Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Mandrake Local Security Checks >> MDKSA-2002:071: kdegraphics


Vulnerability Assessment Details

MDKSA-2002:071: kdegraphics

Vulnerability Assessment Summary
Check for the version of the kdegraphics package

Detailed Explanation for this Vulnerability Assessment

The remote host is missing the patch for the advisory MDKSA-2002:071 (kdegraphics).


A vulnerability exists in KGhostview, part of the kdegraphics package. It
includes a DSC 3.0 parser from GSview then is vulnerable to a buffer overflow
while parsing a specially crafted .ps file. It also contains code from gv which
is vulnerable to a similar buffer overflow triggered by malformed PostScript and
PDF files. This has been fixed in KDE 3.0.4 and patches have been applied to
correct these packages.


Solution : http://wwwnew.mandriva.com/security/advisories?name=MDKSA-2002:071
Network Security Threat Level: High

Networks Security ID:

Vulnerability Assessment Copyright: This script is Copyright (C) 2004 Tenable Network Security

Cables, Connectors

Intel Xeon E5-2448L SR0M2
$15.0
Intel Xeon  E5-2448L SR0M2 pictureHP ML110 G7 Tower - Xeon E3-1220 QC @ 3.10GHz 5GB ECC PC3 RAM No HDD+
$97.68
HP ML110 G7 Tower - Xeon E3-1220 QC @ 3.10GHz 5GB ECC PC3 RAM No HDD+ pictureIntel Xeon CPU 10 Core E5-2670 v2 (2.50GHz, 25M, 8.00GT/s) - SR1A7
$159.0
Intel Xeon CPU 10 Core E5-2670 v2 (2.50GHz, 25M, 8.00GT/s) - SR1A7 pictureDell PowerEdge R810 Server 2x Xeon Six Core E7542 2.66GHz 64GB RAM 2X 146GB HDD
$429.99
Dell PowerEdge R810 Server 2x Xeon Six Core E7542 2.66GHz 64GB RAM 2X 146GB HDD  picture


Discussions

No Discussions have been posted on this vulnerability.