Moderate: pwlib security update
Date: Mon, 8 Oct 2007 15:23:15 -0500
Reply-To: Troy Dawson
Sender: Security Errata for Scientific Linux
From: Troy Dawson
Subject: Security ERRATA for pwlib on SL5.x i386/x86_64
Comments: To: This email address is being protected from spambots. You need JavaScript enabled to view it.
Synopsis: Moderate: pwlib security update
Issue date: 2007-10-08
CVE Names: CVE-2007-4897
In Scientific Linux 5, the Ekiga teleconferencing application uses
PWLib.
A memory management flaw was discovered in PWLib. An attacker could use this
flaw to crash an application, such as Ekiga, which is linked with pwlib
(CVE-2007-4897).
SL 5.x
SRPMS:
pwlib-1.10.1-7.0.1.el5.src.rpm
i386:
pwlib-1.10.1-7.0.1.el5.i386.rpm
pwlib-devel-1.10.1-7.0.1.el5.i386.rpm
x86_64:
pwlib-1.10.1-7.0.1.el5.x86_64.rpm
pwlib-devel-1.10.1-7.0.1.el5.x86_64.rpm
-Connie Sieh
-Troy Dawson