Multiple Vendor Internet Browser Cookie Path Argument Restriction Bypass Vulnerability
BID:9841
Info
Multiple Vendor Internet Browser Cookie Path Argument Restriction Bypass Vulnerability
| Bugtraq ID: | 9841 |
| Class: | Input Validation Error |
| CVE: |
CVE-2003-0513 CVE-2003-0514 CVE-2003-0592 CVE-2003-0593 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 10 2004 12:00AM |
| Updated: | Jul 12 2009 03:06AM |
| Credit: | Discovery is credited to Corsaire. |
| Vulnerable: |
SGI ProPack 2.4 SGI ProPack 2.3 Redhat kdelibs-devel-3.1-10.i386.rpm Redhat kdelibs-3.1-10.i386.rpm Redhat Enterprise Linux WS 2.1 Redhat Enterprise Linux ES 2.1 Redhat Enterprise Linux AS 2.1 Redhat Advanced Workstation for the Itanium Processor 2.1 Opera Software Opera Web Browser 7.23 Opera Software Opera Web Browser 7.22 Opera Software Opera Web Browser 7.21 Opera Software Opera Web Browser 7.20 Beta 1 build 2981 Opera Software Opera Web Browser 7.20 Opera Software Opera Web Browser 7.11 j Opera Software Opera Web Browser 7.11 b Opera Software Opera Web Browser 7.11 Opera Software Opera Web Browser 7.10 Opera Software Opera Web Browser 7.0 win32 Beta 2 Opera Software Opera Web Browser 7.0 win32 Beta 1 Opera Software Opera Web Browser 7.0 win32 Opera Software Opera Web Browser 7.0 3win32 Opera Software Opera Web Browser 7.0 2win32 Opera Software Opera Web Browser 7.0 1win32 Opera Software Opera Web Browser 6.10 linux Opera Software Opera Web Browser 6.0.5 win32 Opera Software Opera Web Browser 6.0.4 win32 Opera Software Opera Web Browser 6.0.3 win32 Opera Software Opera Web Browser 6.0.3 linux Opera Software Opera Web Browser 6.0.2 win32 Opera Software Opera Web Browser 6.0.2 linux Opera Software Opera Web Browser 6.0.1 win32 Opera Software Opera Web Browser 6.0.1 linux Opera Software Opera Web Browser 6.0.1 Opera Software Opera Web Browser 6.0 win32 Opera Software Opera Web Browser 6.0 6 Opera Software Opera Web Browser 6.0 .6win32 Opera Software Opera Web Browser 6.0 Opera Software Opera Web Browser 5.12 win32 Opera Software Opera Web Browser 5.12 Opera Software Opera Web Browser 5.1 1 win32 Opera Software Opera Web Browser 5.1 0 win32 Opera Software Opera Web Browser 5.0 Linux Opera Software Opera Web Browser 5.0 2 win32 Opera Software Opera Web Browser 5.0 Mac Mozilla Browser 1.4.1 Mozilla Browser 1.4 b Mozilla Browser 1.4 a Mozilla Browser 1.4 Mozilla Browser 1.3.1 Mozilla Browser 1.3 Mozilla Browser 1.2.1 Mozilla Browser 1.2 Beta Mozilla Browser 1.2 Alpha Mozilla Browser 1.2 Mozilla Browser 1.1 Beta Mozilla Browser 1.1 Alpha Mozilla Browser 1.1 Mozilla Browser 1.0.2 Mozilla Browser 1.0.1 Mozilla Browser 1.0 RC2 Mozilla Browser 1.0 RC1 Mozilla Browser 1.0 Mozilla Browser 0.9.48 Mozilla Browser 0.9.35 Mozilla Browser 0.9.9 Mozilla Browser 0.9.8 Mozilla Browser 0.9.7 Mozilla Browser 0.9.6 Mozilla Browser 0.9.5 Mozilla Browser 0.9.4 .1 Mozilla Browser 0.9.4 Mozilla Browser 0.9.3 Mozilla Browser 0.9.2 .1 Mozilla Browser 0.9.2 Mozilla Browser 0.8 Mozilla Browser M16 Mozilla Browser M15 Microsoft Internet Explorer 5.0.1 SP4 Microsoft Internet Explorer 5.0.1 SP3 Microsoft Internet Explorer 5.0.1 SP2 Microsoft Internet Explorer 5.0.1 SP1 Microsoft Internet Explorer 5.0.1 Microsoft Internet Explorer 6.0 SP1 Microsoft Internet Explorer 6.0 Microsoft Internet Explorer 5.5 SP2 Microsoft Internet Explorer 5.5 SP1 Microsoft Internet Explorer 5.5 KDE Konqueror Embedded 0.1 KDE Konqueror 3.1.2 KDE Konqueror 3.1.1 KDE Konqueror 3.1 KDE Konqueror 3.0.5 KDE Konqueror 3.0.3 KDE Konqueror 3.0.2 KDE Konqueror 3.0.1 KDE Konqueror 3.0 KDE Konqueror 2.2.2 KDE Konqueror 2.1.1 KDE KDE 3.1.2 KDE KDE 3.1.1 a KDE KDE 3.1.1 KDE KDE 3.1 KDE KDE 3.0.5 b KDE KDE 3.0.5 a KDE KDE 3.0.5 KDE KDE 3.0.4 KDE KDE 3.0.3 a KDE KDE 3.0.3 KDE KDE 3.0.2 KDE KDE 3.0.1 KDE KDE 3.0 KDE KDE 2.2.2 KDE KDE 2.2.1 KDE KDE 2.2 KDE KDE 2.1.2 KDE KDE 2.1.1 KDE KDE 2.1 KDE KDE 2.0.1 KDE KDE 2.0 BETA KDE KDE 2.0 KDE KDE 1.2 KDE KDE 1.1.2 KDE KDE 1.1.1 KDE KDE 1.1 Apple Safari 1.1 Apple Safari 1.0 |
