[MBT] new entry in pkg traceroute "Possible access to raw IP socket"

bugs at pld-linux.org bugs at pld-linux.org
Mon Feb 2 15:04:57 CET 2004


Date: 2004-02-02 15:04:55+01	Author: Jakub Bogusz (qboosh) <qboosh at pld-linux.org> 
Title:         Possible access to raw IP socket
Ticket ID:     #813
Ticket URL:    http://bugs.pld-linux.org/?bug=813
Package:       traceroute-1:1.4a12-8
Distribution:  PLD-1.0.updates.general
Category:      security problem
Current state: resolving state
Text:

SuSE used to include nanog implementation in package named
just "traceroute" and that's the cause of such notation.
"plain" traceroute didn't have features which were
vulnerable in -nanog.

The vulnerabilities mentioned in SuSE (and Debian) advisories
has been fixed in traceroute-nanog 6.3.9, which was in
ra/updates/general since some time - after this notification
should appear in ra/updates/security soon. Thanks.
*** State changed to 'resolving state'



More information about the pld-bugs mailing list