Security Advisory ncompress security update

Advisory: RHSA-2004:536-05
Type: Security Advisory
Severity: Moderate
Issued on: 2004-12-13
Last updated on: 2004-12-13
Affected Products: Red Hat Enterprise Linux AS (v. 2.1)
Red Hat Enterprise Linux ES (v. 2.1)
Red Hat Enterprise Linux WS (v. 2.1)
Red Hat Linux Advanced Workstation 2.1 for the Itanium Processor
OVAL: N/A
CVEs (cve.mitre.org): CVE-2001-1413

Details

An updated ncompress package that fixes a buffer overflow and problem in
the handling of files larger than 2 GB is now available.

The ncompress package contains the compress and uncompress file compression
and decompression utilities, which are compatible with the original UNIX
compress utility (.Z file extensions).

A bug in the way ncompress handles long filenames has been discovered.
ncompress versions 4.2.4 and earlier contain a stack based buffer overflow
when handling very long filenames. It is possible that an attacker could
execute arbitrary code on a victims machine by tricking the user into
decompressing a carefully crafted filename. The Common Vulnerabilities and
Exposures project (cve.mitre.org) has assigned the name CAN-2001-1413 to
this issue.

This updated ncompress package also fixes a problem in the handling of
files larger than 2 GB.

All users of ncompress should upgrade to this updated package, which
contains fixes for these issues.


Solution

Before applying this update, make sure that all previously-released
errata relevant to your system have been applied. Use Red Hat
Network to download and update your packages. To launch the Red Hat
Update Agent, use the following command:

up2date

For information on how to install packages manually, refer to the
following Web page for the System Administration or Customization
guide specific to your system:

http://www.redhat.com/docs/manuals/enterprise/

Updated packages

Red Hat Enterprise Linux AS (v. 2.1)

SRPMS:
ncompress-4.2.4-37.src.rpm     514bcc89bdd8d5a71fc5d01ce2f2ac61
 
IA-32:
ncompress-4.2.4-37.i386.rpm
File outdated by:  RHSA-2006:0663
    b3cd3462d6a09d8d7d14c4e7b2744923
 
IA-64:
ncompress-4.2.4-37.ia64.rpm
File outdated by:  RHSA-2006:0663
    36338acd3f00f119ed4b50fe2c67663d
 
Red Hat Enterprise Linux ES (v. 2.1)

SRPMS:
ncompress-4.2.4-37.src.rpm     514bcc89bdd8d5a71fc5d01ce2f2ac61
 
IA-32:
ncompress-4.2.4-37.i386.rpm
File outdated by:  RHSA-2006:0663
    b3cd3462d6a09d8d7d14c4e7b2744923
 
Red Hat Enterprise Linux WS (v. 2.1)

SRPMS:
ncompress-4.2.4-37.src.rpm     514bcc89bdd8d5a71fc5d01ce2f2ac61
 
IA-32:
ncompress-4.2.4-37.i386.rpm
File outdated by:  RHSA-2006:0663
    b3cd3462d6a09d8d7d14c4e7b2744923
 
Red Hat Linux Advanced Workstation 2.1 for the Itanium Processor

SRPMS:
ncompress-4.2.4-37.src.rpm     514bcc89bdd8d5a71fc5d01ce2f2ac61
 
IA-64:
ncompress-4.2.4-37.ia64.rpm
File outdated by:  RHSA-2006:0663
    36338acd3f00f119ed4b50fe2c67663d
 
(The unlinked packages above are only available from the Red Hat Network)

Bugs fixed (see bugzilla for more information)

126776 - [RHEL2.1] compress does not work if the file size is greater than 2GB
136661 - CAN-2001-1413 Stack-based buffer overflow in the comprexx function


References



These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from:
https://www.redhat.com/security/team/key/#package

The Red Hat security contact is secalert@redhat.com. More contact details at http://www.redhat.com/security/team/contact/