Debian Security Advisory - During internal source code auditing by FreeBSD several buffer overflows were found which allow an attacker to make tcpdump crash by sending carefully crafted packets to a network that is being monitored with tcpdump. This has been fixed in version 3.4a6-4.2.
981b5990cc1763ea7fa96ba1ea6c7d1929d17c49f3c800a820e0927f9e249b7f
-----BEGIN PGP SIGNED MESSAGE-----
- ------------------------------------------------------------------------
Debian Security Advisory security@debian.org
https://www.debian.org/security/ Wichert Akkerman
November 20, 2000
- ------------------------------------------------------------------------
Package: tcpdump
Vulnerability: remote exploit
Debian-specific: no
During internal source code auditing by FreeBSD several buffer overflows
were found which allow an attacker to make tcpdump crash by sending
carefully crafted packets to a network that is being monitored with
tcpdump.
This has been fixed in version 3.4a6-4.2.
wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.
You may use an automated update by adding the resources from the
footer to the proper configuration.
Debian GNU/Linux 2.2 alias potato
- ---------------------------------
Potato was released for the alpha, arm, i386, m68k, powerpc and sparc
architectures.
Source archives:
https://security.debian.org/dists/stable/updates/main/source/tcpdump_3.4a6-4.2.diff.gz
MD5 checksum: 62a63a125250c0d636a6658910e0955b
https://security.debian.org/dists/stable/updates/main/source/tcpdump_3.4a6-4.2.dsc
MD5 checksum: 733e906052de894eddce7fa27437b1b2
https://security.debian.org/dists/stable/updates/main/source/tcpdump_3.4a6.orig.tar.gz
MD5 checksum: 8133ffe2af22d66c70419f48a42ac675
Alpha architecture:
https://security.debian.org/dists/stable/updates/main/binary-alpha/tcpdump_3.4a6-4.2_alpha.deb
MD5 checksum: 7f89d984dbe54116c5aa34aae93e5357
ARM architecture:
https://security.debian.org/dists/stable/updates/main/binary-arm/tcpdump_3.4a6-4.2_arm.deb
MD5 checksum: 69dd2892ef04adf55f74b80828c26f5e
Intel ia32 architecture:
https://security.debian.org/dists/stable/updates/main/binary-i386/tcpdump_3.4a6-4.2_i386.deb
MD5 checksum: 906068aaeebbcb5f50ea1b2dd1aec4c0
Motorola 680x0 architecture:
https://security.debian.org/dists/stable/updates/main/binary-m68k/tcpdump_3.4a6-4.2_m68k.deb
MD5 checksum: 17c6feed12c3875d051659526f16393f
PowerPC architecture:
https://security.debian.org/dists/stable/updates/main/binary-powerpc/tcpdump_3.4a6-4.2_powerpc.deb
MD5 checksum: c850bdecfe6aded7728ef4b6d6549d8e
Sun Sparc architecture:
https://security.debian.org/dists/stable/updates/main/binary-sparc/tcpdump_3.4a6-4.2_sparc.deb
MD5 checksum: b7fbc7275e859c0b0db165349ecafaf0
For not yet released architectures please refer to the appropriate
directory ftp://ftp.debian.org/debian/dists/sid/binary-$arch/ .
- --
- ----------------------------------------------------------------------------
apt-get: deb https://security.debian.org/ stable/updates main
dpkg-ftp:ftp://security.debian.org/debian-security dists/stable/updates/main
Mailing list: debian-security-announce@lists.debian.org
-----BEGIN PGP SIGNATURE-----
Version: 2.6.3ia
Charset: noconv
iQB1AwUBOhk/wajZR/ntlUftAQFcTQL/Q3ohrdi6i54TvSrKMqZAKB5IHmI2tGjJ
1ekH9BKUBGsRk3kab6YfIORRRrX/+GjZuSc7yVJTgfvZkPrQwl0JJ8hbt4mxjuXk
84k5w2XNPPE49bCQmnPkOYq75QEoe7h7
=t6ju
-----END PGP SIGNATURE-----
--
To UNSUBSCRIBE, email to debian-security-announce-request@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org