Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.59040
Category:Mandrake Local Security Checks
Title:Mandrake Security Advisory MDKSA-2007:208 (ghostscript)
Summary:NOSUMMARY
Description:Description:

The remote host is missing an update to ghostscript
announced via advisory MDKSA-2007:208.

A function in the JasPer JPEG-2000 library before 1.900 could allow
a remote user-assisted attack to cause a crash and possibly corrupt
the heap via malformed image files.

Newer versions of ghostscript contain an embedded copy of libjasper
and as such is vulnerable to this issue.

Updated packages have been patched to prevent this issue.

Affected: 2008.0

Solution:
To upgrade automatically use MandrakeUpdate or urpmi. The verification
of md5 checksums and GPG signatures is performed automatically for you.

http://www.securityspace.com/smysecure/catid.html?in=MDKSA-2007:208

Risk factor : Medium

CVSS Score:
4.3

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2007-2721
BugTraq ID: 24052
http://www.securityfocus.com/bid/24052
Debian Security Information: DSA-2036 (Google Search)
http://www.debian.org/security/2010/dsa-2036
http://www.mandriva.com/security/advisories?name=MDKSA-2007:129
http://www.mandriva.com/security/advisories?name=MDKSA-2007:208
http://www.mandriva.com/security/advisories?name=MDKSA-2007:209
http://www.mandriva.com/security/advisories?name=MDVSA-2009:142
http://www.mandriva.com/security/advisories?name=MDVSA-2009:164
http://osvdb.org/36137
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9397
http://www.redhat.com/support/errata/RHSA-2009-0012.html
http://secunia.com/advisories/25287
http://secunia.com/advisories/25703
http://secunia.com/advisories/26516
http://secunia.com/advisories/27319
http://secunia.com/advisories/27489
http://secunia.com/advisories/39505
http://www.ubuntu.com/usn/usn-501-1
http://www.ubuntu.com/usn/usn-501-2
http://www.vupen.com/english/advisories/2010/0912
CopyrightCopyright (c) 2007 E-Soft Inc. http://www.securityspace.com

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.