Home page logo
/

fulldisclosure logo Full Disclosure mailing list archives

[SECURITY] [DSA 872-1] New koffice packages fix arbitrary code execution
From: joey () infodrom org (Martin Schulze)
Date: Wed, 26 Oct 2005 11:42:09 +0200 (CEST)

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- --------------------------------------------------------------------------
Debian Security Advisory DSA 872-1                     security () debian org
http://www.debian.org/security/                             Martin Schulze
October 26th, 2005                      http://www.debian.org/security/faq
- --------------------------------------------------------------------------

Package        : koffice
Vulnerability  : buffer overflow
Problem type   : local (remote)
Debian-specific: no
CVE ID         : CAN-2005-2971
BugTraq ID     : 15060
Debian Bug     : 333497

Chris Evans discovered a buffer overflow in the RTF importer of kword,
a word processor for the KDE Office Suite that can lead to the
execution of arbitrary code.

The old stable distribution (woody) does not contain a kword package.

For the stable distribution (sarge) this problem has been fixed in
version 1.3.5-4.sarge.1.

For the unstable distribution (sid) this problem has been fixed in
version 1.3.5-5.

We recommend that you upgrade your kword package.


Upgrade Instructions
- --------------------

wget url
        will fetch the file for you
dpkg -i file.deb
        will install the referenced file.

If you are using the apt-get package manager, use the line for
sources.list as given below:

apt-get update
        will update the internal database
apt-get upgrade
        will install corrected packages

You may use an automated update by adding the resources from the
footer to the proper configuration.


Debian GNU/Linux 3.1 alias sarge
- --------------------------------

  Source archives:

    http://security.debian.org/pool/updates/main/k/koffice/koffice_1.3.5-4.sarge.1.dsc
      Size/MD5 checksum:      975 4b2ec31e755b6a4ef32176ceda6b950c
    http://security.debian.org/pool/updates/main/k/koffice/koffice_1.3.5-4.sarge.1.diff.gz
      Size/MD5 checksum:    19092 517c5592b5143e011e65898a3896de24
    http://security.debian.org/pool/updates/main/k/koffice/koffice_1.3.5.orig.tar.gz
      Size/MD5 checksum: 13154501 2c9b45ecbf16a8c5d16ce9d2f51c2571

  Architecture independent components:

    http://security.debian.org/pool/updates/main/k/koffice/kivio-data_1.3.5-4.sarge.1_all.deb
      Size/MD5 checksum:   623252 b885ad3d0f986431b56902d32b0fc96a
    http://security.debian.org/pool/updates/main/k/koffice/koffice-data_1.3.5-4.sarge.1_all.deb
      Size/MD5 checksum:   692468 2506e01a4518d875ff62579f217de69b
    http://security.debian.org/pool/updates/main/k/koffice/koffice-doc-html_1.3.5-4.sarge.1_all.deb
      Size/MD5 checksum:   295178 61adb8beff6ed6b1e7764a6c08ddcf68
    http://security.debian.org/pool/updates/main/k/koffice/koffice_1.3.5-4.sarge.1_all.deb
      Size/MD5 checksum:    21378 aa73ed9954994461f6c15a3dfeb45021

  Alpha architecture:

