Gentoo Archives: gentoo-announce

From: Sune Kloppenborg Jeppesen <jaervosz@g.o>
To: gentoo-announce@l.g.o
Cc: bugtraq@×××××××××××××.com, full-disclosure@××××××××××××××.uk, security-alerts@×××××××××××××.com
Subject: [gentoo-announce] [ GLSA 200504-28 ] Heimdal: Buffer overflow vulnerabilities
Date: Thu, 28 Apr 2005 15:08:04
Message-Id: 200504281708.53113.jaervosz@gentoo.org
1 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
2 Gentoo Linux Security Advisory GLSA 200504-28
3 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
4 http://security.gentoo.org/
5 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
6
7 Severity: Normal
8 Title: Heimdal: Buffer overflow vulnerabilities
9 Date: April 28, 2005
10 Bugs: #89861
11 ID: 200504-28
12
13 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
14
15 Synopsis
16 ========
17
18 Buffer overflow vulnerabilities have been found in the telnet client in
19 Heimdal which could lead to execution of arbitrary code.
20
21 Background
22 ==========
23
24 Heimdal is a free implementation of Kerberos 5 that includes a telnet
25 client program.
26
27 Affected packages
28 =================
29
30 -------------------------------------------------------------------
31 Package / Vulnerable / Unaffected
32 -------------------------------------------------------------------
33 1 app-crypt/heimdal < 0.6.4 >= 0.6.4
34
35 Description
36 ===========
37
38 Buffer overflow vulnerabilities in the slc_add_reply() and
39 env_opt_add() functions have been discovered by Gael Delalleau in the
40 telnet client in Heimdal.
41
42 Impact
43 ======
44
45 Successful exploitation would require a vulnerable user to connect to
46 an attacker-controlled host using the telnet client, potentially
47 executing arbitrary code with the permissions of the user running the
48 application.
49
50 Workaround
51 ==========
52
53 There is no known workaround at this time.
54
55 Resolution
56 ==========
57
58 All Heimdal users should upgrade to the latest version:
59
60 # emerge --sync
61 # emerge --ask --oneshot --verbose ">=app-crypt/heimdal-0.6.4"
62
63 References
64 ==========
65
66 [ 1 ] CAN-2005-0468
67 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2005-0468
68 [ 2 ] CAN-2005-0469
69 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2005-0469
70
71 Availability
72 ============
73
74 This GLSA and any updates to it are available for viewing at
75 the Gentoo Security Website:
76
77 http://security.gentoo.org/glsa/glsa-200504-28.xml
78
79 Concerns?
80 =========
81
82 Security is a primary focus of Gentoo Linux and ensuring the
83 confidentiality and security of our users machines is of utmost
84 importance to us. Any security concerns should be addressed to
85 security@g.o or alternatively, you may file a bug at
86 http://bugs.gentoo.org.
87
88 License
89 =======
90
91 Copyright 2005 Gentoo Foundation, Inc; referenced text
92 belongs to its owner(s).
93
94 The contents of this document are licensed under the
95 Creative Commons - Attribution / Share Alike license.
96
97 http://creativecommons.org/licenses/by-sa/2.0