| Not Vulnerable: |
Mozilla Browser 1.5 KDE Konqueror 3.1.3 KDE KDE 3.1.5 KDE KDE 3.1.4 KDE KDE 3.1.3 |
Discussion
Multiple Vendor Internet Browser Cookie Path Argument Restriction Bypass Vulnerability
Multiple vendor Internet Browsers have been reported to be prone to a cookie path argument restriction bypass vulnerability. The issue presents itself due to a failure to properly sanitize encoded URI content, this may make it possible for an attacker to craft a URI that will contain encoded directory traversal sequences sufficient to provide access to a supposedly path exclusive cookie from an alternate path.
Multiple vendor Internet Browsers have been reported to be prone to a cookie path argument restriction bypass vulnerability. The issue presents itself due to a failure to properly sanitize encoded URI content, this may make it possible for an attacker to craft a URI that will contain encoded directory traversal sequences sufficient to provide access to a supposedly path exclusive cookie from an alternate path.
Exploit / POC
Multiple Vendor Internet Browser Cookie Path Argument Restriction Bypass Vulnerability
The following example has been supplied, this example assumes two sites hosted on the same server. One site is located in the secure folder, the other located in the sample folder:
http://www.example.com/secure/%2e%2e/sample/insecure.cgi?xss=<golarge>
The following example has been supplied, this example assumes two sites hosted on the same server. One site is located in the secure folder, the other located in the sample folder:
http://www.example.com/secure/%2e%2e/sample/insecure.cgi?xss=<golarge>
Solution / Fix
Multiple Vendor Internet Browser Cookie Path Argument Restriction Bypass Vulnerability
Solution:
RedHat has released advisories RHSA-2004:075-01 and RHSA-2004:074-06 to address this issue in various Red Hat Linux operating systems. Please see the referenced advisories for more information.
Mandrake has released an advisory MDKSA-2004:022 to address this issue. Please see the referenced advisory for more information.
Debian has released an advisory DSA 459-1 to address this issue. Please see the referenced advisory for more information.
SGI ProPack Patch 10062 is available for kdelibs. Please see advisory 20040303-01-U for further details.
Redhat kdelibs-devel-3.1-10.i386.rpm
Redhat kdelibs-3.1-10.i386.rpm
KDE KDE 2.2.2
SGI ProPack 2.3
Solution:
RedHat has released advisories RHSA-2004:075-01 and RHSA-2004:074-06 to address this issue in various Red Hat Linux operating systems. Please see the referenced advisories for more information.
Mandrake has released an advisory MDKSA-2004:022 to address this issue. Please see the referenced advisory for more information.
Debian has released an advisory DSA 459-1 to address this issue. Please see the referenced advisory for more information.
SGI ProPack Patch 10062 is available for kdelibs. Please see advisory 20040303-01-U for further details.
