首页 -> 安全研究

安全研究

安全漏洞
Gnome Updater 竞争环境漏洞

发布日期:2000-08-22
更新日期:2000-08-22

受影响系统:
Helix Code GNOME Updater 0.5
       - TurboLinux Turbo Linux 6.0.4
       - S.u.S.E. Linux 6.4
       - S.u.S.E. Linux 6.3
       + RedHat Linux 6.2 i386
       - MandrakeSoft Linux Mandrake 7.1
       - Caldera eDesktop 2.4
    Helix Code GNOME Updater 0.4
    Helix Code GNOME Updater 0.3
    Helix Code GNOME Updater 0.2
    Helix Code GNOME Updater 0.1
不受影响系统:

    Helix Code GNOME Updater 0.6
描述:
GNOME 是Helix Code公司开发的用于Unix/Linux的桌面环境,它含有一个组件
updater,自动下载其他组件的新版本并安装之。updater在/tmp目录下保存临时文件,
攻击者可以在那些临时安装包被安装之前替换之,进而损害系统安全性。

<* 来源:Helix Code advisory *>

建议:
Helix Code GNOME Updater 0.5:

Helix Code upgrade Caldera eDesktop 2.4: helix-update-0.6-0_helix_2
http://spidermonkey.helixcode.com/distributions/Caldera-2.4/helix-update-0.60_helix_2.i386.rpm

Helix Code upgrade Linux PPC: helix-update-0.6.0_helix_2
http://spidermonkey.helixcode.com/distributions/LinuxPPC/helix-update-0.6.0_helix_2.ppc.rpm

Helix Code upgrade Mandrake: helix-update-0.6-0mdk_helix_2
http://spidermonkey.helixcode.com/distributions/Mandrake/helix-update-0.6-0mdk_helix_2.i586.rpm

Helix Code upgrade RedHat: helix-update-0.6-0_helix_2
http://spidermonkey.helixcode.com/distributions/RedHat-6/helix-update-0.6-0_helix_2.i386.rpm

Helix Code upgrade Solaris (sparc u64): helix-update-0.6-0_helix_1
http://spidermonkey.helixcode.com/distributions/Solaris/helix-update-0.6-0_helix_1.sparc64.rpm

Helix Code upgrade SuSE 6.3: hupdate-0.6-0_helix_2
http://spidermonkey.helixcode.com/distributions/SuSE/hupdate-0.6-0_helix_2.i386.rpm

Helix Code upgrade SuSE 6.4: hupdate-0.6-0_helix_2
http://spidermonkey.helixcode.com/distributions/SuSE-6.4/hupdate-0.6-0_helix_2.i386.rpm

Helix Code upgrade TurboLinux:: helix-update-0.6-0_helix_3
http://spidermonkey.helixcode.com/distributions/TurboLinux-6/helix-update-0.6-0_helix_3.i386.rpm

Helix Code GNOME Updater 0.4:

Helix Code upgrade Caldera eDesktop 2.4: helix-update-0.6-0_helix_2
http://spidermonkey.helixcode.com/distributions/Caldera-2.4/helix-update-0.6-0_helix_2.i386.rpm

Helix Code upgrade Linux PPC: helix-update-0.6.0_helix_2
http://spidermonkey.helixcode.com/distributions/LinuxPPC/helix-update-0.6.0_helix_2.ppc.rpm

Helix Code upgrade Mandrake: helix-update-0.6-0mdk_helix_2
http://spidermonkey.helixcode.com/distributions/Mandrake/helix-update-0.6-0mdk_helix_2.i586.rpm

Helix Code upgrade RedHat: helix-update-0.6-0_helix_2
http://spidermonkey.helixcode.com/distributions/RedHat-6/helix-update-0.6-0_helix_2.i386.rpm

Helix Code upgrade Solaris (sparc u64): helix-update-0.6-0_helix_1
http://spidermonkey.helixcode.com/distributions/Solaris/helix-update-0.6-0_helix_1.sparc64.rpm

Helix Code upgrade SuSE 6.3: hupdate-0.6-0_helix_2
http://spidermonkey.helixcode.com/distributions/SuSE/hupdate-0.6-0_helix_2.i386.rpm

Helix Code upgrade SuSE 6.4: hupdate-0.6-0_helix_2
http://spidermonkey.helixcode.com/distributions/SuSE-6.4/hupdate-0.6-0_helix_2.i386.rpm

Helix Code upgrade TurboLinux:: helix-update-0.6-0_helix_3
http://spidermonkey.helixcode.com/distributions/TurboLinux-6/helix-update-0.6-0_helix_3.i386.rpm

Helix Code GNOME Updater 0.3:

Helix Code upgrade Caldera eDesktop 2.4: helix-update-0.6-0_helix_2
http://spidermonkey.helixcode.com/distributions/Caldera-2.4/helix-update-0.6-0_helix_2.i386.rpm

Helix Code upgrade Linux PPC: helix-update-0.6.0_helix_2
http://spidermonkey.helixcode.com/distributions/LinuxPPC/helix-update-0.6.0_helix_2.ppc.rpm

