Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.53161
Category:Debian Local Security Checks
Title:Debian Security Advisory DSA 464-1 (gdk-pixbuf)
Summary:The remote host is missing an update to gdk-pixbuf;announced via advisory DSA 464-1.
Description:Summary:
The remote host is missing an update to gdk-pixbuf
announced via advisory DSA 464-1.

Vulnerability Insight:
Thomas Kristensen discovered a vulnerability in gdk-pixbuf (binary
package libgdk-pixbuf2), the GdkPixBuf image library for Gtk, that can
cause the surrounding application to crash. To exploit this problem,
a remote attacker could send a carefully-crafted BMP file via mail,
which would cause e.g. Evolution to crash but is probably not limited
to Evolution.

For the stable distribution (woody) this problem has been fixed in
version 0.17.0-2woody1.

For the unstable distribution (sid) this problem has been fixed in
version 0.22.0-3.

Solution:
We recommend that you upgrade your libgdk-pixbuf2 package.

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2004-0111
BugTraq ID: 9842
http://www.securityfocus.com/bid/9842
Debian Security Information: DSA-464 (Google Search)
http://www.debian.org/security/2004/dsa-464
https://bugzilla.fedora.us/show_bug.cgi?id=2005
http://www.mandrakesoft.com/security/advisories?name=MDKSA-2004:020
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A845
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A846
http://www.redhat.com/support/errata/RHSA-2004-102.html
http://www.redhat.com/support/errata/RHSA-2004-103.html
XForce ISS Database: gdk-pixbuf-bitmap-dos(15426)
https://exchange.xforce.ibmcloud.com/vulnerabilities/15426
CopyrightCopyright (C) 2008 E-Soft Inc.

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.