    http://security.debian.org/pool/updates/main/k/koffice/karbon_1.3.5-4.sarge.1_alpha.deb
      Size/MD5 checksum:   923074 71fe0d843ab5298477511b68a990f7b8
    http://security.debian.org/pool/updates/main/k/koffice/kchart_1.3.5-4.sarge.1_alpha.deb
      Size/MD5 checksum:   715268 0c6c93c5944be0cfdfa55ef8272db25a
    http://security.debian.org/pool/updates/main/k/koffice/kformula_1.3.5-4.sarge.1_alpha.deb
      Size/MD5 checksum:   703160 0ad19a0801e1367ddbd5a15a764d41a9
    http://security.debian.org/pool/updates/main/k/koffice/kivio_1.3.5-4.sarge.1_alpha.deb
      Size/MD5 checksum:   632758 b8d68fe9a9b6a1e8539604dbcbdb4bdd
    http://security.debian.org/pool/updates/main/k/koffice/koffice-dev_1.3.5-4.sarge.1_alpha.deb
      Size/MD5 checksum:   154466 577a74fe1998b494a6df2a638251cca6
    http://security.debian.org/pool/updates/main/k/koffice/koffice-libs_1.3.5-4.sarge.1_alpha.deb
      Size/MD5 checksum:  2306826 030d9a9e7c54beec5edf7ae992265031
    http://security.debian.org/pool/updates/main/k/koffice/koshell_1.3.5-4.sarge.1_alpha.deb
      Size/MD5 checksum:    59504 25aaf3235a84b589ddeb66a0cacaa449
    http://security.debian.org/pool/updates/main/k/koffice/kpresenter_1.3.5-4.sarge.1_alpha.deb
      Size/MD5 checksum:  2602910 e70aa6161e0a685a67a9d5780ee81d0a
    http://security.debian.org/pool/updates/main/k/koffice/kspread_1.3.5-4.sarge.1_alpha.deb
      Size/MD5 checksum:  1850724 027808cfc12971784359911e9c8cce4a
    http://security.debian.org/pool/updates/main/k/koffice/kugar_1.3.5-4.sarge.1_alpha.deb
      Size/MD5 checksum:   566386 22497039a7fda01944f411f55f3fd343
    http://security.debian.org/pool/updates/main/k/koffice/kword_1.3.5-4.sarge.1_alpha.deb
      Size/MD5 checksum:  3768572 3a36987236b9aba51ba5333c321b9345

  AMD64 architecture:

    http://security.debian.org/pool/updates/main/k/koffice/karbon_1.3.5-4.sarge.1_amd64.deb
      Size/MD5 checksum:   860098 2b84083a675208a339a17ba75e813ecd
    http://security.debian.org/pool/updates/main/k/koffice/kchart_1.3.5-4.sarge.1_amd64.deb
      Size/MD5 checksum:   680990 ad3aee540c79a07fb1de2369dc2a12a7
    http://security.debian.org/pool/updates/main/k/koffice/kformula_1.3.5-4.sarge.1_amd64.deb
      Size/MD5 checksum:   700452 bf0e2d2ad2653598d1fe425f18e98653
    http://security.debian.org/pool/updates/main/k/koffice/kivio_1.3.5-4.sarge.1_amd64.deb
      Size/MD5 checksum:   587954 72673faa7739abf6b1095203dfbb72e0
    http://security.debian.org/pool/updates/main/k/koffice/koffice-dev_1.3.5-4.sarge.1_amd64.deb
      Size/MD5 checksum:   154452 a82c3cffa7bd2adf7469bce3f5a1d83b
    http://security.debian.org/pool/updates/main/k/koffice/koffice-libs_1.3.5-4.sarge.1_amd64.deb
      Size/MD5 checksum:  2137366 448983dfdbc2828c6b0a24ff899d88e0
    http://security.debian.org/pool/updates/main/k/koffice/koshell_1.3.5-4.sarge.1_amd64.deb
      Size/MD5 checksum:    58028 e8643dfce3e1bbfd7f38da591de589fd
    http://security.debian.org/pool/updates/main/k/koffice/kpresenter_1.3.5-4.sarge.1_amd64.deb
      Size/MD5 checksum:  2539742 39388b1532fdafea21b2a0e33d2a930f
    http://security.debian.org/pool/updates/main/k/koffice/kspread_1.3.5-4.sarge.1_amd64.deb
      Size/MD5 checksum:  1758710 ea40fb1e0081e0a18ecc6f9d127020b7
    http://security.debian.org/pool/updates/main/k/koffice/kugar_1.3.5-4.sarge.1_amd64.deb
      Size/MD5 checksum:   557738 773e7f8eb9078481994ed12af36ab938
    http://security.debian.org/pool/updates/main/k/koffice/kword_1.3.5-4.sarge.1_amd64.deb
      Size/MD5 checksum:  3588362 31ecbe9da5f7c8c87a12e9486d32be50

