[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

253164

 
 

909

 
 

197077

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-1912-2 advi -- integer overflow

ID: oval:org.secpod.oval:def:600271Date: (C)2011-05-13   (M)2023-11-09
Class: PATCHFamily: unix




Due to the fact that advi, an active DVI previewer and presenter, statically links against camlimages it was neccessary to rebuilt it in order to incorporate the latest security fixes for camlimages, which could lead to integer overflows via specially crafted TIFF files or GIFF and JPEG images . For the stable distribution , these problems have been fixed in version 1.6.0-13+lenny2. Due to a bug in the archive system, the fix for the oldstable distribution cannot be released at the same time. These problems will be fixed in version 1.6.0-12+etch2, once it is available. For the testing distribution and the unstable distribution , these problems have been fixed in version 1.6.0-14+b1. We recommend that you upgrade your advi package.

Platform:
Debian 5.0
Product:
advi
Reference:
DSA-1912-2
CVE-2009-3296
CVE-2009-2660
CVE    2
CVE-2009-2660
CVE-2009-3296
CPE    1
cpe:/o:debian:debian_linux:5.x

© SecPod Technologies