Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.52686
Category:Mandrake Local Security Checks
Title:Mandrake Security Advisory MDKSA-2005:085 (kdelibs)
Summary:NOSUMMARY
Description:Description:

The remote host is missing an update to kdelibs
announced via advisory MDKSA-2005:085.

A buffer overflow in the PCX decoder of kimgio was discovered by Bruno
Rohee. If an attacker could trick a user into loading a malicious PCX
image with any KDE application, he could cause the execution of
arbitrary code with the privileges of the user opening the image.

The provided packages have been patched to correct this issue.

In addition, the LE2005 packages contain fixes to configuring email
into kbugreport, fixing a KDE crasher bug, fixing a kicondialog
bug, a KHTML bug, and a knewsticker export symbol problem.

Affected versions: 10.1, 10.2, Corporate 3.0

Solution:
To upgrade automatically use MandrakeUpdate or urpmi. The verification
of md5 checksums and GPG signatures is performed automatically for you.

http://www.securityspace.com/smysecure/catid.html?in=MDKSA-2005:085
http://bugs.kde.org/show_bug.cgi?id=101577
http://bugs.kde.org/show_bug.cgi?id=104475
http://bugs.kde.org/show_bug.cgi?id=99970

Risk factor : High

CVSS Score:
7.5

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2005-1046
BugTraq ID: 13096
http://www.securityfocus.com/bid/13096
Debian Security Information: DSA-714 (Google Search)
http://www.debian.org/security/2005/dsa-714
http://www.securityfocus.com/archive/1/427976/100/0/threaded
http://bugs.kde.org/show_bug.cgi?id=102328
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11081
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5802
http://www.redhat.com/support/errata/RHSA-2005-393.html
http://secunia.com/advisories/14908
http://secunia.com/advisories/28114
http://sunsolve.sun.com/search/document.do?assetkey=1-26-103170-1
http://sunsolve.sun.com/search/document.do?assetkey=1-66-201320-1
SuSE Security Announcement: SUSE-SA:2005:022 (Google Search)
http://www.novell.com/linux/security/advisories/2005_22_kdelibs3.html
http://www.vupen.com/english/advisories/2005/0331
http://www.vupen.com/english/advisories/2007/4241
CopyrightCopyright (c) 2005 E-Soft Inc. http://www.securityspace.com

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.