  ARM architecture:

    http://security.debian.org/pool/updates/main/k/koffice/karbon_1.3.5-4.sarge.1_arm.deb
      Size/MD5 checksum:   763256 c6beab816558924a587e36a4d08f4d75
    http://security.debian.org/pool/updates/main/k/koffice/kchart_1.3.5-4.sarge.1_arm.deb
      Size/MD5 checksum:   641094 4730b4a3c3170b4a9c159f3c391616c5
    http://security.debian.org/pool/updates/main/k/koffice/kformula_1.3.5-4.sarge.1_arm.deb
      Size/MD5 checksum:   694164 23d89dcb83ffdae57669959afaa0e761
    http://security.debian.org/pool/updates/main/k/koffice/kivio_1.3.5-4.sarge.1_arm.deb
      Size/MD5 checksum:   514042 131bf53ee0f4e44ec7447f22a112ef30
    http://security.debian.org/pool/updates/main/k/koffice/koffice-dev_1.3.5-4.sarge.1_arm.deb
      Size/MD5 checksum:   154478 46c5371a52c8ebbfda803900e075e78c
    http://security.debian.org/pool/updates/main/k/koffice/koffice-libs_1.3.5-4.sarge.1_arm.deb
      Size/MD5 checksum:  2022582 c1a82bf8c6472472321c0ba04fa96aee
    http://security.debian.org/pool/updates/main/k/koffice/koshell_1.3.5-4.sarge.1_arm.deb
      Size/MD5 checksum:    56024 9dd3edfc4d54640d18774d2f226dc6be
    http://security.debian.org/pool/updates/main/k/koffice/kpresenter_1.3.5-4.sarge.1_arm.deb
      Size/MD5 checksum:  2430876 1ffebb5528af8754ebe59e041b4c8ea5
    http://security.debian.org/pool/updates/main/k/koffice/kspread_1.3.5-4.sarge.1_arm.deb
      Size/MD5 checksum:  1598162 8e78dcc8acbf417c3654400cf02c3c44
    http://security.debian.org/pool/updates/main/k/koffice/kugar_1.3.5-4.sarge.1_arm.deb
      Size/MD5 checksum:   520776 091188b5552465a30f117a9cacadee21
    http://security.debian.org/pool/updates/main/k/koffice/kword_1.3.5-4.sarge.1_arm.deb
      Size/MD5 checksum:  3354660 80ecf0b9279b245b6a010ec867872257

  Intel IA-32 architecture:

    http://security.debian.org/pool/updates/main/k/koffice/karbon_1.3.5-4.sarge.1_i386.deb
      Size/MD5 checksum:   804728 c68dfcbef06ae1a9b32b3a91b2d07a18
    http://security.debian.org/pool/updates/main/k/koffice/kchart_1.3.5-4.sarge.1_i386.deb
      Size/MD5 checksum:   680838 09566a8d82557ff33883e9f9afcd8418
    http://security.debian.org/pool/updates/main/k/koffice/kformula_1.3.5-4.sarge.1_i386.deb
      Size/MD5 checksum:   698374 8a5c11172b22c5bf52cce56885b35091
    http://security.debian.org/pool/updates/main/k/koffice/kivio_1.3.5-4.sarge.1_i386.deb
      Size/MD5 checksum:   562046 2970f81d83ee784f286041e31734b8d7
    http://security.debian.org/pool/updates/main/k/koffice/koffice-dev_1.3.5-4.sarge.1_i386.deb
      Size/MD5 checksum:   154452 3546b20daab3c62c7c1c075b206d317c
    http://security.debian.org/pool/updates/main/k/koffice/koffice-libs_1.3.5-4.sarge.1_i386.deb
      Size/MD5 checksum:  2058098 b0d4b013d98d77350bf902e7a119720a
    http://security.debian.org/pool/updates/main/k/koffice/koshell_1.3.5-4.sarge.1_i386.deb
      Size/MD5 checksum:    56756 ba3841bdc2bd88ea5f74f1352b3e6b22
    http://security.debian.org/pool/updates/main/k/koffice/kpresenter_1.3.5-4.sarge.1_i386.deb
      Size/MD5 checksum:  2535242 6e0d787a96fad5ef3c7fc5ee77d9beaf
    http://security.debian.org/pool/updates/main/k/koffice/kspread_1.3.5-4.sarge.1_i386.deb
      Size/MD5 checksum:  1727260 f9397862761c1427b47b9efc74e78efd
    http://security.debian.org/pool/updates/main/k/koffice/kugar_1.3.5-4.sarge.1_i386.deb
      Size/MD5 checksum:   548198 9a9e7df3265c0594a50df39e12a40148
    http://security.debian.org/pool/updates/main/k/koffice/kword_1.3.5-4.sarge.1_i386.deb
      Size/MD5 checksum:  3515634 6b4d8492870ec3d06158252ed05a598e

