Secunia Logo
 
Debian update for Eterm
Secunia Advisory: SA8986
Release Date: 2003-06-10
Last Update: 2003-06-12
Popularity: 5,963 views

Critical:
Less critical
Impact: Privilege escalation
Where: Local system
Solution Status: Vendor Patch

OS:Debian GNU/Linux 3.0
Debian GNU/Linux unstable alias sid

Subscribe: Instant alerts on relevant vulnerabilities


Description:
Debian has released updated packages for eterm. These fix a vulnerability, which can be exploited by malicious, local users to escalate their privileges on a vulnerable system.

The vulnerability is caused due to a boundary error, when handling the content of the "ETERMPATH" environment variable. This can be exploited by manipulating the environment variable, which can result in a buffer overflow.

Successful exploitation allows execution of arbitrary code with the privileges of the group "utmp".

Solution:
Debian have issued new packages due to a bug in the previous release.

Updated packages:

Debian GNU/Linux 3.0 alias woody

Source archives:

http://security.debian.org/pool/updat...term/eterm_0.9.2-0pre2002042903.2.dsc
Size/MD5 checksum: 580 5c0ae65bf55b15b1106c3a61a3dca885
http://security.debian.org/pool/updat...m/eterm_0.9.2-0pre2002042903.2.tar.gz
Size/MD5 checksum: 669252 5731a6c8b112a4efbc972ed3aa79fda9

Alpha architecture:

http://security.debian.org/pool/updat...term_0.9.2-0pre2002042903.2_alpha.deb
Size/MD5 checksum: 389946 ff9d406f610da8e9d44acfa3c84d523f

ARM architecture:

http://security.debian.org/pool/updat.../eterm_0.9.2-0pre2002042903.2_arm.deb
Size/MD5 checksum: 374188 229c86418aefa76f1204c996bf76dbee

Intel IA-32 architecture:

http://security.debian.org/pool/updat...eterm_0.9.2-0pre2002042903.2_i386.deb
Size/MD5 checksum: 332428 e7caf3c5d19c4b044d66f1a778dbdab0

Intel IA-64 architecture:

http://security.debian.org/pool/updat...eterm_0.9.2-0pre2002042903.2_ia64.deb
Size/MD5 checksum: 450248 973718a70de16cacca8c9eb3544775e3

HP Precision architecture:

http://security.debian.org/pool/updat...eterm_0.9.2-0pre2002042903.2_hppa.deb
Size/MD5 checksum: 390280 00e161a913a93c2b11e7ae9c5fde3f65

Motorola 680x0 architecture:

http://security.debian.org/pool/updat...eterm_0.9.2-0pre2002042903.2_m68k.deb
Size/MD5 checksum: 336910 45114c79be0ae424d232a3e69363bc0b

Big endian MIPS architecture:

http://security.debian.org/pool/updat...eterm_0.9.2-0pre2002042903.2_mips.deb
Size/MD5 checksum: 335870 3aa9befa2a9881f5a8fca12b2da57004

Little endian MIPS architecture:

http://security.debian.org/pool/updat...erm_0.9.2-0pre2002042903.2_mipsel.deb
Size/MD5 checksum: 335080 d8f689f223fd20712d080009c82e5313

PowerPC architecture:

http://security.debian.org/pool/updat...rm_0.9.2-0pre2002042903.2_powerpc.deb
Size/MD5 checksum: 365272 2ae5e7b431ea0773be76909b9b904621

IBM S/390 architecture:

http://security.debian.org/pool/updat...eterm_0.9.2-0pre2002042903.2_s390.deb
Size/MD5 checksum: 356198 df740938f6e6eaa9841d03250dfdfee7

Sun Sparc architecture:

http://security.debian.org/pool/updat...term_0.9.2-0pre2002042903.2_sparc.deb
Size/MD5 checksum: 368926 e3df2fa45e0dde1fbf20cd2792459ec9

Provided and/or discovered by:
bazarr

Changelog:
2003-06-12 Debian have issued new packages due to a bug in the previous release.

Original Advisory:
http://www.debian.org/security/2003/dsa-309-2


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. Sun Java JDK / JRE Multiple Vulnerabilities // 67 views
2. Linksys WRT160N Cross-Site Scripting Vulnerability // 31 views
3. ClamAV "cli_check_jpeg_exploit()" Denial of Service Vulnerability // 30 views
4. Adobe Acrobat/Reader Multiple Vulnerabilities // 29 views
5. IBM Rational ClearQuest Multiple Vulnerabilities // 26 views
6. Debian update for flamethrower // 26 views
7. IBM Rational ClearCase Cross-Site Scripting Vulnerability // 23 views
8. Mozilla Firefox 3 Multiple Vulnerabilities // 22 views
9. Zaptel "ZT_SPANCONFIG" IOCTL Privilege Escalation Vulnerabilities // 22 views
10. bcoos "cid" SQL Injection Vulnerability // 21 views