Redhat kdelibs-devel-3.1-10.i386.rpm
-
RedHat kdelibs-devel-3.1-13.i386.rpm
ftp://updates.redhat.com/9/en/os/i386/kdelibs-devel-3.1-13.i386.rpm
Redhat kdelibs-3.1-10.i386.rpm
-
RedHat kdelibs-3.1-13.i386.rpm
ftp://updates.redhat.com/9/en/os/i386/kdelibs-3.1-13.i386.rpm
KDE KDE 2.2.2
-
Debian kdelibs-dev_2.2.2-13.woody.9_alpha.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs-dev_2.2 .2-13.woody.9_alpha.deb -
Debian kdelibs-dev_2.2.2-13.woody.9_arm.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs-dev_2.2 .2-13.woody.9_arm.deb -
Debian kdelibs-dev_2.2.2-13.woody.9_hppa.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs-dev_2.2 .2-13.woody.9_hppa.deb -
Debian kdelibs-dev_2.2.2-13.woody.9_i386.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs-dev_2.2 .2-13.woody.9_i386.deb -
Debian kdelibs-dev_2.2.2-13.woody.9_ia64.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs-dev_2.2 .2-13.woody.9_ia64.deb -
Debian kdelibs-dev_2.2.2-13.woody.9_m68k.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs-dev_2.2 .2-13.woody.9_m68k.deb -
Debian kdelibs-dev_2.2.2-13.woody.9_mips.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs-dev_2.2 .2-13.woody.9_mips.deb -
Debian kdelibs-dev_2.2.2-13.woody.9_mipsel.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs-dev_2.2 .2-13.woody.9_mipsel.deb -
Debian kdelibs-dev_2.2.2-13.woody.9_powerpc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs-dev_2.2 .2-13.woody.9_powerpc.deb -
Debian kdelibs-dev_2.2.2-13.woody.9_s390.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs-dev_2.2 .2-13.woody.9_s390.deb -
Debian kdelibs-dev_2.2.2-13.woody.9_sparc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs-dev_2.2 .2-13.woody.9_sparc.deb -
Debian kdelibs3-bin_2.2.2-13.woody.9_alpha.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3-bin_2. 2.2-13.woody.9_alpha.deb -
Debian kdelibs3-bin_2.2.2-13.woody.9_arm.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3-bin_2. 2.2-13.woody.9_arm.deb -
Debian kdelibs3-bin_2.2.2-13.woody.9_hppa.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3-bin_2. 2.2-13.woody.9_hppa.deb -
Debian kdelibs3-bin_2.2.2-13.woody.9_i386.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3-bin_2. 2.2-13.woody.9_i386.deb -
Debian kdelibs3-bin_2.2.2-13.woody.9_ia64.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3-bin_2. 2.2-13.woody.9_ia64.deb -
Debian kdelibs3-bin_2.2.2-13.woody.9_m68k.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3-bin_2. 2.2-13.woody.9_m68k.deb -
Debian kdelibs3-bin_2.2.2-13.woody.9_mips.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3-bin_2. 2.2-13.woody.9_mips.deb -
Debian kdelibs3-bin_2.2.2-13.woody.9_mipsel.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3-bin_2. 2.2-13.woody.9_mipsel.deb -
Debian kdelibs3-bin_2.2.2-13.woody.9_powerpc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3-bin_2. 2.2-13.woody.9_powerpc.deb -
Debian kdelibs3-bin_2.2.2-13.woody.9_s390.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3-bin_2. 2.2-13.woody.9_s390.deb -
Debian kdelibs3-bin_2.2.2-13.woody.9_sparc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3-bin_2. 2.2-13.woody.9_sparc.deb -
Debian kdelibs3-crypto_2.2.2-6woody3_alpha.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs-crypto/kdelibs3 -crypto_2.2.2-6woody3_alpha.deb -
Debian kdelibs3-crypto_2.2.2-6woody3_arm.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs-crypto/kdelibs3 -crypto_2.2.2-6woody3_arm.deb -
Debian kdelibs3-crypto_2.2.2-6woody3_hppa.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs-crypto/kdelibs3 -crypto_2.2.2-6woody3_hppa.deb -
Debian kdelibs3-crypto_2.2.2-6woody3_i386.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs-crypto/kdelibs3 -crypto_2.2.2-6woody3_i386.deb -
Debian kdelibs3-crypto_2.2.2-6woody3_ia64.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs-crypto/kdelibs3 -crypto_2.2.2-6woody3_ia64.deb -
Debian kdelibs3-crypto_2.2.2-6woody3_m68k.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs-crypto/kdelibs3 -crypto_2.2.2-6woody3_m68k.deb -
Debian kdelibs3-crypto_2.2.2-6woody3_mips.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs-crypto/kdelibs3 -crypto_2.2.2-6woody3_mips.deb -
