Alerts This Week
Warning Icon 1 637
Alerts This Week
Warning Icon 1 637

Debian 3.0 DSA-190-1 Moderate: Window Maker Buffer Overflow

debian
Calendar Grey November 7, 2002
Debian Logo
Investigate the susceptibility linked to buffer overflow within Window Maker's image handling procedure, coupled with detailed guidelines for implementing the necessary fixes.
There is a problem in the image handling code use in Window Maker.

Summary

Package : wmaker
Problem type : buffer overflow
Debian-specific: no

Al Viro found a problem in the image handling code use in Window Maker,
a popular NEXTSTEP like window manager. When creating an image it would
allocate a buffer by multiplying the image width and height, but did not
check for an overflow. This makes it possible to overflow the buffer.
This could be exploited by using specially crafted image files (for
example when previewing themes).

This has been fixed in version 0.80.0-4.1.

------------------------------------------------------------------------

Obtaining updates:

By hand:
wget URL
will fetch the file for you.
dpkg -i FILENAME.deb
will install the fetched file.

With apt:
deb Debian -- Security Information stable/updates main
added to /etc/apt/sources.list will provide security updates

Additional information can be found on the Debian security webpages
at Debian -- Security Information

------------------------------------------------...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here