|
Vulnerability Assessment & Network Security Forums |
|||||||||
If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important. If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery. Home >> Browse Vulnerability Assessment Database >> Red Hat Local Security Checks >> RHSA-2005-843: netpbm Vulnerability Assessment Details
|
RHSA-2005-843: netpbm |
||
Check for the version of the netpbm packages Detailed Explanation for this Vulnerability Assessment Updated netpbm packages that fix two security issues are now available. This update has been rated as having moderate security impact by the Red Hat Security Response Team. The netpbm package contains a library of functions that support programs for handling various graphics file formats. A stack based buffer overflow bug was found in the way netpbm converts Portable Anymap (PNM) files into Portable Network Graphics (PNG). A specially crafted PNM file could permit a possible hacker to execute arbitrary code by attempting to convert a PNM file to a PNG file when using pnmtopng with the '-text' option. The Common Vulnerabilities and Exposures project has assigned the name CVE-2005-3632 to this issue. An "off by one" bug was found in the way netpbm converts Portable Anymap (PNM) files into Portable Network Graphics (PNG). If a victim attempts to convert a specially crafted 256 color PNM file to a PNG file, then it can cause the pnmtopng utility to crash. The Common Vulnerabilities and Exposures project has assigned the name CVE-2005-3662 to this issue. All users of netpbm should upgrade to these updated packages, which contain backported patches that resolve these issues. Solution : http://rhn.redhat.com/errata/RHSA-2005-843.html Network Security Threat Level: High Networks Security ID: Vulnerability Assessment Copyright: This script is Copyright (C) 2005 Tenable Network Security |
||
Cables, Connectors |
Vintage Keytronic PC/AT VT Switch FCC ID:CIG8AVE03435 TESTED WORKING
$30.00
NMB KEYBOARD RT2258TW NMB PS/2 BEIGE 121944-101 REV A VINTAGE NEW OLD STOCK
$25.99
Lot Of 5 - Vintage IBM style 80 Column Punch Cards - Kelly 5081, Pink Print Band
$5.00
Vintage Dream Writer NTS 325 Computer Basic Language Notebook “Untested “
$30.00
Vintage Nan Tan KB-6251EA Mechanical Keyboard Rare
$29.99
Vintage IBM 80 Character Punch Card 5081 Unpunched & Non-Vintage Code Tutorial
$3.99
PU Leather Laptop Sleeve Case for MacBook Air Pro 13 14 15 16 inch Vintage Cover
$28.99
Vintage Microsoft QuickBASIC 4.5 for MS-DOS + QuickBasic Quick Reference book
$153.21
Vintage Atari 1040STf Computer with Mouse and Box, Minimal Testing, Pls Read
$149.99
Vintage Nan Tan KB-5161 Clicky Mechanical Alps Keyboard Blue **Arabic Key**
$130.00
|
||
No Discussions have been posted on this vulnerability. |