Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Gentoo: GLSA-200804-29 Normal: Comix Command Execution and DoS Threats

gentoo
Calendar Grey April 25, 2008
Dist Gentoo Esm H88
Gentoo GLSA 202309-15 addresses vulnerabilities in Xtool allowing potential data breaches and service interruptions. Upgrade advised.
Multiple vulnerabilities in Comix may lead to execution of arbitrary commands and a Denial of Service.

Summary

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Gentoo Linux Security Advisory                           GLSA 200804-29
                                            https://security.gentoo.org/

Severity: Normal Title: Comix: Multiple vulnerabilities Date: April 25, 2008 Bugs: #215694 ID: 200804-29

Synopsis ======= Multiple vulnerabilities in Comix may lead to execution of arbitrary commands and a Denial of Service.
Background ========= Comix is a GTK comic book viewer.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 media-gfx/comix < 3.6.4-r1 >= 3.6.4-r1
========== Comix does not properly sanitize filenames containing shell metacharacters when they are passed to the rar, unrar, or jpegtran programs (CVE-2008-1568). Comix also cre...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Your message here