  Intel IA-64 architecture:

    http://security.debian.org/pool/updates/main/k/koffice/karbon_1.3.5-4.sarge.1_ia64.deb
      Size/MD5 checksum:  1050056 76280bd7e2e63d93862ec958f93b59d1
    http://security.debian.org/pool/updates/main/k/koffice/kchart_1.3.5-4.sarge.1_ia64.deb
      Size/MD5 checksum:   800452 160ac39b3c3393987eec901a0bc487b1
    http://security.debian.org/pool/updates/main/k/koffice/kformula_1.3.5-4.sarge.1_ia64.deb
      Size/MD5 checksum:   713198 c4b6032cf84118e50b0f6c574c8b7d1b
    http://security.debian.org/pool/updates/main/k/koffice/kivio_1.3.5-4.sarge.1_ia64.deb
      Size/MD5 checksum:   720402 7708ee2c85cde5b6afe1152b6b43067b
    http://security.debian.org/pool/updates/main/k/koffice/koffice-dev_1.3.5-4.sarge.1_ia64.deb
      Size/MD5 checksum:   154462 edcdff446272b6ab52aba523958c3d1c
    http://security.debian.org/pool/updates/main/k/koffice/koffice-libs_1.3.5-4.sarge.1_ia64.deb
      Size/MD5 checksum:  2670964 b404bbf0f7b9ae0b9fd5479270de45ad
    http://security.debian.org/pool/updates/main/k/koffice/koshell_1.3.5-4.sarge.1_ia64.deb
      Size/MD5 checksum:    64902 7e470676bf4b3f9cfd9abf73e3b5ab13
    http://security.debian.org/pool/updates/main/k/koffice/kpresenter_1.3.5-4.sarge.1_ia64.deb
      Size/MD5 checksum:  2803034 1aba4972cd6ef3b96d509d0bff1c6e0e
    http://security.debian.org/pool/updates/main/k/koffice/kspread_1.3.5-4.sarge.1_ia64.deb
      Size/MD5 checksum:  2153402 b5941ca0c0cd1c011539d9db9bb2d587
    http://security.debian.org/pool/updates/main/k/koffice/kugar_1.3.5-4.sarge.1_ia64.deb
      Size/MD5 checksum:   616024 42231a14c9be5331c5ae0b648aeac189
    http://security.debian.org/pool/updates/main/k/koffice/kword_1.3.5-4.sarge.1_ia64.deb
      Size/MD5 checksum:  4182838 4211a4233bea71f69167938d75289e9e

  HP Precision architecture:

    http://security.debian.org/pool/updates/main/k/koffice/karbon_1.3.5-4.sarge.1_hppa.deb
      Size/MD5 checksum:   942306 712dd61ea922308d4e69286e7e9c2888
    http://security.debian.org/pool/updates/main/k/koffice/kchart_1.3.5-4.sarge.1_hppa.deb
      Size/MD5 checksum:   716066 1020cfc975da45096654763bcf3f594e
    http://security.debian.org/pool/updates/main/k/koffice/kformula_1.3.5-4.sarge.1_hppa.deb
      Size/MD5 checksum:   706742 ff8aa2c5743550abdc776971988a531d
    http://security.debian.org/pool/updates/main/k/koffice/kivio_1.3.5-4.sarge.1_hppa.deb
      Size/MD5 checksum:   644950 f7946998d3b28e5b0dcf7414c9504cb2
    http://security.debian.org/pool/updates/main/k/koffice/koffice-dev_1.3.5-4.sarge.1_hppa.deb
      Size/MD5 checksum:   154470 234584820c3ad1755e37d402ca0606a1
    http://security.debian.org/pool/updates/main/k/koffice/koffice-libs_1.3.5-4.sarge.1_hppa.deb
      Size/MD5 checksum:  2443804 0e09cf7a0521f9aa14e874a32764ac15
    http://security.debian.org/pool/updates/main/k/koffice/koshell_1.3.5-4.sarge.1_hppa.deb
      Size/MD5 checksum:    61892 4d89589a2938acbfed9e555376e94626
    http://security.debian.org/pool/updates/main/k/koffice/kpresenter_1.3.5-4.sarge.1_hppa.deb
      Size/MD5 checksum:  2637534 71ae90269396851dddafc566b65fa4b3
    http://security.debian.org/pool/updates/main/k/koffice/kspread_1.3.5-4.sarge.1_hppa.deb
      Size/MD5 checksum:  1890026 5b6abc3ad581f0adb59b75292a8e6f26
    http://security.debian.org/pool/updates/main/k/koffice/kugar_1.3.5-4.sarge.1_hppa.deb
      Size/MD5 checksum:   580650 e4cf7d648b9a4dc36a2ed301add84933
    http://security.debian.org/pool/updates/main/k/koffice/kword_1.3.5-4.sarge.1_hppa.deb
      Size/MD5 checksum:  3798844 6827160d9a43662e8ca75583d82cad6b

