Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.1.12.2006.265.1
Category:Ubuntu Local Security Checks
Title:Ubuntu: Security Advisory (USN-265-1)
Summary:The remote host is missing an update for the 'libcairo' package(s) announced via the USN-265-1 advisory.
Description:Summary:
The remote host is missing an update for the 'libcairo' package(s) announced via the USN-265-1 advisory.

Vulnerability Insight:
When rendering glyphs, the cairo graphics rendering library did not
check the maximum length of character strings. A request to display
an excessively long string with cairo caused a program crash due to an
X library error.

Mike Davis discovered that this could be turned into a Denial of
Service attack in Evolution. An email with an attachment with very
long lines caused Evolution to crash repeatedly until that email was
manually removed from the mail folder.

This only affects Ubuntu 5.10. Previous Ubuntu releases did not use
libcairo for text rendering.

Affected Software/OS:
'libcairo' package(s) on Ubuntu 5.10.

Solution:
Please install the updated package(s).

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2006-0528
BugTraq ID: 16408
http://www.securityfocus.com/bid/16408
http://archives.neohapsis.com/archives/fulldisclosure/2006-01/0925.html
http://www.mandriva.com/security/advisories?name=MDKSA-2006:057
http://secunia.com/advisories/19504
http://securityreason.com/securityalert/610
SuSE Security Announcement: SUSE-SR:2006:007 (Google Search)
http://www.novell.com/linux/security/advisories/2006_07_sr.html
https://usn.ubuntu.com/265-1/
CopyrightCopyright (C) 2022 Greenbone AG

This is only one of 146377 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.