Paketname
libsoup
Datum
2009-03-27
Advisory ID
MDVSA-2009:081
Betroffene Versionen
CS3.0 i586 , CS3.0 x86_64 , 2008.0 i586 , 2008.0 x86_64

Problembeschreibung

An integer overflow in libsoup Base64 encoding and decoding functions
enables attackers either to cause denial of service and to execute
arbitrary code (CVE-2009-0585).

This update provides the fix for that security issue.

Aktualisierte Pakete

CS3.0 i586

 05c986deeb98dd73e1ac22d23ff605ae  corporate/3.0/i586/libsoup-1.99.28-1.2.C30mdk.i586.rpm
 e99b68c6c991d6a97698bf9b08bdf854  corporate/3.0/i586/libsoup-2.0_0-1.99.28-1.2.C30mdk.i586.rpm
 f67bb628913f0a17f6b29cb2cbc5aa6f  corporate/3.0/i586/libsoup-2.0_0-devel-1.99.28-1.2.C30mdk.i586.rpm 
 2e1a20ca0d80dcf735855a5f95347646  corporate/3.0/SRPMS/libsoup-1.99.28-1.2.C30mdk.src.rpm

CS3.0 x86_64

 e7863b68562e8f2ea4eebb1d5c4ce05c  corporate/3.0/x86_64/lib64soup-2.0_0-1.99.28-1.2.C30mdk.x86_64.rpm
 50fd063851379413327a6878fbe44bf3  corporate/3.0/x86_64/lib64soup-2.0_0-devel-1.99.28-1.2.C30mdk.x86_64.rpm
 dc97738bc5397ea6290372e6fa13bc90  corporate/3.0/x86_64/libsoup-1.99.28-1.2.C30mdk.x86_64.rpm 
 2e1a20ca0d80dcf735855a5f95347646  corporate/3.0/SRPMS/libsoup-1.99.28-1.2.C30mdk.src.rpm

2008.0 i586

 1972c4b9fcdd24c4e58a5d8126934192  2008.0/i586/libsoup-2.2_8-2.2.100-1.1mdv2008.0.i586.rpm
 bdd6df7a38ef005ee0f04783dee36756  2008.0/i586/libsoup-2.2_8-devel-2.2.100-1.1mdv2008.0.i586.rpm 
 c99c9cabb6fd1391dc3b97850c259694  2008.0/SRPMS/libsoup-2.2.100-1.1mdv2008.0.src.rpm

2008.0 x86_64

 237ddbddfbee3f0f91a752e4b7433a07  2008.0/x86_64/lib64soup-2.2_8-2.2.100-1.1mdv2008.0.x86_64.rpm
 78d90baeb9b5ac5f405577386c68159f  2008.0/x86_64/lib64soup-2.2_8-devel-2.2.100-1.1mdv2008.0.x86_64.rpm 
 c99c9cabb6fd1391dc3b97850c259694  2008.0/SRPMS/libsoup-2.2.100-1.1mdv2008.0.src.rpm

Referenzen