OpenLinux update for saned
SECUNIA ADVISORY ID:
SA10939
VERIFY ADVISORY:
http://secunia.com/advisories/10939/
CRITICAL:
Less critical
IMPACT:
DoS
WHERE:
From local network
OPERATING SYSTEM:
OpenLinux Workstation 3.x
OpenLinux Server 3.x
DESCRIPTION:
SCO has issued updated packages for sane. These fix several vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service).
The vulnerabilities are caused due to various errors that all can be exploited to either crash the service or cause it to consume an excessive amount of memory.
Successful exploitation requires that saned is running but the malicious system does not have to be listed in "saned.conf".
SOLUTION:
Apply updated packages.
For further details and links please click here to see the actual Secunia Advisory: http://secunia.com/advisories/10939/
