May 22, 2012, 10:04:23 PM *
Welcome, Guest. Please login or register.

Login with username, password and session length
News: THC is up and running !
 

 
advertisement:

Pages: [1]
  Print  
Author Topic: USN829-1 : qt4-x11 vulnerability  (Read 67 times)
zomgwtfbbq
Challenge Coder
Administrator
Hero Member
*****

Karma: +31340/-1
Posts: I am a geek!!


thc title: thc elite
thc points: 3315
challenges: (69/83)

View Profile
« on: September 11, 2009, 05:25:25 PM »
Share on FacebookFacebook Share

Synopsis :

These remote packages are missing security patches :
- libqt4-assistant
- libqt4-core
- libqt4-dbg
- libqt4-dbus
- libqt4-debug
- libqt4-designer
- libqt4-dev
- libqt4-dev-dbg
- libqt4-gui
- libqt4-help
- libqt4-network
- libqt4-opengl
- libqt4-opengl-dev
- libqt4-qt3support
- libqt4-script
- libqt4-scripttools
- libqt4-sql
- libqt4-sql-mysql
- libqt4-sql-odbc
- libqt4-sql-psql
- libqt4-sql-sqlite
- libqt4-sql-sqlite2
- libqt4-svg
- libqt4-test
- libqt4-webkit
- libqt4-webkit-dbg

[...]

Description :

It was discovered that Qt did not properly handle certificates with NULL
characters in the Subject Alternative Name field of X.509 certificates. An
attacker could exploit this to perform a man in the middle attack to view
sensitive information or alter encrypted communications. (CVE-2009-2700)

Solution :

Upgrade to :
- libqt4-assistant-4.5.0-0ubuntu4.2 (Ubuntu 9.04)
- libqt4-core-4.5.0-0ubuntu4.2 (Ubuntu 9.04)
- libqt4-dbg-4.5.0-0ubuntu4.2 (Ubuntu 9.04)
- libqt4-dbus-4.5.0-0ubuntu4.2 (Ubuntu 9.04)
- libqt4-debug-4.3.4-0ubuntu3.1 (Ubuntu 8.04)
- libqt4-designer-4.5.0-0ubuntu4.2 (Ubuntu 9.04)
- libqt4-dev-4.5.0-0ubuntu4.2 (Ubuntu 9.04)
- libqt4-dev-dbg-4.5.0-0ubuntu4.2 (Ubuntu 9.04)
- libqt4-gui-4.5.0-0ubuntu4.2 (Ubuntu 9.04)
- libqt4-help-4.5.0-0ubuntu4.2 (Ubuntu 9.04)
- libqt4-network-4.5.0-0ubuntu4.2 (Ub
[...]

Risk factor :

Medium / CVSS Base Score : 5.0
(CVSS2#AV:N/AC:L/Au:N/C:N/I:P/A:N)



only registered users with at least 25 hack challenge points can see links:
  click here in order to visit the hack challenges
More...
Logged


only registered users with at least 25 hack challenge points can see links:
  click here in order to visit the hack challenges


Ook al ben ik een slet toch houdt ik van je..
Pages: [1]
  Print  
 
Jump to:  


Related Topics
Subject Started by Replies Views Last post
RSS: USN1099-1 : gdm vulnerability
Latest Tools and Files
zomgwtfbbq 0 75 Last post March 31, 2011, 11:59:49 PM
by zomgwtfbbq
RSS: USN1098-1 : vsftpd vulnerability
Latest Tools and Files
zomgwtfbbq 0 112 Last post March 30, 2011, 07:26:53 PM
by zomgwtfbbq
RSS: USN1078-1 : logwatch vulnerability
Latest Tools and Files
zomgwtfbbq 0 86 Last post March 01, 2011, 06:20:00 PM
by zomgwtfbbq
RSS: USN1070-1 : bind9 vulnerability
Latest Tools and Files
zomgwtfbbq 0 57 Last post February 24, 2011, 05:30:20 PM
by zomgwtfbbq
RSS: USN1067-1 : telepathy-gabble vulnerability
Latest Tools and Files
zomgwtfbbq 0 101 Last post February 18, 2011, 07:32:01 PM
by zomgwtfbbq
RSS: USN1063-1 : qemu-kvm vulnerability
Latest Tools and Files
zomgwtfbbq 0 124 Last post February 15, 2011, 05:30:04 PM
by zomgwtfbbq
RSS: USN1051-1 : hplip vulnerability
Latest Tools and Files
zomgwtfbbq 0 51 Last post January 26, 2011, 04:32:23 PM
by zomgwtfbbq
RSS: USN1048-1 : tomcat6 vulnerability
Latest Tools and Files
zomgwtfbbq 0 85 Last post January 25, 2011, 04:30:22 PM
by zomgwtfbbq
RSS: USN1033-1 : eucalyptus vulnerability
Latest Tools and Files
zomgwtfbbq 0 53 Last post December 17, 2010, 08:30:16 PM
by zomgwtfbbq
RSS: USN1032-1 : exim4 vulnerability
Latest Tools and Files
zomgwtfbbq 0 56 Last post December 12, 2010, 06:20:52 AM
by zomgwtfbbq
RSS: USN959-2 : pam vulnerability
Latest Tools and Files
zomgwtfbbq 0 50 Last post October 26, 2010, 05:23:35 PM
by zomgwtfbbq
RSS: USN1001-1 : lvm2 vulnerability
Latest Tools and Files
zomgwtfbbq 0 57 Last post October 07, 2010, 07:10:49 PM
by zomgwtfbbq
RSS: USN996-1 : mako vulnerability
Latest Tools and Files
zomgwtfbbq 0 49 Last post October 06, 2010, 02:30:06 PM
by zomgwtfbbq
RSS: USN985-1 : mountall vulnerability
Latest Tools and Files
zomgwtfbbq 0 61 Last post September 09, 2010, 06:10:38 PM
by zomgwtfbbq
RSS: USN984-1 : lftp vulnerability
Latest Tools and Files
zomgwtfbbq 0 47 Last post September 08, 2010, 03:02:03 PM
by zomgwtfbbq
SMF Board hacked and modded by zomgwtfbekjam aka Rembo from Tools & Design