From greg@WIREX.COM Thu Mar 15 19:47:32 2001 From: Greg KH To: BUGTRAQ@SECURITYFOCUS.COM Date: Thu, 15 Mar 2001 16:54:39 -0800 Subject: [BUGTRAQ] Immunix OS Security update for mutt ----------------------------------------------------------------------- Immunix OS Security Advisory Packages updated: mutt Affected products: Immunix OS 6.2, 7.0-beta, and 7.0 Bugs Fixed: immunix/1506 Date: March 15, 2001 Advisory ID: IMNX-2001-70-006-01 Author: Greg Kroah-Hartman ----------------------------------------------------------------------- Description: The version of mutt shipped in Immunix 6.2 has a format string vulnerability. The version of mutt shipped in all Immunix versions contain a problem connecting to some IMAP servers. Immunix 7.0 does not install the mutt package by default but provides it in the extras/unsupported directory so it does not need to be upgraded unless it has been installed manually by the system administrator. Packages have been created and released that fix these problems. Package names and locations: Precompiled binary package for Immunix 6.2 is available at: http://immunix.org/ImmunixOS/6.2/updates/RPMS/mutt-1.2.5i-8.6_StackGuard.i386.rpm Source package for Immunix 6.2 is available at: http://immunix.org/ImmunixOS/6.2/updates/SRPMS/mutt-1.2.5i-8.6_StackGuard.src.rpm Precompiled binary package for Immunix 7.0-beta and 7.0 is available at: http://immunix.org/ImmunixOS/7.0/updates/RPMS/mutt-1.2.5i-8.7_imnx.i386.rpm Source package for Immunix 7.0-beta and 7.0 is available at: http://immunix.org/ImmunixOS/7.0/updates/SRPMS/mutt-1.2.5i-8.7_imnx.src.rpm md5sums of the packages: 5b512a67100fd279feb888f4dbc428ba mutt-1.2.5i-8.6_StackGuard.i386.rpm 2513a4acc78b10e9858dd8db03b4d002 mutt-1.2.5i-8.6_StackGuard.src.rpm 458d22166106d5d92051b703f9c066e6 mutt-1.2.5i-8.7_imnx.i386.rpm 91892c3c4a83acfa2e295e9b42956c9e mutt-1.2.5i-8.7_imnx.src.rpm Online version of all Immunix 6.2 updates and advisories: http://immunix.org/ImmunixOS/6.2/updates/ Online version of all Immunix 7.0-beta updates and advisories: http://immunix.org/ImmunixOS/7.0-beta/updates/ Online version of all Immunix 7.0 updates and advisories: http://immunix.org/ImmunixOS/7.0/updates/ NOTE: Ibiblio is graciously mirroring our updates, so if the links above are slow, please try: ftp://ftp.ibiblio.org/pub/Linux/distributions/immunix/ or one of the many mirrors available at: http://www.ibiblio.org/pub/Linux/MIRRORS.html [Part 2, Application/PGP-SIGNATURE 240bytes] [Unable to print this part]