Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.55726
Category:Mandrake Local Security Checks
Title:Mandrake Security Advisory MDKSA-2005:192 (xli)
Summary:NOSUMMARY
Description:Description:

The remote host is missing an update to xli
announced via advisory MDKSA-2005:192.

Ariel Berkman discovered several buffer overflows in xloadimage,
which are also present in xli, a command line utility for viewing
images in X11, and could be exploited via large image titles and
cause the execution of arbitrary code.

The updated packages have been patched to address this issue.

Affected versions: 10.2, 2006.0, Corporate 3.0,
Corporate Server 2.1

Solution:
To upgrade automatically use MandrakeUpdate or urpmi. The verification
of md5 checksums and GPG signatures is performed automatically for you.

http://www.securityspace.com/smysecure/catid.html?in=MDKSA-2005:192

Risk factor : High

CVSS Score:
5.1

Cross-Ref: BugTraq ID: 15051
Common Vulnerability Exposure (CVE) ID: CVE-2005-3178
http://www.securityfocus.com/bid/15051
Bugtraq: 20051005 xloadimage buffer overflow. (Google Search)
http://marc.info/?l=bugtraq&m=112862493918840&w=2
Debian Security Information: DSA-858 (Google Search)
http://www.debian.org/security/2005/dsa-858
Debian Security Information: DSA-859 (Google Search)
http://www.debian.org/security/2005/dsa-859
http://www.securityfocus.com/archive/1/433935/30/5010/threaded
http://www.gentoo.org/security/en/glsa/glsa-200510-26.xml
http://www.mandriva.com/security/advisories?name=MDKSA-2005:192
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10590
http://www.redhat.com/support/errata/RHSA-2005-802.html
SCO Security Bulletin: SCOSA-2005.56
ftp://ftp.sco.com/pub/updates/UnixWare/SCOSA-2005.56/SCOSA-2005.56.txt
SCO Security Bulletin: SCOSA-2005.62
ftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2005.62/SCOSA-2005.62.txt
http://securitytracker.com/id?1015072
http://secunia.com/advisories/17087/
http://secunia.com/advisories/17124
http://secunia.com/advisories/17139
http://secunia.com/advisories/17140
http://secunia.com/advisories/17143
http://secunia.com/advisories/17206
http://secunia.com/advisories/17273
http://secunia.com/advisories/17282
http://secunia.com/advisories/17369
http://secunia.com/advisories/18050
http://secunia.com/advisories/18170
http://secunia.com/advisories/18491
SuSE Security Announcement: SUSE-SR:2005:024 (Google Search)
http://www.novell.com/linux/security/advisories/2005_24_sr.html
CopyrightCopyright (c) 2005 E-Soft Inc. http://www.securityspace.com

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.