Alerts This Week
Warning Icon 1 637
Alerts This Week
Warning Icon 1 637

Gentoo: 200307-05 Critical: gtksee Local Exploit Threat

gentoo
Calendar Grey July 11, 2003
Dist Gentoo Esm H88
Critical buffer overflow flaw found in Gentoo Linux's gtksee leads to urgent security updates for all impacted systems.
Attackers can use carefully crafted png pictures to execute arbitrarycommands using a buffer overflow in when viewed in gtksee.

Summary


- - ---------------------------------------------------------------------
GENTOO LINUX SECURITY ANNOUNCEMENT 200307-05
- - ---------------------------------------------------------------------

- - ---------------------------------------------------------------------
Attackers can use carefully crafted png pictures to execute arbitrary commands using a buffer overflow in when viewed in gtksee.
SOLUTION
It is recommended that all Gentoo Linux users who are running media-gfx/gtksee upgrade to gtksee-0.5.2 as follows
emerge sync emerge gtksee emerge clean
- - --------------------------------------------------------------------- aliz@gentoo.org - GnuPG key is available at - - ---------------------------------------------------------------------

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Severity
critical
Lowest
Low
Medium
High
Critical

PACKAGE : gtksee
SUMMARY : buffer overflow
DATE : 2003-07-11 14:44 UTC
EXPLOIT : local
VERSIONS AFFECTED : =gtksee-0.5.2
CVE : CAN-2003-0444

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Related News

Your message here