  Motorola 680x0 architecture:

    http://security.debian.org/pool/updates/main/k/koffice/karbon_1.3.5-4.sarge.1_m68k.deb
      Size/MD5 checksum:   819154 db3aa228cfe44b1921391d9d889f6a31
    http://security.debian.org/pool/updates/main/k/koffice/kchart_1.3.5-4.sarge.1_m68k.deb
      Size/MD5 checksum:   643968 f46fb9b19c17e146a9726dd0c1afca29
    http://security.debian.org/pool/updates/main/k/koffice/kformula_1.3.5-4.sarge.1_m68k.deb
      Size/MD5 checksum:   700166 9796cfcbe4db3103702fdb3d8d5879dc
    http://security.debian.org/pool/updates/main/k/koffice/kivio_1.3.5-4.sarge.1_m68k.deb
      Size/MD5 checksum:   548436 581d4db2042a15e3f61540b3cb662598
    http://security.debian.org/pool/updates/main/k/koffice/koffice-dev_1.3.5-4.sarge.1_m68k.deb
      Size/MD5 checksum:   154492 ddf40856fcafe9e8782e6a6780c747e3
    http://security.debian.org/pool/updates/main/k/koffice/koffice-libs_1.3.5-4.sarge.1_m68k.deb
      Size/MD5 checksum:  2077376 b11c30b34aed486b0cbd768d71ef6e61
    http://security.debian.org/pool/updates/main/k/koffice/koshell_1.3.5-4.sarge.1_m68k.deb
      Size/MD5 checksum:    59590 911919ae0a82a526825a98d66c8b3d65
    http://security.debian.org/pool/updates/main/k/koffice/kpresenter_1.3.5-4.sarge.1_m68k.deb
      Size/MD5 checksum:  2469776 524a3675d912b0464b94c475fe6eb70c
    http://security.debian.org/pool/updates/main/k/koffice/kspread_1.3.5-4.sarge.1_m68k.deb
      Size/MD5 checksum:  1630936 897e4ed72fd85b930473bd50c0fa1779
    http://security.debian.org/pool/updates/main/k/koffice/kugar_1.3.5-4.sarge.1_m68k.deb
      Size/MD5 checksum:   539460 5a46c77b5095fef6b43af62d42ec608b
    http://security.debian.org/pool/updates/main/k/koffice/kword_1.3.5-4.sarge.1_m68k.deb
      Size/MD5 checksum:  3450772 698e9457194212f165fe29c459f3ee68

