Secunia Logo
 
EnGarde update for OpenSSH
Secunia Advisory: SA9744
Release Date: 2003-09-16
Last Update: 2003-09-19
Popularity: 5,946 views

Critical:
Highly critical
Impact: DoS
System access
Where: From remote
Solution Status: Vendor Patch

OS:EnGarde Secure Community 1.x
EnGarde Secure Community 2.x
EnGarde Secure Professional 1.x

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2003-0693
CVE-2003-0695
CVE-2003-0682


Description:
Guardian Digital has issued updated packages to fix the "buffer_append_space()" vulnerability.

For more information see:
SA9743

Solution:
Updates are available from Guardian Digital Secure Network.

Source Packages:

SRPMS/OpenSSH-3.4p1-1.0.24.src.rpm
MD5 Sum: 99fe7fb778502a2052bf77820c98e75f

Binary Packages:

i386/OpenSSH-3.4p1-1.0.24.i386.rpm
MD5 Sum: 47c27d82dedff376039757b982a64354

i386/OpenSSH-clients-3.4p1-1.0.24.i386.rpm
MD5 Sum: 033b6c372912ead498da72e61b726af5

i386/OpenSSH-server-3.4p1-1.0.24.i386.rpm
MD5 Sum: 9b9564ca3cbf8dd6f9a56fb19c2bbb7a

i686/OpenSSH-3.4p1-1.0.24.i686.rpm
MD5 Sum: 62b9c11f36e8ce38221d5eb31bf5e7f3

i686/OpenSSH-clients-3.4p1-1.0.24.i686.rpm
MD5 Sum: b3b382a4b4a5923b02f5eac7a1d35290

i686/OpenSSH-server-3.4p1-1.0.24.i686.rpm
MD5 Sum: 513893fc0ad8eda5ffdfc2f79c820e45

Changelog:
2003-09-19: Updated advisory with information about new packages which also fixes CAN-2003-0682 and CAN-2003-0695.

Original Advisory:
http://www.linuxsecurity.com/advisories/engarde_advisory-3621.html
http://www.linuxsecurity.com/advisories/engarde_advisory-3649.html

Other References:
SA9743:
http://secunia.com/advisories/9743/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. Sun Java JDK / JRE Multiple Vulnerabilities // 99 views
2. VMware ESX / ESXi Virtual Hardware Memory Corruption Vulnerability // 55 views
3. SquirrelMail Malformed HTML Mail Message Script Insertion // 55 views
4. VMware ESX Server update for bzip2 // 54 views
5. Subdreamer Light Global Variables SQL Injection Vulnerability // 46 views
6. Adobe Flash Player Multiple Security Issues and Vulnerabilities // 41 views
7. HP-UX Unspecified Local Denial of Service Vulnerability // 41 views
8. phpBB Avatar Functions Information Disclosure and Deletion // 40 views
9. mvnForum Unspecified Cross-Site Scripting and Request Forgery // 37 views
10. Kolab Server ClamAV Multiple Vulnerabilities // 34 views