Secunia Security Advisory - Ubuntu has issued an update for awstats. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system.
0e68b07bcdd24ac0b90f0b535893f2b46af884f64443af2b3e0320ed7a1d6e91
TITLE:
Ubuntu update for awstats
SECUNIA ADVISORY ID:
SA20186
VERIFY ADVISORY:
http://secunia.com/advisories/20186/
CRITICAL:
Highly critical
IMPACT:
System access
WHERE:
>From remote
OPERATING SYSTEM:
Ubuntu Linux 5.04
http://secunia.com/product/5036/
Ubuntu Linux 5.10
http://secunia.com/product/6606/
DESCRIPTION:
Ubuntu has issued an update for awstats. This fixes a vulnerability,
which can be exploited by malicious people to compromise a vulnerable
system.
For more information:
SA19969
SOLUTION:
Apply updated packages.
-- Ubuntu 5.04 --
Source archives:
http://security.ubuntu.com/ubuntu/pool/main/a/awstats/awstats_6.3-1ubuntu0.2.diff.gz
Size/MD5: 25306 1f013ca8aaad65d8f3ae148e194b3551
http://security.ubuntu.com/ubuntu/pool/main/a/awstats/awstats_6.3-1ubuntu0.2.dsc
Size/MD5: 595 46a103a327e1f1bad3876927c7e66198
http://security.ubuntu.com/ubuntu/pool/main/a/awstats/awstats_6.3.orig.tar.gz
Size/MD5: 938794 edb73007530a5800d53b9f1f90c88053
Architecture independent packages:
http://security.ubuntu.com/ubuntu/pool/main/a/awstats/awstats_6.3-1ubuntu0.2_all.deb
Size/MD5: 726430 728ee50f468a4cf3693a32b98c94b455
-- Ubuntu 5.10 --
Source archives:
http://security.ubuntu.com/ubuntu/pool/main/a/awstats/awstats_6.4-1ubuntu1.1.diff.gz
Size/MD5: 18541 e186b842fbd2d4d97b65eacf7c9c1295
http://security.ubuntu.com/ubuntu/pool/main/a/awstats/awstats_6.4-1ubuntu1.1.dsc
Size/MD5: 595 c5784c2c1bfa002abbfa77d936bc2da5
http://security.ubuntu.com/ubuntu/pool/main/a/awstats/awstats_6.4.orig.tar.gz
Size/MD5: 918435 056e6fb0c7351b17fe5bbbe0aa1297b1
Architecture independent packages:
http://security.ubuntu.com/ubuntu/pool/main/a/awstats/awstats_6.4-1ubuntu1.1_all.deb
Size/MD5: 728490 60ca39a436e3a21a838560db5d8a5f3b
ORIGINAL ADVISORY:
http://www.ubuntu.com/usn/usn-285-1
OTHER REFERENCES:
SA19969:
http://secunia.com/advisories/19969/
----------------------------------------------------------------------
About:
This Advisory was delivered by Secunia as a free service to help
everybody keeping their systems up to date against the latest
vulnerabilities.
Subscribe:
http://secunia.com/secunia_security_advisories/
Definitions: (Criticality, Where etc.)
http://secunia.com/about_secunia_advisories/
Please Note:
Secunia recommends that you verify all advisories you receive by
clicking the link.
Secunia NEVER sends attached files with advisories.
Secunia does not advise people to install third party patches, only
use those supplied by the vendor.
----------------------------------------------------------------------