Nessus Plugin #16106

Plugin Index

Note: This file has been created from a downloaded version of the Nessus Plugins from http://www.nessus.org/. Therefore, the information here can be outdated.

[DSA628] DSA-628-1 imlib2

Family:
Debian Local Security Checks
Category:
infos
Copyright:
This script is (C) 2005 Michel Arboi
Summary:
DSA-628-1 imlib2
Version:
$Revision: 1.2 $
Cve_id:
CAN-2004-1025, CAN-2004-1026
Bugtraq_id:
-
Xrefs:
DSA:628
Description:

Pavel Kankovsky discovered that several overflows found in the libXpm
library were also present in imlib and imlib2, imaging libraries for
X11. An attacker could create a carefully crafted image file in such
a way that it could cause an application linked with imlib or imlib2
to execute arbitrary code when the file was opened by a victim. The
Common Vulnerabilities and Exposures project identifies the following
problems:
Multiple heap-based buffer overflows. No such code is present in
imlib2.
Multiple integer overflows in the imlib library.
For the stable distribution (woody) these problems have been fixed in
version 1.0.5-2woody2.
For the unstable distribution (sid) these problems will be fixed soon.
We recommend that you upgrade your imlib2 packages.


Solution : http://www.debian.org/security/2005/dsa-628
Risk factor : High
Generiert am 27.04.2005 um 18:49:54 Uhr.