DSA-1912-2

NameDSA-1912-2
SourceDebian
Descriptionadvi - arbitrary code execution
ReferencesCVE-2009-2295, CVE-2009-2660, CVE-2009-3296
Debian/oldstablepackage advi is fixed in oldstable-security.
Debian/stablenot vulnerable
Debian/testingnot known to be vulnerable
Debian/unstablenot known to be vulnerable.

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
advi (PTS)etch1.6.0-12vulnerable
etch (security)1.6.0-12+etch2fixed
lenny, lenny (security)1.6.0-13+lenny2fixed

The next table lists affected binary packages.

Binary PackageReleaseVersionStatusArchitecures
advietch1.6.0-12vulnerablealpha, amd64, arm, hppa, i386, ia64, mips, mipsel, powerpc, s390, sparc
etch (security)1.6.0-12+etch2fixedamd64, i386, mips, mipsel, powerpc
lenny, lenny (security)1.6.0-13+lenny2fixedalpha, amd64, arm, armel, hppa, i386, ia64, mips, mipsel, powerpc, s390, sparc
advi-examplesetch1.6.0-12vulnerableall
etch (security)1.6.0-12+etch2fixedall
lenny, lenny (security)1.6.0-13+lenny2fixedall

The information above is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
advisourceetch1.6.0-12+etch2unknown
advisourcelenny1.6.0-13+lenny2unknown

Search for package or bug name: Reporting problems

Home - Testing Security Team - Debian Security - Imprint