Alerts This Week
Warning Icon 1 562
Alerts This Week
Warning Icon 1 562

Debian 2.2 DSA-069-1: Moderate xloadimage Buffer Overflow Risk

debian
Calendar Grey August 9, 2001
Debian Logo
Resolved a security vulnerability in the xloadimage application for Debian 2.2, which allowed the execution of unauthorized code via crafted image formats.
The version of xloadimage (a graphics files viewer for X) that was shipped in Debian GNU/Linux 2.2 has a buffer overflow in the code that handles FACES format images.

Summary

Package : xloadimage
Problem type : buffer overflow
Debian-specific: no

The version of xloadimage (a graphics files viewer for X) that was
shipped in Debian GNU/Linux 2.2 has a buffer overflow in the code that
handles FACES format images. This could be exploited by an attacker by
tricking someone into viewing a specially crafted image using xloadimage
which would allow him to execute arbitrary code.

This problem was fixed in version 4.1-5potato1.

wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.


Debian GNU/Linux 2.2 alias potato
---------------------------------

Potato was released for alpha, arm, i386, m68k, powerpc and sparc.

Source archives:

MD5 checksum: 7b920717cbf09b1cc250238817bc66c0

MD5 checksum: 2ef27a164ecd1bcf6c2e34957492497b

MD5 checksum: 7331850fc04056ab8ae6b5725d1fb3d2

Alpha architecture:


MD5 checksum: 69ab7a8777d520dca31271240ab374fb

ARM architecture:

MD5 checksu...

Read the Full Advisory

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here