Helix Code upgrade Mandrake: helix-update-0.6-0mdk_helix_2
http://spidermonkey.helixcode.com/distributions/Mandrake/helix-update-0.6-0mdk_helix_2.i586.rpm

Helix Code upgrade RedHat: helix-update-0.6-0_helix_2
http://spidermonkey.helixcode.com/distributions/RedHat-6/helix-update-0.6-0_helix_2.i386.rpm

Helix Code upgrade Solaris (sparc u64): helix-update-0.6-0_helix_1
http://spidermonkey.helixcode.com/distributions/Solaris/helix-update-0.6-0_helix_1.sparc64.rpm

Helix Code upgrade SuSE 6.3: hupdate-0.6-0_helix_2
http://spidermonkey.helixcode.com/distributions/SuSE/hupdate-0.6-0_helix_2.i386.rpm

Helix Code upgrade SuSE 6.4: hupdate-0.6-0_helix_2
http://spidermonkey.helixcode.com/distributions/SuSE-6.4/hupdate-0.6-0_helix_2.i386.rpm

Helix Code upgrade TurboLinux:: helix-update-0.6-0_helix_3
http://spidermonkey.helixcode.com/distributions/TurboLinux-6/helix-update-0.6-0_helix_3.i386.rpm

Helix Code GNOME Updater 0.2:

Helix Code upgrade Caldera eDesktop 2.4: helix-update-0.6-0_helix_2
http://spidermonkey.helixcode.com/distributions/Caldera-2.4/helix-update-0.6-0_helix_2.i386.rpm

Helix Code upgrade Linux PPC: helix-update-0.6.0_helix_2
http://spidermonkey.helixcode.com/distributions/LinuxPPC/helix-update-0.6.0_helix_2.ppc.rpm

Helix Code upgrade Mandrake: helix-update-0.6-0mdk_helix_2
http://spidermonkey.helixcode.com/distributions/Mandrake/helix-update-0.6-0mdk_helix_2.i586.rpm

Helix Code upgrade RedHat: helix-update-0.6-0_helix_2
http://spidermonkey.helixcode.com/distributions/RedHat-6/helix-update-0.6-0_helix_2.i386.rpm

Helix Code upgrade Solaris (sparc u64): helix-update-0.6-0_helix_1
http://spidermonkey.helixcode.com/distributions/Solaris/helix-update-0.6-0_helix_1.sparc64.rpm

Helix Code upgrade SuSE 6.3: hupdate-0.6-0_helix_2
http://spidermonkey.helixcode.com/distributions/SuSE/hupdate-0.6-0_helix_2.i386.rpm

Helix Code upgrade SuSE 6.4: hupdate-0.6-0_helix_2
http://spidermonkey.helixcode.com/distributions/SuSE-6.4/hupdate-0.6-0_helix_2.i386.rpm

Helix Code upgrade TurboLinux:: helix-update-0.6-0_helix_3
http://spidermonkey.helixcode.com/distributions/TurboLinux-6/helix-update-0.6-0_helix_3.i386.rpm

Helix Code GNOME Updater 0.1:

Helix Code upgrade Caldera eDesktop 2.4: helix-update-0.6-0_helix_2
http://spidermonkey.helixcode.com/distributions/Caldera-2.4/helix-update-0.6-0_helix_2.i386.rpm

Helix Code upgrade Linux PPC: helix-update-0.6.0_helix_2
http://spidermonkey.helixcode.com/distributions/LinuxPPC/helix-update-0.6.0_helix_2.ppc.rpm

Helix Code upgrade Mandrake: helix-update-0.6-0mdk_helix_2
http://spidermonkey.helixcode.com/distributions/Mandrake/helix-update-0.6-0mdk_helix_2.i586.rpm

Helix Code upgrade RedHat: helix-update-0.6-0_helix_2
http://spidermonkey.helixcode.com/distributions/RedHat-6/helix-update-0.6-0_helix_2.i386.rpm

Helix Code upgrade Solaris (sparc u64): helix-update-0.6-0_helix_1
http://spidermonkey.helixcode.com/distributions/Solaris/helix-update-0.6-0_helix_1.sparc64.rpm

Helix Code upgrade SuSE 6.3: hupdate-0.6-0_helix_2
http://spidermonkey.helixcode.com/distributions/SuSE/hupdate-0.6-0_helix_2.i386.rpm

Helix Code upgrade SuSE 6.4: hupdate-0.6-0_helix_2
http://spidermonkey.helixcode.com/distributions/SuSE-6.4/hupdate-0.6-0_helix_2.i386.rpm

Helix Code upgrade TurboLinux:: helix-update-0.6-0_helix_3
http://spidermonkey.helixcode.com/distributions/TurboLinux-6/helix-update-0.6-0_helix_3.i386.rpm

浏览次数:5913
严重程度:0(网友投票)
本安全漏洞由绿盟科技翻译整理,版权所有,未经许可,不得转载
绿盟科技给您安全的保障