Dit bericht is nog niet vertaald

[USN-562-1] opal vulnerability

Ubuntu Security Notice USN-562-1           January 08, 2008
opal vulnerability
CVE-2007-4924
Kwetsbare Ubuntu versies:

Ubuntu 6.06 LTS
Ubuntu 6.10
Ubuntu 7.04

Kwetsbare pakketten:

Ubuntu 6.06 LTS
libopal-2.2.0 2.2.1-1ubuntu1.1
Ubuntu 6.10
libopal-2.2.0 2.2.3.dfsg-0ubuntu2.1
Ubuntu 7.04
libopal-2.2.0 2.2.3.dfsg-2ubuntu2.1

After a standard system upgrade you need to restart your session to effect the necessary changes.

Jose Miguel Esparza discovered that certain SIP headers were not correctly validated. A remote attacker could send a specially crafted packet to an application linked against opal (e.g. Ekiga) causing it to crash, leading to a denial of service.