![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
Test ID: | 1.3.6.1.4.1.25623.1.0.53365 |
Category: | Debian Local Security Checks |
Title: | Debian Security Advisory DSA 293-1 (kdelibs) |
Summary: | The remote host is missing an update to kdelibs;announced via advisory DSA 293-1. |
Description: | Summary: The remote host is missing an update to kdelibs announced via advisory DSA 293-1. Vulnerability Insight: The KDE team discovered a vulnerability in the way KDE uses Ghostscript software for processing of PostScript (PS) and PDF files. An attacker could provide a malicious PostScript or PDF file via mail or websites that could lead to executing arbitrary commands under the privileges of the user viewing the file or when the browser generates a directory listing with thumbnails. For the stable distribution (woody) this problem has been fixed in version 2.2.2-13.woody.7 of kdelibs and associated packages. The old stable distribution (potato) is not affected since it does not contain KDE. For the unstable distribution (sid) this problem will be fixed soon. For the unofficial backport of KDE 3.1.1 to woody by Ralf Nolden on download.kde.org, this problem has been fixed in version 3.1.1-0woody3 of kdelibs. Solution: We recommend that you upgrade your kdelibs and associated packages. CVSS Score: 7.5 CVSS Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P |
Cross-Ref: |
Common Vulnerability Exposure (CVE) ID: CVE-2003-0204 Bugtraq: 20030410 GLSA: kde-3.x (200304-04) (Google Search) http://marc.info/?l=bugtraq&m=105001557020141&w=2 Bugtraq: 20030411 GLSA: kde-2.x (200304-05) (Google Search) http://marc.info/?l=bugtraq&m=105012994719099&w=2 Bugtraq: 20030412 [Sorcerer-spells] KDE-SORCERER2003-04-12 (Google Search) http://marc.info/?l=bugtraq&m=105017403010459&w=2 Bugtraq: 20030414 GLSA: kde-2.x (200304-05.1) (Google Search) http://marc.info/?l=bugtraq&m=105034222521369&w=2 Conectiva Linux advisory: CLA-2003:668 http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000668 Conectiva Linux advisory: CLA-2003:747 http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000747 Debian Security Information: DSA-284 (Google Search) http://www.debian.org/security/2003/dsa-284 Debian Security Information: DSA-293 (Google Search) http://www.debian.org/security/2003/dsa-293 Debian Security Information: DSA-296 (Google Search) http://www.debian.org/security/2003/dsa-296 http://www.mandriva.com/security/advisories?name=MDKSA-2003:049 http://www.redhat.com/support/errata/RHSA-2003-002.html |
Copyright | Copyright (C) 2008 E-Soft Inc. |
This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |