Peaches Posted March 7, 2009 Report Share Posted March 7, 2009 Ubuntu update for python-crypto Highly critical Impact: DoS System accessWhere: From remote Solution Status: Vendor Patch OS:Ubuntu Linux 6.06Ubuntu Linux 7.10Ubuntu Linux 8.04Ubuntu Linux 8.10 Description:Ubuntu has issued an update for python-crypto. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system.The vulnerability is caused due to a boundary error within the "block_init()" function in src/ARC2.c when processing key data. This can be exploited to cause a buffer overflow by initializing ARC2 with a key longer than 128 bytes. Secunia advisories - http://secunia.com/advisories/34147/ Quote Link to post Share on other sites
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.