Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

Mandriva: Subject: [Security Announce] [ MDVSA-2008:210-1 ] mono

BugsAlert Home > Mandriva: Subject: [Security Announce] [ MDVSA-2008:210-1 ] mono
 
 

LinuxSecurity.com: CRLF injection vulnerability in Sys.Web in Mono 2.0 and earlier allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via CRLF sequences in the query string. The updated packages have been patched to fix the issue. Update: This update was too late for inclusion in Mandriva Linux 2009, so it is being released now for that version.




Original Source: http://www.linuxsecurity.com/content/view/143134?rdf

Learn more about Mandriva: Subject: [Security Announce] [ MDVSA-2008:210-1 ] mono
 
Tags: mandriva subject security announce mdvsa-2008 210-1 mono

Related Items

      Fedora Security Update Fixes ICU Regular Expressions Vulnerabilities

      CVE-2008-4593 (iphone)

      FrSIRT - ikiwiki URL Processing Cross Site Request Forgery Vulnerabilities

      FrSIRT - Cisco User-Changeable Password Remote Buffer Overflow Vulnerabilities

      Debian: New imlib2 packages fix arbitrary code execution

      CVE-2007-6350 (scponly)

      Debian: New pcre3 packages fix arbitrary code execution

 

Pixel