Debian DSA-1278-1 : man-db - buffer overflow

critical Nessus Plugin ID 25012

Synopsis

The remote Debian host is missing a security-related update.

Description

A buffer overflow has been discovered in the man command that could allow an attacker to execute code as the man user by providing specially crafted arguments to the -H flag. This is likely to be an issue only on machines with the man and mandb programs installed setuid.

Solution

Upgrade the man-db package.

For the stable distribution (sarge), this problem has been fixed in version 2.4.2-21sarge1.

For the upcoming stable distribution (etch) and the unstable distribution (sid), this problem has been fixed in version 2.4.3-5.

See Also

http://www.debian.org/security/2007/dsa-1278

Plugin Details

Severity: Critical

ID: 25012

File Name: debian_DSA-1278.nasl

Version: 1.17

Type: local

Agent: unix

Published: 4/10/2007

Updated: 1/4/2021

Supported Sensors: Frictionless Assessment Agent, Nessus Agent, Agentless Assessment, Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 6.3

CVSS v2

Risk Factor: Critical

Base Score: 10

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Information

CPE: p-cpe:/a:debian:debian_linux:man-db, cpe:/o:debian:debian_linux:3.1

Required KB Items: Host/local_checks_enabled, Host/Debian/release, Host/Debian/dpkg-l

Patch Publication Date: 4/6/2007

Vulnerability Publication Date: 10/27/2006

Reference Information

CVE: CVE-2006-4250, CVE-2006-5616

DSA: 1278