Updated package.. - --------------------------------------------------------------------------Debian Security Advisory DSA 1144-1
chmlib and KchmViewer contain a buffer overflow vulnerability which may lead to the execution of arbitrary code.. - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 200511-23 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - https://security.gentoo.org/ - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Severity: Normal Title: chmlib, KchmViewer: Stack-based buffer overflow Date: November 28, 2005 Bugs: #110557 ID: 200511-23 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Synopsis ======= chmlib and KchmViewer contain a buffer overflow vulnerability which may lead to the execution of arbitrary code. Background ========= chmlib is a library for dealing with Microsoft ITSS and CHM format files. KchmViewer is a CHM viewer that includes its own copy of the chmlib library. Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 app-doc/chmlib < 0.37.4 > = 0.37.4 2 app-doc/kchmviewer < 1.1 > = 1.1 ------------------------------------------------------------------- 2 affected packages on all of their supported architectures. ------------------------------------------------------------------- Description ========== Sven Tantau reported about a buffer overflow vulnerability in chmlib. The function "_chm_decompress_block()" does not properly perform boundary checking, resulting in a stack-based buffer overflow. Impact ===== By convincing a user to open a specially crafted ITSS or CHM file, using KchmViewer or a program makes use of chmlib, a remote attacker could execute arbitrary code with the privileges of the userrunning the software. Workaround ========= There is no known workaround at this time. Resolution ========= All chmlib users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose "> =app-doc/chmlib-0.37.4" All KchmViewer users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose "> =app-doc/kchmviewer-1.1" References ========= [ 1 ] CVE-2005-3318 Availability =========== This GLSA and any updates to it are available for viewing at the Gentoo Security Website: https://security.gentoo.org/glsa/200511-23 Concerns? ======== Security is a primary focus of Gentoo Linux and ensuring the confidentiality and security of our users machines is of utmost importance to us. Any security concerns should be addressed to
Updated package.. - --------------------------------------------------------------------------Debian Security Advisory DSA 886-1
Get the latest Linux and open source security news straight to your inbox.