Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Debian Local Security Checks >> [DSA628] DSA-628-1 imlib2


Vulnerability Assessment Details

[DSA628] DSA-628-1 imlib2

Vulnerability Assessment Summary
DSA-628-1 imlib2

Detailed Explanation for this Vulnerability Assessment

Pavel Kankovsky discovered that several overflows found in the libXpm
library were also present in imlib and imlib2, imaging libraries for
X11. A possible hacker could create a carefully crafted image file in such
a way that it could cause an application linked with imlib or imlib2
to execute arbitrary code when the file was opened by a victim. The
Common Vulnerabilities and Exposures project identifies the following
problems:
Multiple heap-based buffer overflows. No such code is present in
imlib2.
Multiple integer overflows in the imlib library.
For the stable distribution (woody) these problems have been fixed in
version 1.0.5-2woody2.
For the unstable distribution (sid) these problems will be fixed soon.
We recommend that you upgrade your imlib2 packages.


Solution : http://www.debian.org/security/2005/dsa-628
Network Security Threat Level: High

Networks Security ID:

Vulnerability Assessment Copyright: This script is (C) 2005 Michel Arboi

Cables, Connectors


A8picoCart Atari 130 / 65 XE 800 / 1200 XL XEGS multicart UnoCart clone game picture

A8picoCart Atari 130 / 65 XE 800 / 1200 XL XEGS multicart UnoCart clone game

$31.95



Atari Power Cube 800XL, 600XL, 65XE, 130XE  USB-C Power Supply PSU picture

Atari Power Cube 800XL, 600XL, 65XE, 130XE USB-C Power Supply PSU

$11.25



Vintage Atari XC12 Program Cassette Tape Player picture

Vintage Atari XC12 Program Cassette Tape Player

$69.90



Atari 400/800/XL/XE Computer SIO2PC - PC/Mac Disk Drive Emulator Adapter/Device picture

Atari 400/800/XL/XE Computer SIO2PC - PC/Mac Disk Drive Emulator Adapter/Device

$15.25



Vintage Atari 1025 Dot Matrix Printer - Untested - For Parts/Repair Only picture

Vintage Atari 1025 Dot Matrix Printer - Untested - For Parts/Repair Only

$59.95



A8PicoCart Kit Atari XE XL unocart clone multicart cartridge game picture

A8PicoCart Kit Atari XE XL unocart clone multicart cartridge game

$18.95



STAR RAIDERS CXL4011 AND QIX CLX4027 ATARI GAMES 400/800/1200 (SEE DESCRIPTION) picture

STAR RAIDERS CXL4011 AND QIX CLX4027 ATARI GAMES 400/800/1200 (SEE DESCRIPTION)

$24.99



Vintage Atari Megafile 44 External 44MB Drive ST STE Mega picture

Vintage Atari Megafile 44 External 44MB Drive ST STE Mega

$315.00



Atari 1050 US Doubler upgrade kit picture

Atari 1050 US Doubler upgrade kit

$35.00



Atari 400 800 SALT Diagnostics Orange cart Cartridge Diags TE15644 Ver 2.05 picture

Atari 400 800 SALT Diagnostics Orange cart Cartridge Diags TE15644 Ver 2.05

$25.99



Discussions

No Discussions have been posted on this vulnerability.