XPCD PCDSVGAView本地缓冲区溢出漏洞

漏洞信息详情

XPCD PCDSVGAView本地缓冲区溢出漏洞

漏洞简介

xpcd是一款Linux下的相片光盘工具。
xpcd 2.08的pcdsvgaview中的缓冲区溢出,可让本地用户执行任意代码。

漏洞公告

目前厂商已经发布了升级补丁以修复这个安全问题,补丁下载链接:
xpcd xpcd 2.0 8
Debian xpcd_2.08-8woody3_alpha.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/x/xpcd/xpcd_2.08-8woody3_ alpha.deb
Debian xpcd_2.08-8woody3_arm.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/x/xpcd/xpcd_2.08-8woody3_ arm.deb
Debian xpcd_2.08-8woody3_hppa.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/x/xpcd/xpcd_2.08-8woody3_ hppa.deb
Debian xpcd_2.08-8woody3_i386.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/x/xpcd/xpcd_2.08-8woody3_ i386.deb
Debian xpcd_2.08-8woody3_ia64.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/x/xpcd/xpcd_2.08-8woody3_ ia64.deb
Debian xpcd_2.08-8woody3_m68k.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/x/xpcd/xpcd_2.08-8woody3_ m68k.deb
Debian xpcd_2.08-8woody3_mips.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/x/xpcd/xpcd_2.08-8woody3_ mips.deb
Debian xpcd_2.08-8woody3_mipsel.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/x/xpcd/xpcd_2.08-8woody3_ mipsel.deb
Debian xpcd_2.08-8woody3_powerpc.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/x/xpcd/xpcd_2.08-8woody3_ powerpc.deb
Debian xpcd_2.08-8woody3_s390.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/x/xpcd/xpcd_2.08-8woody3_ s390.deb
Debian xpcd_2.08-8woody3_sparc.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/x/xpcd/xpcd_2.08-8woody3_ sparc.deb

参考网址

来源: DEBIAN
名称: DSA-676
链接:http://www.debian.org/security/2005/dsa-676

来源: BID
名称: 12523
链接:http://www.securityfocus.com/bid/12523

来源: SECTRACK
名称: 1013162
链接:http://securitytracker.com/id?1013162

来源: SECUNIA
名称: 14250
链接:http://secunia.com/advisories/14250

来源: SECUNIA
名称: 14248
链接:http://secunia.com/advisories/14248

受影响实体

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享