OpenSLP多个未明缓冲区溢出漏洞

漏洞信息详情

OpenSLP多个未明缓冲区溢出漏洞

漏洞简介

OpenSLP before 1.1.5存在多个缓冲区溢出,远程攻击者可以通过有缺陷的SLP包来制造未知的影响。

漏洞公告

目前厂商已经发布了升级补丁以修复这个安全问题,补丁下载链接:

HP HP-UX B.11.11

HP B.11.11 SLP Revision 1.2

ftp://hpuxslp:hpuxslp@hprc.external.hp.com/upgrade_SLP.depot

HP HP-UX B.11.23

HP PHNE_33508

http://itrc.hp.com

OpenSLP OpenSLP 1.0 .0

OpenSLP OpenSLP 1.2.1

http://sourceforge.net/project/showfiles.php?group_id=1730

OpenSLP OpenSLP 1.0.1

OpenSLP OpenSLP 1.2.1

http://sourceforge.net/project/showfiles.php?group_id=1730

OpenSLP OpenSLP 1.0.10

OpenSLP OpenSLP 1.2.1

http://sourceforge.net/project/showfiles.php?group_id=1730

OpenSLP OpenSLP 1.0.11

Mandrake lib64openslp1-1.0.11-5.1.100mdk.amd64.rpm

Mandrake Linux 10.0/AMD64

http://www.mandrakesecure.net/en/ftp.php

Mandrake lib64openslp1-1.0.11-5.1.101mdk.x86_64.rpm

Mandrake Linux 10.1/x86_64

http://www.mandrakesecure.net/en/ftp.php

Mandrake lib64openslp1-1.0.11-5.1.C30mdk.x86_64.rpm

Mandrake Corporate Server 3.0/x86_64

http://www.mandrakesecure.net/en/ftp.php

Mandrake lib64openslp1-devel-1.0.11-5.1.100mdk.amd64.rpm

Mandrake Linux 10.0/AMD64

http://www.mandrakesecure.net/en/ftp.php

Mandrake lib64openslp1-devel-1.0.11-5.1.101mdk.x86_64.rpm

Mandrake Linux 10.1/x86_64

http://www.mandrakesecure.net/en/ftp.php

Mandrake lib64openslp1-devel-1.0.11-5.1.C30mdk.x86_64.rpm

Mandrake Corporate Server 3.0/x86_64

http://www.mandrakesecure.net/en/ftp.php

Mandrake libopenslp1-1.0.11-5.1.100mdk.i586.rpm

Mandrake Linux 10.0

http://www.mandrakesecure.net/en/ftp.php

Mandrake libopenslp1-1.0.11-5.1.101mdk.i586.rpm

Mandrake Linux 10.1

http://www.mandrakesecure.net/en/ftp.php

Mandrake libopenslp1-1.0.11-5.1.C30mdk.i586.rpm

Mandrake Corporate Server 3.0

http://www.mandrakesecure.net/en/ftp.php

Mandrake libopenslp1-devel-1.0.11-5.1.100mdk.i586.rpm

Mandrake Linux 10.0

http://www.mandrakesecure.net/en/ftp.php

Mandrake libopenslp1-devel-1.0.11-5.1.101mdk.i586.rpm

Mandrake Linux 10.1

http://www.mandrakesecure.net/en/ftp.php

Mandrake libopenslp1-devel-1.0.11-5.1.C30mdk.i586.rpm

Mandrake Corporate Server 3.0

http://www.mandrakesecure.net/en/ftp.php

Mandrake openslp-1.0.11-5.1.100mdk.amd64.rpm

Mandrake Linux 10.0/AMD64

http://www.mandrakesecure.net/en/ftp.php

Mandrake openslp-1.0.11-5.1.100mdk.i586.rpm

Mandrake Linux 10.0

http://www.mandrakesecure.net/en/ftp.php

Mandrake openslp-1.0.11-5.1.101mdk.i586.rpm

Mandrake Linux 10.1

http://www.mandrakesecure.net/en/ftp.php

Mandrake openslp-1.0.11-5.1.101mdk.x86_64.rpm

Mandrake Linux 10.1/x86_64

http://www.mandrakesecure.net/en/ftp.php

OpenSLP OpenSLP 1.2.1

http://sourceforge.net/project/showfiles.php?group_id=1730

Ubuntu libslp-dev_1.0.11-7ubuntu0.1_amd64.deb

Ubuntu 4.10 (Warty Warthog)

http://security.ubuntu.com/ubuntu/pool/main/o/openslp/libslp-dev_1.0.1 1-7ubuntu0.1_amd64.deb

