Alerts This Week
Warning Icon 1 626
Alerts This Week
Warning Icon 1 626

Warning: Undefined array key "Description" in /var/www/www.linuxsecurity.com-443/html/lsadvisories/lsadvisories.php on line 220

Fedora: 2005-624 Critical: Kopete Integer Overflow Remote Attack

fedora
Calendar Grey July 22, 2005
Dist Fedora Esm H88
The recent Fedora Core 4 patch resolves integer overflow vulnerabilities in Kopete, effectively thwarting possible remote exploitation.
Multiple integer overflow flaws were found in the way Kopete processes Gadu-Gadu messages

Summary

Networking applications for the K Desktop Environment.

Multiple integer overflow flaws were found in the way Kopete processes

Gadu-Gadu messages. A remote attacker could send a specially crafted

Gadu-Gadu message which would cause Kopete to crash or possibly execute

arbitrary code. The Common Vulnerabilities and Exposures project

assigned the name CAN-2005-1852 to this issue.

Users of Kopete should update to these packages which contain a

patch to correct this issue.

- fix crash in kopete

- apply patch to fix libgadu vulnerabilities #163811, CVE CAN-2005-1852

thank to kde security team

4e3db27303568ad94e65d82ffd1189f9 SRPMS/kdenetwork-3.4.1-0.fc4.2.src.rpm

fb065037fb526cd9bb933c3c076a9dec ppc/kdenetwork-3.4.1-0.fc4.2.ppc.rpm

1b26b336de353a59dd7dffe5816e0951 ppc/kdenetwork-devel-3.4.1-0.fc4.2.ppc.rpm

971510423874ce1b9339a9989044f194 ppc/debug/kdenetwork-debuginfo-3.4.1-0.fc4.2.ppc.rpm

ecd5ecaf2c3b2de2b9d1997f71d37183 x86_64/kdenetwork-3.4.1-0.fc4.2.x86_64.rpm

98e9c1a88792e0df169887f669608fa6 x86_64/kdenetwork-devel-3.4.1-0.fc4.2.x86_64.rpm

4d189d1a3c8c2abe037c9254a3cffeb8 x86_64/debug/kdenetwork-debuginfo-3.4.1-0.fc4.2.x86_64.rpm

54fd9578f7ab23e8d35d7e85e1b3e493 i386/kdenetwork-3.4.1-0.fc4.2.i386.rpm

12b717074ad81ed6c120d028684c3e6f i386/kdenetwork-devel-3.4.1-0.fc4.2.i386.rpm

d1b78acac0474698c261d117ce9832c7 i386/debug/kdenetwork-debuginfo-3.4.1-0.fc4.2.i386.rpm

This update can also be installed with the Update Agent; you can

launch the Update Agent with the 'up2date' command.

fedora-announce-list@redhat.com

Change Log

References

Update Instructions

Severity
critical
Lowest
Low
Medium
High
Critical

Name: kdenetwork
Version: 3.4.1
Release: 0.fc4.2
Summary: K Desktop Environment - Network Applications

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here