  Big endian MIPS architecture:

    http://security.debian.org/pool/updates/main/k/koffice/karbon_1.3.5-4.sarge.1_mips.deb
      Size/MD5 checksum:   780140 e40753dbf1ba99567ba3581126c68c07
    http://security.debian.org/pool/updates/main/k/koffice/kchart_1.3.5-4.sarge.1_mips.deb
      Size/MD5 checksum:   629558 c68c23dcefe47b4d242e2c6a10004746
    http://security.debian.org/pool/updates/main/k/koffice/kformula_1.3.5-4.sarge.1_mips.deb
      Size/MD5 checksum:   693378 11248954bd90b0f8eb8ba2029d453131
    http://security.debian.org/pool/updates/main/k/koffice/kivio_1.3.5-4.sarge.1_mips.deb
      Size/MD5 checksum:   529530 8756e66d43f576259159bd95827112e2
    http://security.debian.org/pool/updates/main/k/koffice/koffice-dev_1.3.5-4.sarge.1_mips.deb
      Size/MD5 checksum:   154458 77340975e57f02dfa6f507af539a9a05
    http://security.debian.org/pool/updates/main/k/koffice/koffice-libs_1.3.5-4.sarge.1_mips.deb
      Size/MD5 checksum:  1870072 159acf4013b5559ef0f2fbf3d524fdea
    http://security.debian.org/pool/updates/main/k/koffice/koshell_1.3.5-4.sarge.1_mips.deb
      Size/MD5 checksum:    55858 ab47d7d823ef2f6eff1b25726372f189
    http://security.debian.org/pool/updates/main/k/koffice/kpresenter_1.3.5-4.sarge.1_mips.deb
      Size/MD5 checksum:  2391752 41db31561065feae8f951a40ade602a6
    http://security.debian.org/pool/updates/main/k/koffice/kspread_1.3.5-4.sarge.1_mips.deb
      Size/MD5 checksum:  1489338 bfb3807d06ddc65e7fee59702de52797
    http://security.debian.org/pool/updates/main/k/koffice/kugar_1.3.5-4.sarge.1_mips.deb
      Size/MD5 checksum:   499312 86180332ce376e1f365a8dd5cba554c1
    http://security.debian.org/pool/updates/main/k/koffice/kword_1.3.5-4.sarge.1_mips.deb
      Size/MD5 checksum:  3320602 1529eb7974c6602a05dbc479472871a4

  Little endian MIPS architecture:

    http://security.debian.org/pool/updates/main/k/koffice/karbon_1.3.5-4.sarge.1_mipsel.deb
      Size/MD5 checksum:   772480 a24432704ca54979c11e6e751fde9b85
    http://security.debian.org/pool/updates/main/k/koffice/kchart_1.3.5-4.sarge.1_mipsel.deb
      Size/MD5 checksum:   625720 a78f3d9b47cce7c059d1e070321c2597
    http://security.debian.org/pool/updates/main/k/koffice/kformula_1.3.5-4.sarge.1_mipsel.deb
      Size/MD5 checksum:   692626 9dfddfc099a5b56447d984846debba43
    http://security.debian.org/pool/updates/main/k/koffice/kivio_1.3.5-4.sarge.1_mipsel.deb
      Size/MD5 checksum:   520278 cf0687863325f5e503381fca23e06120
    http://security.debian.org/pool/updates/main/k/koffice/koffice-dev_1.3.5-4.sarge.1_mipsel.deb
      Size/MD5 checksum:   154484 2b67aa5879278efa82c1c8d391460f90
    http://security.debian.org/pool/updates/main/k/koffice/koffice-libs_1.3.5-4.sarge.1_mipsel.deb
      Size/MD5 checksum:  1838710 2c3897777653efe0f599f0879fe4cc9c
    http://security.debian.org/pool/updates/main/k/koffice/koshell_1.3.5-4.sarge.1_mipsel.deb
      Size/MD5 checksum:    55614 7fd964d4340b44933c3bbe5c9137c6b5
    http://security.debian.org/pool/updates/main/k/koffice/kpresenter_1.3.5-4.sarge.1_mipsel.deb
      Size/MD5 checksum:  2377166 aa0ec90242823ee228aa0797229e8d0d
    http://security.debian.org/pool/updates/main/k/koffice/kspread_1.3.5-4.sarge.1_mipsel.deb
      Size/MD5 checksum:  1477560 fc602127c18fba2b44edf076e5866989
    http://security.debian.org/pool/updates/main/k/koffice/kugar_1.3.5-4.sarge.1_mipsel.deb
      Size/MD5 checksum:   496480 54fdaeccdb35b3af14be424370e93f95
    http://security.debian.org/pool/updates/main/k/koffice/kword_1.3.5-4.sarge.1_mipsel.deb
      Size/MD5 checksum:  3291754 2d2c412796e886c29cfe0104d7e76235