Ubuntu libslp-dev_1.0.11-7ubuntu0.1_i386.deb

Ubuntu 4.10 (Warty Warthog)

http://security.ubuntu.com/ubuntu/pool/main/o/openslp/libslp-dev_1.0.1 1-7ubuntu0.1_i386.deb

Ubuntu libslp-dev_1.0.11-7ubuntu0.1_powerpc.deb

Ubuntu 4.10 (Warty Warthog)

http://security.ubuntu.com/ubuntu/pool/main/o/openslp/libslp-dev_1.0.1 1-7ubuntu0.1_powerpc.deb

Ubuntu libslp1_1.0.11-7ubuntu0.1_amd64.deb

Ubuntu 4.10 (Warty Warthog)

http://security.ubuntu.com/ubuntu/pool/main/o/openslp/libslp1_1.0.11-7 ubuntu0.1_amd64.deb

Ubuntu libslp1_1.0.11-7ubuntu0.1_i386.deb

Ubuntu 4.10 (Warty Warthog)

http://security.ubuntu.com/ubuntu/pool/main/o/openslp/libslp1_1.0.11-7 ubuntu0.1_i386.deb

Ubuntu libslp1_1.0.11-7ubuntu0.1_powerpc.deb

Ubuntu 4.10 (Warty Warthog)

http://security.ubuntu.com/ubuntu/pool/main/o/openslp/libslp1_1.0.11-7 ubuntu0.1_powerpc.deb

Ubuntu openslp-doc_1.0.11-7ubuntu0.1_all.deb

Ubuntu 4.10 (Warty Warthog)

http://security.ubuntu.com/ubuntu/pool/main/o/openslp/openslp-doc_1.0. 11-7ubuntu0.1_all.deb

Ubuntu slpd_1.0.11-7ubuntu0.1_amd64.deb

Ubuntu 4.10 (Warty Warthog)

http://security.ubuntu.com/ubuntu/pool/universe/o/openslp/slpd_1.0.11- 7ubuntu0.1_amd64.deb

Ubuntu slpd_1.0.11-7ubuntu0.1_i386.deb

Ubuntu 4.10 (Warty Warthog)

http://security.ubuntu.com/ubuntu/pool/universe/o/openslp/slpd_1.0.11- 7ubuntu0.1_i386.deb

Ubuntu slpd_1.0.11-7ubunt

参考网址

来源: BID

名称: 12792

链接:http://www.securityfocus.com/bid/12792

来源: SECUNIA

名称: 14561

链接:http://secunia.com/advisories/14561

来源: XF

名称: openslp-slp-bo(19683)

链接:http://xforce.iss.net/xforce/xfdb/19683

来源: UBUNTU

名称: USN-98-1

链接:http://www.ubuntulinux.org/support/documentation/usn/usn-98-1

来源: SUSE

名称: SUSE-SA:2005:015

链接:http://www.novell.com/linux/security/advisories/2005_15_openslp.html

来源: GENTOO

名称: GLSA-200503-25

链接:http://www.gentoo.org/security/en/glsa/glsa-200503-25.xml

来源: HP

名称: SSRT061149

链接:http://www.securityfocus.com/archive/1/archive/1/447537/100/0/threaded

来源: MANDRAKE

名称: MDKSA-2005:055

链接:http://www.mandriva.com/security/advisories?name=MDKSA-2005:055

来源: VUPEN

名称: ADV-2006-3879

链接:http://www.frsirt.com/english/advisories/2006/3879

来源: SECUNIA

名称: 22128

链接:http://secunia.com/advisories/22128

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享