Alerts This Week
Warning Icon 1 914
Alerts This Week
Warning Icon 1 914

Gentoo: GLSA 200909-12 Normal: HTMLDOC User-Assisted Code Risk

gentoo
Calendar Grey September 12, 2009
Dist Gentoo Esm H88
This announcement alerts users to vulnerabilities in HTMLDOC that could allow arbitrary code execution. Caution is advised; review security documentation and apply patches to mitigate risks.
Multiple insecure calls to the sscanf() function in HTMLDOC might result in the execution of arbitrary code.

Summary

Gentoo Linux Security Advisory GLSA 200909-12 https://security.gentoo.org/ Severity: Normal Title: HTMLDOC: User-assisted execution of arbitrary code Date: September 12, 2009 Bugs: #278186 ID: 200909-12

Synopsis ======= Multiple insecure calls to the sscanf() function in HTMLDOC might result in the execution of arbitrary code.
Background ========= HTMLDOC is a HTML indexer and HTML to PS and PDF converter.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 app-text/htmldoc < 1.8.27-r1 >= 1.8.27-r1
========== ANTHRAX666 reported an insecure call to the sscanf() function in the set_page_size() function in htmldoc/util.cxx. Nico Golde of the Debian Security Team foun...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Your message here