_______________________________________________________________________
Package : mono
Date : October 12, 2009
Affected: 2009.1
_______________________________________________________________________
Problem Description:
A vulnerability has been found and corrected in mono:
The XML HMAC signature system did not correctly check certain
lengths. If an attacker sent a truncated HMAC, it could bypass
authentication, leading to potential privilege escalation
(CVE-2009-0217).
This update fixes this vulnerability.
_______________________________________________________________________
References:
http://cve.mitre.org/cgi-bin/cvename.cg ... -2009-0217
_______________________________________________________________________