Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Gentoo Local Security Checks >> [GLSA-200506-09] gedit: Format string vulnerability


Vulnerability Assessment Details

[GLSA-200506-09] gedit: Format string vulnerability

Vulnerability Assessment Summary
gedit: Format string vulnerability

Detailed Explanation for this Vulnerability Assessment
The remote host is affected by the vulnerability described in GLSA-200506-09
(gedit: Format string vulnerability)


A format string vulnerability exists when opening files with names
containing format specifiers.

Impact

A specially crafted file with format specifiers in the filename
can cause arbitrary code execution.

Workaround

There are no known workarounds at this time.

References:
http://www.securityfocus.com/bid/13699
http://mail.gnome.org/archives/gnome-announce-list/2005-June/msg00006.html


Solution:
All gedit users should upgrade to the latest version:
# emerge --sync
# emerge --ask --oneshot --verbose ">=app-editors/gedit-2.10.3"


Network Security Threat Level: Medium


Networks Security ID:

Vulnerability Assessment Copyright: (C) 2005 Michel Arboi

Cables, Connectors


Vintage Apple Macintosh Plus 1MB Model M0001A - For parts picture

Vintage Apple Macintosh Plus 1MB Model M0001A - For parts

$91.99



VINTAGE APPLE MACINTOSH POWERBOOK 180 ( M4440) Powers On picture

VINTAGE APPLE MACINTOSH POWERBOOK 180 ( M4440) Powers On

$100.00



Apple Macintosh Plus 1Mb Vintage Desktop Computer No Return Needs Work picture

Apple Macintosh Plus 1Mb Vintage Desktop Computer No Return Needs Work

$149.99



Vintage Apple Macintosh Performa 550 picture

Vintage Apple Macintosh Performa 550

$360.00



Vintage Apple Macintosh PowerBook 190 Series -  NO POWER FOR PARTS picture

Vintage Apple Macintosh PowerBook 190 Series - NO POWER FOR PARTS

$69.99



Vintage Apple Macintosh Plus 1MB M0001A Desktop Computer - Powers On / Bad Video picture

Vintage Apple Macintosh Plus 1MB M0001A Desktop Computer - Powers On / Bad Video

$109.99



Vintage Apple Macintosh 8100/100AV Computer M1688 - Untested picture

Vintage Apple Macintosh 8100/100AV Computer M1688 - Untested

$79.95



Apple Macintosh Startup Disk for Vintage Mac - System 1.1 w/ MacWrite & MacPaint picture

Apple Macintosh Startup Disk for Vintage Mac - System 1.1 w/ MacWrite & MacPaint

$9.99



Apple Macintosh Performa 466 Vintage Computer | SKU 146754 picture

Apple Macintosh Performa 466 Vintage Computer | SKU 146754

$149.95



Vintage Apple Macintosh PowerBook G3 M4753 w/ Power Adapter picture

Vintage Apple Macintosh PowerBook G3 M4753 w/ Power Adapter

$149.00



Discussions

No Discussions have been posted on this vulnerability.