  PowerPC architecture:

    http://security.debian.org/pool/updates/main/k/koffice/karbon_1.3.5-4.sarge.1_powerpc.deb
      Size/MD5 checksum:   832112 1d4f8ce8d3ea698c67ecda33ad1a0a02
    http://security.debian.org/pool/updates/main/k/koffice/kchart_1.3.5-4.sarge.1_powerpc.deb
      Size/MD5 checksum:   658244 c78b3f06754f56ad91a957395ea62859
    http://security.debian.org/pool/updates/main/k/koffice/kformula_1.3.5-4.sarge.1_powerpc.deb
      Size/MD5 checksum:   697614 f012ed2d597424ba28fbe7b4dd37cfe0
    http://security.debian.org/pool/updates/main/k/koffice/kivio_1.3.5-4.sarge.1_powerpc.deb
      Size/MD5 checksum:   560296 ada2965286da4a63e87de71d8d8ab40f
    http://security.debian.org/pool/updates/main/k/koffice/koffice-dev_1.3.5-4.sarge.1_powerpc.deb
      Size/MD5 checksum:   154456 5da5c24f1d1a5ba2357e9ad6942add61
    http://security.debian.org/pool/updates/main/k/koffice/koffice-libs_1.3.5-4.sarge.1_powerpc.deb
      Size/MD5 checksum:  2023854 2f52940e8b290ac788287b7d8423a243
    http://security.debian.org/pool/updates/main/k/koffice/koshell_1.3.5-4.sarge.1_powerpc.deb
      Size/MD5 checksum:    58234 3e75024a7824faba72c8038024aaff41
    http://security.debian.org/pool/updates/main/k/koffice/kpresenter_1.3.5-4.sarge.1_powerpc.deb
      Size/MD5 checksum:  2479658 c7feb773e21589e7a4f255388810e11a
    http://security.debian.org/pool/updates/main/k/koffice/kspread_1.3.5-4.sarge.1_powerpc.deb
      Size/MD5 checksum:  1666100 3c1ad1beb22bd850fe08042da9b2672a
    http://security.debian.org/pool/updates/main/k/koffice/kugar_1.3.5-4.sarge.1_powerpc.deb
      Size/MD5 checksum:   540268 d6f97cc8ef916d996156c6b3e5d49d50
    http://security.debian.org/pool/updates/main/k/koffice/kword_1.3.5-4.sarge.1_powerpc.deb
      Size/MD5 checksum:  3490090 b4ec09f97f898f90c4a4da42cb8840c3

  IBM S/390 architecture:

    http://security.debian.org/pool/updates/main/k/koffice/karbon_1.3.5-4.sarge.1_s390.deb
      Size/MD5 checksum:   856500 ba8ba04933ba6bd40f97d4f8270cf374
    http://security.debian.org/pool/updates/main/k/koffice/kchart_1.3.5-4.sarge.1_s390.deb
      Size/MD5 checksum:   663492 cf8099e9481c7897e1ea1c70f5c3f3ed
    http://security.debian.org/pool/updates/main/k/koffice/kformula_1.3.5-4.sarge.1_s390.deb
      Size/MD5 checksum:   701312 8c58199956979fa72818016da3312de9
    http://security.debian.org/pool/updates/main/k/koffice/kivio_1.3.5-4.sarge.1_s390.deb
      Size/MD5 checksum:   595074 04322dd7b0e34535d035ad691d95cbc5
    http://security.debian.org/pool/updates/main/k/koffice/koffice-dev_1.3.5-4.sarge.1_s390.deb
      Size/MD5 checksum:   154462 0fde489e3208562e665073a11337f28e
    http://security.debian.org/pool/updates/main/k/koffice/koffice-libs_1.3.5-4.sarge.1_s390.deb
      Size/MD5 checksum:  2079446 e84545c2d03b73011d53b5d948821578
    http://security.debian.org/pool/updates/main/k/koffice/koshell_1.3.5-4.sarge.1_s390.deb
      Size/MD5 checksum:    58612 96c99347879a11c1cba35afedbac2298
    http://security.debian.org/pool/updates/main/k/koffice/kpresenter_1.3.5-4.sarge.1_s390.deb
      Size/MD5 checksum:  2496530 e362d46597502625e10387e943c1e3c8
    http://security.debian.org/pool/updates/main/k/koffice/kspread_1.3.5-4.sarge.1_s390.deb
      Size/MD5 checksum:  1666974 2252116e1ffc0cd974f3f224d70825c4
    http://security.debian.org/pool/updates/main/k/koffice/kugar_1.3.5-4.sarge.1_s390.deb
      Size/MD5 checksum:   528094 625da898ed2e355f830fffb8153a7b2f
    http://security.debian.org/pool/updates/main/k/koffice/kword_1.3.5-4.sarge.1_s390.deb
      Size/MD5 checksum:  3563882 fbb368fd1608258fb7d2d589a9ee7240

