Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.53955
Category:Slackware Local Security Checks
Title:Slackware: Security Advisory (SSA:2005-121-02)
Summary:The remote host is missing an update for the 'xine-lib' package(s) announced via the SSA:2005-121-02 advisory.
Description:Summary:
The remote host is missing an update for the 'xine-lib' package(s) announced via the SSA:2005-121-02 advisory.

Vulnerability Insight:
New xine-lib packages are available for Slackware 10.0, 10.1, and -current to
fix security issues. The xine frontends have also been upgraded.

For more details on the xine-lib security issues, see:
[link moved to references]


Here are the details from the Slackware 10.1 ChangeLog:
+--------------------------+
patches/packages/xine-lib-1.0.1-i686-1.tgz: Upgraded to xine-lib-1.0.1.
This fixes some bugs in the MMS and Real RTSP streaming client code.
While the odds of this vulnerability being usable to a remote attacker are
low (but see the xine advisory), if you stream media from sites using these
protocols (and you think the sites might be 'hostile' and will try to hack
into your xine client), then you might want to upgrade to this new version
of xine-lib. Probably the other fixes and enhancements in xine-lib-1.0.1
are a better rationale to do so, though.
For more details on the xine-lib security issues, see:
[link moved to references]
(* Security fix *)
+--------------------------+

Affected Software/OS:
'xine-lib' package(s) on Slackware 10.0, Slackware 10.1, Slackware current.

Solution:
Please install the updated package(s).

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:N/A:N

CopyrightCopyright (C) 2012 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.