Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Debian Local Security Checks >> [DSA1262] DSA-1262-1 gnomemeeting


Vulnerability Assessment Details

[DSA1262] DSA-1262-1 gnomemeeting

Vulnerability Assessment Summary
DSA-1262-1 gnomemeeting

Detailed Explanation for this Vulnerability Assessment

Mu Security discovered that a format string vulnerability in
the VoIP solution GnomeMeeting permits the execution of arbitrary code.
For the stable distribution (sarge) this problem has been fixed in
version 1.2.1-1sarge1.
For the upcoming stable distribution (etch) this problem has been
fixed in version 2.0.3-2.1 of the ekiga package.
For the unstable distribution (sid) this problem has been fixed in
version 2.0.3-2.1 of the ekiga package.
We recommend that you upgrade your gnomemeeting package.


Solution : http://www.debian.org/security/2007/dsa-1262
Network Security Threat Level: High

Networks Security ID:

Vulnerability Assessment Copyright: This script is (C) 2007 Michel Arboi

Cables, Connectors

NEW Polycom SoundStation IP 5000 PoE SIP VoIP Conference Phone (2200-30900-025)
$198.09
NEW Polycom SoundStation IP 5000 PoE SIP VoIP Conference Phone (2200-30900-025) pictureCisco VG224 Analog Phone Voice Gateway VoIP 24-Port - 1 Year Warranty
$55.0
Cisco VG224 Analog Phone Voice Gateway VoIP 24-Port - 1 Year Warranty picturePolycom IP 331 SIP VoIP PoE Display Office Business Phone NEW
$79.99
Polycom IP 331 SIP VoIP PoE Display Office Business Phone           NEW pictureQuintum A400 Tenor 4Port VOIP Analog Switch
$195.0
Quintum A400 Tenor 4Port VOIP Analog Switch picture


Discussions

No Discussions have been posted on this vulnerability.