Alerts This Week
Warning Icon 1 540
Alerts This Week
Warning Icon 1 540

Debian 4.0: DSA-1493-1 Critical: SDL-Image1.2 Buffer Overflow Risk

debian
Calendar Grey February 10, 2008
Debian Logo
A security patch has been released for sdl-image1.2 in Debian addressing buffer overflow vulnerabilities that could potentially result in unauthorized code execution.
Gynvael Coldwind discovered a buffer overflow in GIF image parsing, which could result in denial of service and potentially the execution of arbitrary code.

Summary


Gynvael Coldwind discovered a buffer overflow in GIF image parsing,
which could result in denial of service and potentially the
execution of arbitrary code.

CVE-2008-0544

It was discovered that a buffer overflow in IFF ILBM image parsing
could result in denial of service and potentially the execution of
arbitrary code.

For the stable distribution (etch), these problems have been fixed in
version 1.2.5-2etch1.

For the old stable distribution (sarge), these problems have been fixed
in version 1.2.4-1etch1. Due to a copy & paste error etch1 was appended
to the version number instead of "sarge1". Since the update is otherwise
technically correct, the update was not rebuild to the buildd network.

We recommend that you upgrade your sdl-image1.2 packages.

Upgrade instructions
- --------------------wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.

If you are using the apt-get package manager, use the line ...

Read the Full Advisory

Severity
critical
Lowest
Low
Medium
High
Critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here