Debian kdelibs3-crypto_2.2.2-6woody3_mipsel.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs-crypto/kdelibs3 -crypto_2.2.2-6woody3_mipsel.deb -
Debian kdelibs3-crypto_2.2.2-6woody3_powerpc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs-crypto/kdelibs3 -crypto_2.2.2-6woody3_powerpc.deb -
Debian kdelibs3-crypto_2.2.2-6woody3_s390.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs-crypto/kdelibs3 -crypto_2.2.2-6woody3_s390.deb -
Debian kdelibs3-crypto_2.2.2-6woody3_sparc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs-crypto/kdelibs3 -crypto_2.2.2-6woody3_sparc.deb -
Debian kdelibs3-cups_2.2.2-13.woody.9_alpha.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3-cups_2 .2.2-13.woody.9_alpha.deb -
Debian kdelibs3-cups_2.2.2-13.woody.9_arm.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3-cups_2 .2.2-13.woody.9_arm.deb -
Debian kdelibs3-cups_2.2.2-13.woody.9_hppa.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3-cups_2 .2.2-13.woody.9_hppa.deb -
Debian kdelibs3-cups_2.2.2-13.woody.9_i386.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3-cups_2 .2.2-13.woody.9_i386.deb -
Debian kdelibs3-cups_2.2.2-13.woody.9_ia64.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3-cups_2 .2.2-13.woody.9_ia64.deb -
Debian kdelibs3-cups_2.2.2-13.woody.9_m68k.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3-cups_2 .2.2-13.woody.9_m68k.deb -
Debian kdelibs3-cups_2.2.2-13.woody.9_mips.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3-cups_2 .2.2-13.woody.9_mips.deb -
Debian kdelibs3-cups_2.2.2-13.woody.9_mipsel.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3-cups_2 .2.2-13.woody.9_mipsel.deb -
Debian kdelibs3-cups_2.2.2-13.woody.9_powerpc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3-cups_2 .2.2-13.woody.9_powerpc.deb -
Debian kdelibs3-cups_2.2.2-13.woody.9_s390.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3-cups_2 .2.2-13.woody.9_s390.deb -
Debian kdelibs3-cups_2.2.2-13.woody.9_sparc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3-cups_2 .2.2-13.woody.9_sparc.deb -
Debian kdelibs3-doc_2.2.2-13.woody.9_all.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3-doc_2. 2.2-13.woody.9_all.deb -
Debian kdelibs3_2.2.2-13.woody.9_alpha.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3_2.2.2- 13.woody.9_alpha.deb -
Debian kdelibs3_2.2.2-13.woody.9_arm.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3_2.2.2- 13.woody.9_arm.deb -
Debian kdelibs3_2.2.2-13.woody.9_hppa.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3_2.2.2- 13.woody.9_hppa.deb -
Debian kdelibs3_2.2.2-13.woody.9_i386.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3_2.2.2- 13.woody.9_i386.deb -
Debian kdelibs3_2.2.2-13.woody.9_ia64.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3_2.2.2- 13.woody.9_ia64.deb -
Debian kdelibs3_2.2.2-13.woody.9_m68k.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3_2.2.2- 13.woody.9_m68k.deb -
Debian kdelibs3_2.2.2-13.woody.9_mips.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3_2.2.2- 13.woody.9_mips.deb -
Debian kdelibs3_2.2.2-13.woody.9_mipsel.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3_2.2.2- 13.woody.9_mipsel.deb -
Debian kdelibs3_2.2.2-13.woody.9_powerpc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3_2.2.2- 13.woody.9_powerpc.deb -
Debian kdelibs3_2.2.2-13.woody.9_s390.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3_2.2.2- 13.woody.9_s390.deb -
Debian kdelibs3_2.2.2-13.woody.9_sparc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/kdelibs3_2.2.2- 13.woody.9_sparc.deb -
Debian libarts-alsa_2.2.2-13.woody.9_alpha.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts-alsa_2. 2.2-13.woody.9_alpha.deb -
Debian libarts-alsa_2.2.2-13.woody.9_arm.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts-alsa_2. 2.2-13.woody.9_arm.deb -
Debian libarts-alsa_2.2.2-13.woody.9_hppa.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts-alsa_2. 2.2-13.woody.9_hppa.deb -
Debian libarts-alsa_2.2.2-13.woody.9_i386.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts-alsa_2. 2.2-13.woody.9_i386.deb -
