Login
Newsletter
Werbung

Sicherheit: Denial of Service in Quassel
Aktuelle Meldungen Distributionen
Name: Denial of Service in Quassel
ID: USN-1200-1
Distribution: Ubuntu
Plattformen: Ubuntu 10.04 LTS, Ubuntu 10.10, Ubuntu 11.04
Datum: So, 11. September 2011, 09:47
Referenzen: Keine Angabe
Applikationen: Quassel

Originalnachricht


--===============2454736860385601647==
Content-Type: multipart/signed; micalg="pgp-sha512";
protocol="application/pgp-signature";
boundary="=-quJjvIeQG30DNliz1pNJ"


--=-quJjvIeQG30DNliz1pNJ
Content-Type: text/plain; charset="UTF-8
Content-Transfer-Encoding: quoted-printable

==========================================================================
Ubuntu Security Notice USN-1200-1
September 10, 2011

quassel vulnerability
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 11.04
- Ubuntu 10.10
- Ubuntu 10.04 LTS

Summary:

A remote attacker could send crafted input to Quassel and cause it to
crash.

Software Description:
- quassel: KDE/Qt-based IRC client

Details:

It was discovered that Quassel did not properly handle CTCP requests. A
remote attacker could exploit this to cause a denial of service via
application crash.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 11.04:
quassel-core 0.7.2-0ubuntu2.2

Ubuntu 10.10:
quassel-core 0.7.1-0ubuntu1.1

Ubuntu 10.04 LTS:
quassel-core 0.6.1-0ubuntu1.2

After a standard system update you need to restart Quassel to make all the
necessary changes.

References:
http://www.ubuntu.com/usn/usn-1200-1
https://launchpad.net/bugs/845707

Package Information:
https://launchpad.net/ubuntu/+source/quassel/0.7.2-0ubuntu2.2
https://launchpad.net/ubuntu/+source/quassel/0.7.1-0ubuntu1.1
https://launchpad.net/ubuntu/+source/quassel/0.6.1-0ubuntu1.2



--ÚuJjvIeQG30DNliz1pNJ
Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: This is a digitally signed message part
Content-Transfer-Encoding: 7bit

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)
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=5Otd
-----END PGP SIGNATURE-----

--=-quJjvIeQG30DNliz1pNJ--



--===============2454736860385601647==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

--
ubuntu-security-announce mailing list
ubuntu-security-announce@lists.ubuntu.com
Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-security-announce

--===============2454736860385601647==--
Pro-Linux
Pro-Linux @Facebook
Neue Nachrichten
Werbung