Vipul Razor Agents 多个未知拒绝服务漏洞

漏洞信息详情

Vipul Razor Agents 多个未知拒绝服务漏洞

漏洞简介

Vipul Razor Agents (razor-agents) 2.70之前的版本中,攻击者可借助:(1)某个\”异常HTML消息\”,或(2)\”某些畸形头\”,例如内容类型,来触发拒绝服务攻击。

漏洞公告

目前厂商已经发布了升级补丁以修复这个安全问题,补丁下载链接:

Vipul razor-agents 2.126

SuSE razor-agents-2.126-122.i586.rpm

SUSE Linux 8.2:

ftp://ftp.suse.com/pub/suse/i386/update/8.2/rpm/i586/razor-agents-2.12 6-122.i586.rpm

Vipul razor-agents 2.34

SuSE razor-agents-2.34-54.i586.rpm

SUSE Linux 9.0:

ftp://ftp.suse.com/pub/suse/i386/update/9.0/rpm/i586/razor-agents-2.34 -54.i586.rpm

SuSE razor-agents-2.34-54.x86_64.rpm

SUSE Linux 9.0:

ftp://ftp.suse.com/pub/suse/x86_64/update/9.0/rpm/x86_64/razor-agents- 2.34-54.x86_64.rpm

Vipul razor-agents 2.36

SuSE razor-agents-2.36-59.4.i586.rpm

SUSE Linux 9.1:

ftp://ftp.suse.com/pub/suse/i386/update/9.1/rpm/i586/razor-agents-2.36 -59.4.i586.rpm

SuSE razor-agents-2.36-59.4.x86_64.rpm

SUSE Linux 9.1:

ftp://ftp.suse.com/pub/suse/x86_64/update/9.1/rpm/x86_64/razor-agents- 2.36-59.4.x86_64.rpm

Vipul razor-agents 2.61

SuSE razor-agents-2.61-3.2.i586.rpm

SUSE Linux 9.2:

ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/i586/razor-agents-2.61 -3.2.i586.rpm

SuSE razor-agents-2.61-3.2.x86_64.rpm

SUSE Linux 9.2:

ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/x86_64/razor-agents-2. 61-3.2.x86_64.rpm

Vipul razor-agents 2.67

Debian razor_2.670-1sarge2_alpha.deb

Debian 3.1 (sarge)

http://security.debian.org/pool/updates/main/r/razor/razor_2.670-1sarg e2_alpha.deb

Debian razor_2.670-1sarge2_amd64.deb

Debian GNU/Linux 3.1 alias sarge

http://security.debian.org/pool/updates/main/r/razor/razor_2.670-1sarg e2_amd64.deb

Debian razor_2.670-1sarge2_arm.deb

Debian 3.1 (sarge)

http://security.debian.org/pool/updates/main/r/razor/razor_2.670-1sarg e2_arm.deb

Debian razor_2.670-1sarge2_hppa.deb

Debian 3.1 (sarge)

http://security.debian.org/pool/updates/main/r/razor/razor_2.670-1sarg e2_hppa.deb

Debian razor_2.670-1sarge2_i386.deb

Debian 3.1 (sarge)

http://security.debian.org/pool/updates/main/r/razor/razor_2.670-1sarg e2_i386.deb

Debian razor_2.670-1sarge2_ia64.deb

Debian 3.1 (sarge)

http://security.debian.org/pool/updates/main/r/razor/razor_2.670-1sarg e2_ia64.deb

Debian razor_2.670-1sarge2_m68k.deb

Debian 3.1 (sarge)

http://security.debian.org/pool/updates/main/r/razor/razor_2.670-1sarg e2_m68k.deb

Debian razor_2.670-1sarge2_mips.deb

Debian 3.1 (sarge)

http://security.debian.org/pool/updates/main/r/razor/razor_2.670-1sarg e2_mips.deb

Debian razor_2.670-1sarge2_mipsel.deb

Debian 3.1 (sarge)

http://security.debian.org/pool/updates/main/r/razor/razor_2.670-1sarg e2_mipsel.deb

Debian razor_2.670-1sarge2_powerpc.deb

Debian 3.1 (sarge)

http://security.debian.org/pool/updates/main/r/razor/razor_2.670-1sarg e2_powerpc.deb

Debian razor_2.670-1sarge2_s390.deb

Debian 3.1 (sarge)

http://security.debian.org/pool/updates/main/r/razor/razor_2.670-1sarg e2_s390.deb

Debian razor_2.670-1sarge2_sparc.deb

Debian 3.1 (sarge)

http://security.debian.org/pool/updates/main/r/razor/razor_2.670-1sarg e2_sparc.deb

SuSE razor-agents-2.67-3.2.i586.rpm

SUSE Linux 9.3:

ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/i586/razor-agents-2.67 -3.2.i586.rpm

SuSE razor-agents-2.67-3.2.x86_64.rpm

SUSE Linux 9.3:

ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/x86_64/razor-agents-2. 67-3.2.x86_64.rpm

Vipul razor-agents 2.70

Vipul razor-agents-2.72.tar.gz

http://prdownloads.sourceforge.net/razor/razor-agents-2.72.tar.gz?down load

Vipul razor-agents-2.74.tar.bz2

http://prdownloads.sourceforge.net/razor/razor-agents-2.74.tar.bz2?dow nload

Vipul razor-agents 2.71

Vipul razor-agents-2.72.tar.gz

http://prdownloads.sourceforge.net/razor/razor-agents-2.72.tar.gz?down load

Vipul razor-agents-2.74.tar.bz2

http://prdownloads.sourceforge.net/razor/razor-agents-2.74.tar.bz2?dow nload

Vipul razor-agents 2.72

Vipul razor-agents-2.74.tar.bz2

http://prdownloads.sourceforge.net/razor/razor-agents-2.74.tar.bz2?dow nload

参考网址

来源: BID

名称: 13984

链接:http://www.securityfocus.com/bid/13984

来源: sourceforge.net

链接:http://sourceforge.net/mailarchive/forum.php?thread_id=7520323&forum_id=4259

来源: GENTOO

名称: GLSA-200506-17

链接:http://security.gentoo.org/glsa/glsa-200506-17.xml

来源: MISC

链接:http://bugs.gentoo.org/show_bug.cgi?id=95492

来源: SUSE

名称: SUSE-SA:2005:035

链接:http://www.novell.com/linux/security/advisories/2005_35_razor_agents.html

来源: DEBIAN

名称: DSA-738

链接:http://www.debian.org/security/2005/dsa-738

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享