  Sun Sparc architecture:

    http://security.debian.org/pool/updates/main/k/koffice/karbon_1.3.5-4.sarge.1_sparc.deb
      Size/MD5 checksum:   781606 5780b2d7ac458161ae42ebf4a7d8e152
    http://security.debian.org/pool/updates/main/k/koffice/kchart_1.3.5-4.sarge.1_sparc.deb
      Size/MD5 checksum:   654290 aede118ea847442fcd6d69b1503bec36
    http://security.debian.org/pool/updates/main/k/koffice/kformula_1.3.5-4.sarge.1_sparc.deb
      Size/MD5 checksum:   694356 60299e2c0faaa957c155c83144596a5a
    http://security.debian.org/pool/updates/main/k/koffice/kivio_1.3.5-4.sarge.1_sparc.deb
      Size/MD5 checksum:   540582 4a8a1e7c093e2188976fe261329ebeb7
    http://security.debian.org/pool/updates/main/k/koffice/koffice-dev_1.3.5-4.sarge.1_sparc.deb
      Size/MD5 checksum:   154472 a4f1d71735e79fd806cdc930825da651
    http://security.debian.org/pool/updates/main/k/koffice/koffice-libs_1.3.5-4.sarge.1_sparc.deb
      Size/MD5 checksum:  1955960 66acbc37236a65f3e27b6b4747740f0a
    http://security.debian.org/pool/updates/main/k/koffice/koshell_1.3.5-4.sarge.1_sparc.deb
      Size/MD5 checksum:    55178 2fdda0ebc060c760a0500651085b9e5f
    http://security.debian.org/pool/updates/main/k/koffice/kpresenter_1.3.5-4.sarge.1_sparc.deb
      Size/MD5 checksum:  2470972 c38f3166b13c58dfed53f5a3ff48b76f
    http://security.debian.org/pool/updates/main/k/koffice/kspread_1.3.5-4.sarge.1_sparc.deb
      Size/MD5 checksum:  1648824 1e01015b4c289a551517c353af693fef
    http://security.debian.org/pool/updates/main/k/koffice/kugar_1.3.5-4.sarge.1_sparc.deb
      Size/MD5 checksum:   523378 02e588eb89e9cf59d6ebfe7eaa3fb963
    http://security.debian.org/pool/updates/main/k/koffice/kword_1.3.5-4.sarge.1_sparc.deb
      Size/MD5 checksum:  3425738 28b89bcf4db5472d7dceb6834f733f90


  These files will probably be moved into the stable distribution on
  its next update.

- ---------------------------------------------------------------------------------
For apt-get: deb http://security.debian.org/ stable/updates main
For dpkg-ftp: ftp://security.debian.org/debian-security dists/stable/updates/main
Mailing list: debian-security-announce () lists debian org
Package info: `apt-cache show <pkg>' and http://packages.debian.org/<pkg>

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2 (GNU/Linux)

iD8DBQFDX09wW5ql+IAeqTIRAglbAJ0Y+Zj3ZfI7bg/B0WxI555E8QQF/wCfVtPq
KB5r7gUNule1xhq1Qm2Io8Q=
=5Gx6
-----END PGP SIGNATURE-----

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


  By Date           By Thread  

Current thread:
  • [SECURITY] [DSA 872-1] New koffice packages fix arbitrary code execution Martin Schulze (Oct 26)
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]