Revision Date: | 2007-10-03 | Version: | 635 |
Title: | RHSA-2007:0933: elinks security update (Moderate) |
Description: | ELinks is a text mode Web browser used from the command line that supports rendering modern web pages.
An information disclosure flaw was found in the way ELinks passes https POST data to a proxy server. POST data sent via a proxy to an https site is not properly encrypted by ELinks, possibly allowing the disclosure of sensitive information. (CVE-2007-5034)
All users of Elinks are advised to upgrade to this updated package, which contains a backported patch that resolves this issue.
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | CVE-2007-5034 RHSA-2007:0933 RHSA-2007:0933-02 RHSA-2007:0933-02
|
Platform(s): | Red Hat Enterprise Linux 4 Red Hat Enterprise Linux 5
| Product(s): | |
Definition Synopsis |
Red Hat Enterprise Linux must be installed OR Package Information
Red Hat Enterprise Linux 4 is installed
AND elinks is earlier than 0:0.9.2-3.3.5.2
AND elinks is signed with Red Hat redhatrelease2 key
OR Package Information
Red Hat Enterprise Linux 5 is installed
AND elinks is earlier than 0:0.11.1-5.1.0.1.el5
AND elinks is signed with Red Hat redhatrelease2 key
|
Definition Synopsis |
Release Information
Red Hat Enterprise Linux 4 is installed
AND elinks is earlier than 0:0.9.2-3.3.5.2
AND elinks is signed with Red Hat master key
OR Package Information
Red Hat Enterprise Linux 5 is installed
AND elinks is earlier than 0:0.11.1-5.1.0.1.el5
AND elinks is signed with Red Hat redhatrelease key
|