Debian libarts-alsa_2.2.2-13.woody.9_ia64.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts-alsa_2. 2.2-13.woody.9_ia64.deb -
Debian libarts-alsa_2.2.2-13.woody.9_m68k.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts-alsa_2. 2.2-13.woody.9_m68k.deb -
Debian libarts-alsa_2.2.2-13.woody.9_mips.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts-alsa_2. 2.2-13.woody.9_mips.deb -
Debian libarts-alsa_2.2.2-13.woody.9_mipsel.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts-alsa_2. 2.2-13.woody.9_mipsel.deb -
Debian libarts-alsa_2.2.2-13.woody.9_powerpc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts-alsa_2. 2.2-13.woody.9_powerpc.deb -
Debian libarts-alsa_2.2.2-13.woody.9_s390.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts-alsa_2. 2.2-13.woody.9_s390.deb -
Debian libarts-alsa_2.2.2-13.woody.9_sparc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts-alsa_2. 2.2-13.woody.9_sparc.deb -
Debian libarts-dev_2.2.2-13.woody.9_alpha.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts-dev_2.2 .2-13.woody.9_alpha.deb -
Debian libarts-dev_2.2.2-13.woody.9_arm.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts-dev_2.2 .2-13.woody.9_arm.deb -
Debian libarts-dev_2.2.2-13.woody.9_hppa.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts-dev_2.2 .2-13.woody.9_hppa.deb -
Debian libarts-dev_2.2.2-13.woody.9_i386.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts-dev_2.2 .2-13.woody.9_i386.deb -
Debian libarts-dev_2.2.2-13.woody.9_ia64.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts-dev_2.2 .2-13.woody.9_ia64.deb -
Debian libarts-dev_2.2.2-13.woody.9_m68k.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts-dev_2.2 .2-13.woody.9_m68k.deb -
Debian libarts-dev_2.2.2-13.woody.9_mips.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts-dev_2.2 .2-13.woody.9_mips.deb -
Debian libarts-dev_2.2.2-13.woody.9_mipsel.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts-dev_2.2 .2-13.woody.9_mipsel.deb -
Debian libarts-dev_2.2.2-13.woody.9_powerpc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts-dev_2.2 .2-13.woody.9_powerpc.deb -
Debian libarts-dev_2.2.2-13.woody.9_s390.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts-dev_2.2 .2-13.woody.9_s390.deb -
Debian libarts-dev_2.2.2-13.woody.9_sparc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts-dev_2.2 .2-13.woody.9_sparc.deb -
Debian libarts_2.2.2-13.woody.9_alpha.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts_2.2.2-1 3.woody.9_alpha.deb -
Debian libarts_2.2.2-13.woody.9_arm.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts_2.2.2-1 3.woody.9_arm.deb -
Debian libarts_2.2.2-13.woody.9_hppa.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts_2.2.2-1 3.woody.9_hppa.deb -
Debian libarts_2.2.2-13.woody.9_i386.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts_2.2.2-1 3.woody.9_i386.deb -
Debian libarts_2.2.2-13.woody.9_ia64.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts_2.2.2-1 3.woody.9_ia64.deb -
Debian libarts_2.2.2-13.woody.9_m68k.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts_2.2.2-1 3.woody.9_m68k.deb -
Debian libarts_2.2.2-13.woody.9_mips.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts_2.2.2-1 3.woody.9_mips.deb -
Debian libarts_2.2.2-13.woody.9_mipsel.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts_2.2.2-1 3.woody.9_mipsel.deb -
Debian libarts_2.2.2-13.woody.9_powerpc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts_2.2.2-1 3.woody.9_powerpc.deb -
Debian libarts_2.2.2-13.woody.9_s390.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts_2.2.2-1 3.woody.9_s390.deb -
Debian libarts_2.2.2-13.woody.9_sparc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libarts_2.2.2-1 3.woody.9_sparc.deb -
Debian libkmid-alsa_2.2.2-13.woody.9_alpha.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid-alsa_2. 2.2-13.woody.9_alpha.deb -
Debian libkmid-alsa_2.2.2-13.woody.9_arm.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid-alsa_2. 2.2-13.woody.9_arm.deb -
Debian libkmid-alsa_2.2.2-13.woody.9_hppa.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid-alsa_2. 2.2-13.woody.9_hppa.deb -
