Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 525
Alerts This Week
Warning Icon 1 525

Gentoo: GLSA-202310-15 Normal: Vulnerability in WebX Application Server

gentoo
Calendar Grey June 30, 2006
Scroller Gentoo
A Gentoo security announcement on Kiax highlights a critical vulnerability in the iaxclient library that could lead to arbitrary code execution.
A security vulnerability in the iaxclient library could lead to the execution of arbitrary code by a remote attacker.

Summary

Gentoo Linux Security Advisory GLSA 200606-30 https://security.gentoo.org/ Severity: Normal Title: Kiax: Arbitrary code execution Date: June 30, 2006 Bugs: #136099 ID: 200606-30

Synopsis ======= A security vulnerability in the iaxclient library could lead to the execution of arbitrary code by a remote attacker.
Background ========= Kiax is a graphical softphone supporting the IAX protocol (Inter Asterisk eXchange), which allows PC users to make VoIP calls to Asterisk servers.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 net-misc/kiax < 0.8.5_p1 >= 0.8.5_p1
========== The iax_net_read function in the iaxclient library fails to properly handle IAX2 packet...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround