Re: IRIX libcpr vulnerability

From: Jan Schaumann (jschauma_at_netmeister.org)
Date: 05/26/04

  • Next message: Conectiva Updates: "[CLA-2004:843] Conectiva Security Announcement - kde"
    Date: Wed, 26 May 2004 14:51:21 -0400
    To: SGI Security Coordinator <agent99@sgi.com>
    
    
    

    SGI Security Coordinator <agent99@sgi.com> wrote:
    > -----BEGIN PGP SIGNED MESSAGE-----
    >
    > ______________________________________________________________________________
    >
    > SGI Security Advisory
    >
    > Title: libcpr vulnerability
    > Number: 20040507-01-P
    > Date: May 26, 2004
    > Reference: SGI BUG 914419
    > Reference: CVE CAN-2004-0134
    > Fixed in: Patches 5606, 5607, 5608, 5609 and 5610
    > ______________________________________________________________________________

    The patches are not readable on the ftp server:

    ftp://patches.sgi.com/support/free/security/patches/6.5.22:

    -rw-r----- 1 21 4079 May 26 09:32 patch5609.pgp.and.chksums
    -rw-r----- 1 21 3666 May 26 09:32 patch5609.relnotes
    -rw-r----- 1 21 1761280 May 26 09:32 patch5609.tar

    This has happened before, so I don't know if it's a matter of the upload
    script not having completed yet or not. But one would assume that the
    patches are readable at the time the SA is published...

    -Jan

    -- 
    DON'T PANIC!
    
    



  • Next message: Conectiva Updates: "[CLA-2004:843] Conectiva Security Announcement - kde"

    Relevant Pages

    • [Full-Disclosure] Re: IRIX libcpr vulnerability
      ... SGI Security Coordinator wrote: ... > Reference: SGI BUG 914419 ... The patches are not readable on the ftp server: ... patches are readable at the time the SA is published... ...
      (Full-Disclosure)
    • Re: IRIX libcpr vulnerability
      ... SGI Security Coordinator wrote: ... > Reference: SGI BUG 914419 ... The patches are not readable on the ftp server: ... patches are readable at the time the SA is published... ...
      (Full-Disclosure)
    • Re: itrc - H.P. I.T. Resource Center.
      ... I just had a quick look at the FTP server; all the OpenVMS patches seem to be ... files equivalent to the older "cover notes". ...
      (comp.os.vms)
    • Re: Whats the best / most popular open-source IMAP server these days?
      ... self-fund distribution to others. ... I wasn't suggesting you incur extra costs. ... FTP server. ... I was talking about your patches since then. ...
      (comp.mail.imap)
    • Re: netfilter string match
      ... I assumed that the 3 repositories (SVN Repository, ... ftp Server & rsync Server) were the same but just different ways of getting ... I only looked in the SVN link and then went to browse CVS link ... and the patches aren't there, but there are some in the ftp repository (I ...
      (comp.os.linux.networking)