Debian libkmid-alsa_2.2.2-13.woody.9_i386.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid-alsa_2. 2.2-13.woody.9_i386.deb -
Debian libkmid-alsa_2.2.2-13.woody.9_ia64.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid-alsa_2. 2.2-13.woody.9_ia64.deb -
Debian libkmid-alsa_2.2.2-13.woody.9_m68k.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid-alsa_2. 2.2-13.woody.9_m68k.deb -
Debian libkmid-alsa_2.2.2-13.woody.9_mips.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid-alsa_2. 2.2-13.woody.9_mips.deb -
Debian libkmid-alsa_2.2.2-13.woody.9_mipsel.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid-alsa_2. 2.2-13.woody.9_mipsel.deb -
Debian libkmid-alsa_2.2.2-13.woody.9_powerpc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid-alsa_2. 2.2-13.woody.9_powerpc.deb -
Debian libkmid-alsa_2.2.2-13.woody.9_s390.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid-alsa_2. 2.2-13.woody.9_s390.deb -
Debian libkmid-alsa_2.2.2-13.woody.9_sparc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid-alsa_2. 2.2-13.woody.9_sparc.deb -
Debian libkmid-dev_2.2.2-13.woody.9_alpha.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid-dev_2.2 .2-13.woody.9_alpha.deb -
Debian libkmid-dev_2.2.2-13.woody.9_arm.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid-dev_2.2 .2-13.woody.9_arm.deb -
Debian libkmid-dev_2.2.2-13.woody.9_hppa.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid-dev_2.2 .2-13.woody.9_hppa.deb -
Debian libkmid-dev_2.2.2-13.woody.9_i386.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid-dev_2.2 .2-13.woody.9_i386.deb -
Debian libkmid-dev_2.2.2-13.woody.9_ia64.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid-dev_2.2 .2-13.woody.9_ia64.deb -
Debian libkmid-dev_2.2.2-13.woody.9_m68k.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid-dev_2.2 .2-13.woody.9_m68k.deb -
Debian libkmid-dev_2.2.2-13.woody.9_mips.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid-dev_2.2 .2-13.woody.9_mips.deb -
Debian libkmid-dev_2.2.2-13.woody.9_mipsel.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid-dev_2.2 .2-13.woody.9_mipsel.deb -
Debian libkmid-dev_2.2.2-13.woody.9_powerpc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid-dev_2.2 .2-13.woody.9_powerpc.deb -
Debian libkmid-dev_2.2.2-13.woody.9_s390.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid-dev_2.2 .2-13.woody.9_s390.deb -
Debian libkmid-dev_2.2.2-13.woody.9_sparc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid-dev_2.2 .2-13.woody.9_sparc.deb -
Debian libkmid_2.2.2-13.woody.9_alpha.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid_2.2.2-1 3.woody.9_alpha.deb -
Debian libkmid_2.2.2-13.woody.9_arm.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid_2.2.2-1 3.woody.9_arm.deb -
Debian libkmid_2.2.2-13.woody.9_hppa.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid_2.2.2-1 3.woody.9_hppa.deb -
Debian libkmid_2.2.2-13.woody.9_i386.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid_2.2.2-1 3.woody.9_i386.deb -
Debian libkmid_2.2.2-13.woody.9_ia64.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid_2.2.2-1 3.woody.9_ia64.deb -
Debian libkmid_2.2.2-13.woody.9_m68k.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid_2.2.2-1 3.woody.9_m68k.deb -
Debian libkmid_2.2.2-13.woody.9_mips.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid_2.2.2-1 3.woody.9_mips.deb -
Debian libkmid_2.2.2-13.woody.9_mipsel.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid_2.2.2-1 3.woody.9_mipsel.deb -
Debian libkmid_2.2.2-13.woody.9_powerpc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid_2.2.2-1 3.woody.9_powerpc.deb -
Debian libkmid_2.2.2-13.woody.9_s390.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid_2.2.2-1 3.woody.9_s390.deb -
Debian libkmid_2.2.2-13.woody.9_sparc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/k/kdelibs/libkmid_2.2.2-1 3.woody.9_sparc.deb
SGI ProPack 2.3
-
SGI patch10062.tar.gz
ftp://patches.sgi.com/support/free/security/patches/ProPack/2.3/patch1 0062.tar.gz
References
Multiple Vendor Internet Browser Cookie Path Argument Restriction Bypass Vulnerability
References:
References: