Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.55595
Category:Debian Local Security Checks
Title:Debian: Security Advisory (DSA-858-1)
Summary:The remote host is missing an update for the Debian 'xloadimage' package(s) announced via the DSA-858-1 advisory.
Description:Summary:
The remote host is missing an update for the Debian 'xloadimage' package(s) announced via the DSA-858-1 advisory.

Vulnerability Insight:
Ariel Berkman discovered several buffer overflows in xloadimage, a graphics file viewer for X11, that can be exploited via large image titles and cause the execution of arbitrary code.

For the old stable distribution (woody) these problems have been fixed in version 4.1-10woody2.

For the stable distribution (sarge) these problems have been fixed in version 4.1-14.3.

For the unstable distribution (sid) these problems have been fixed in version 4.1-15.

We recommend that you upgrade your xloadimage package.

Affected Software/OS:
'xloadimage' package(s) on Debian 3.0, Debian 3.1.

Solution:
Please install the updated package(s).

CVSS Score:
5.1

CVSS Vector:
AV:N/AC:H/Au:N/C:P/I:P/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2005-3178
BugTraq ID: 15051
http://www.securityfocus.com/bid/15051
Bugtraq: 20051005 xloadimage buffer overflow. (Google Search)
http://marc.info/?l=bugtraq&m=112862493918840&w=2
Debian Security Information: DSA-858 (Google Search)
http://www.debian.org/security/2005/dsa-858
Debian Security Information: DSA-859 (Google Search)
http://www.debian.org/security/2005/dsa-859
http://www.securityfocus.com/archive/1/433935/30/5010/threaded
http://www.gentoo.org/security/en/glsa/glsa-200510-26.xml
http://www.mandriva.com/security/advisories?name=MDKSA-2005:192
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10590
http://www.redhat.com/support/errata/RHSA-2005-802.html
SCO Security Bulletin: SCOSA-2005.56
ftp://ftp.sco.com/pub/updates/UnixWare/SCOSA-2005.56/SCOSA-2005.56.txt
SCO Security Bulletin: SCOSA-2005.62
ftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2005.62/SCOSA-2005.62.txt
http://securitytracker.com/id?1015072
http://secunia.com/advisories/17087/
http://secunia.com/advisories/17124
http://secunia.com/advisories/17139
http://secunia.com/advisories/17140
http://secunia.com/advisories/17143
http://secunia.com/advisories/17206
http://secunia.com/advisories/17273
http://secunia.com/advisories/17282
http://secunia.com/advisories/17369
http://secunia.com/advisories/18050
http://secunia.com/advisories/18170
http://secunia.com/advisories/18491
SuSE Security Announcement: SUSE-SR:2005:024 (Google Search)
http://www.novell.com/linux/security/advisories/2005_24_sr.html
CopyrightCopyright (C) 2008 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.