://security.debian.org/dists/stable/updates/main/binary-m68k/xaw3d_1.3-6.9potato1_m68k.deb
http://security.debian.org/dists/stable/updates/main/binary-m68k/xaw3dg-dev_1.3-6.9potato1_m68k.deb
http://security.debian.org/dists/stable/updates/main/binary-m68k/xaw3dg_1.3-6.9potato1_m68k.deb
http://security.debian.org/dists/stable/updates/main/binary-m68k/xaw95g_1.1-4.6potato1_m68k.deb