漏洞信息详情
Gaim 缓冲区溢出漏洞
- CNNVD编号:CNNVD-200508-120
- 危害等级: 高危
- CVE编号:
CVE-2005-2103
- 漏洞类型:
缓冲区溢出
- 发布时间:
2005-08-16
- 威胁类型:
远程
- 更新时间:
2005-10-20
- 厂 商:
rob_flynn - 漏洞来源:
Brandon PerryDanie… -
漏洞简介
Gaim是一款Linux系统下的即时通讯软件,是一个同时支持多种协议的即时聊天工具,所支持的协议包括AIM、ICQ、MSN、IRC和Jabber。
Gaim处理away消息的方式存在缓冲区溢出漏洞。远程攻击者可以向登陆到AIM或ICQ的Gaim用户发送特制的away消息,导致执行任意代码。
Gaim中还存在拒绝服务漏洞。远程攻击者可以向登陆到AIM或ICQ的用户上传有特制文件名的文件,导致Gaim崩溃。
漏洞公告
目前厂商已经发布了升级补丁以修复这个安全问题,补丁下载链接:
Sun Solaris 10.0
Sun 120739-04
SPARC Platform
http://sunsolve.sun.com/search/document.do?assetkey=urn:cds:docid:1-21 -120739-04-1
Turbolinux Turbolinux 10 F…
Turbolinux cups-1.1.19-26.i586.rpm
Turbolinux 10 Desktop, Turbolinux 10 F…, Turbolinux Home, Turbolinux Multimedia, Turbolinux Personal
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Desktop/10/u pdates/RPMS/cups-1.1.19-26.i586.rpm
Turbolinux cups-devel-1.1.19-26.i586.rpm
Turbolinux 10 Desktop, Turbolinux 10 F…, Turbolinux Home, Turbolinux Multimedia, Turbolinux Personal
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Desktop/10/u pdates/RPMS/cups-devel-1.1.19-26.i586.rpm
Turbolinux cups-libs-1.1.19-26.i586.rpm
Turbolinux 10 Desktop, Turbolinux 10 F…, Turbolinux Home, Turbolinux Multimedia, Turbolinux Personal
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Desktop/10/u pdates/RPMS/cups-libs-1.1.19-26.i586.rpm
Turbolinux Home
Turbolinux cups-1.1.19-26.i586.rpm
Turbolinux 10 Desktop, Turbolinux 10 F…, Turbolinux Home, Turbolinux Multimedia, Turbolinux Personal
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Desktop/10/u pdates/RPMS/cups-1.1.19-26.i586.rpm
Turbolinux cups-devel-1.1.19-26.i586.rpm
Turbolinux 10 Desktop, Turbolinux 10 F…, Turbolinux Home, Turbolinux Multimedia, Turbolinux Personal
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Desktop/10/u pdates/RPMS/cups-devel-1.1.19-26.i586.rpm
Turbolinux cups-libs-1.1.19-26.i586.rpm
Turbolinux 10 Desktop, Turbolinux 10 F…, Turbolinux Home, Turbolinux Multimedia, Turbolinux Personal
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Desktop/10/u pdates/RPMS/cups-libs-1.1.19-26.i586.rpm
Sun Solaris 10.0_x86
Sun 120740-04
x86 Platform
http://sunsolve.sun.com/search/document.do?assetkey=urn:cds:docid:1-21 -120740-04-1
TurboLinux Personal
Turbolinux cups-1.1.19-26.i586.rpm
Turbolinux 10 Desktop, Turbolinux 10 F…, Turbolinux Home, Turbolinux Multimedia, Turbolinux Personal
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Desktop/10/u pdates/RPMS/cups-1.1.19-26.i586.rpm
Turbolinux cups-devel-1.1.19-26.i586.rpm
Turbolinux 10 Desktop, Turbolinux 10 F…, Turbolinux Home, Turbolinux Multimedia, Turbolinux Personal
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Desktop/10/u pdates/RPMS/cups-devel-1.1.19-26.i586.rpm
Turbolinux cups-libs-1.1.19-26.i586.rpm
Turbolinux 10 Desktop, Turbolinux 10 F…, Turbolinux Home, Turbolinux Multimedia, Turbolinux Personal
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Desktop/10/u pdates/RPMS/cups-libs-1.1.19-26.i586.rpm
TurboLinux Multimedia
Turbolinux cups-1.1.19-26.i586.rpm
Turbolinux 10 Desktop, Turbolinux 10 F…, Turbolinux Home, Turbolinux Multimedia, Turbolinux Personal
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Desktop/10/u pdates/RPMS/cups-1.1.19-26.i586.rpm
Turbolinux cups-devel-1.1.19-26.i586.rpm
Turbolinux 10 Desktop, Turbolinux 10 F…, Turbolinux Home, Turbolinux Multimedia, Turbolinux Personal
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Desktop/10/u pdates/RPMS/cups-devel-1.1.19-26.i586.rpm
Turbolinux cups-libs-1.1.19-26.i586.rpm
Turbolinux 10 Desktop, Turbolinux 10 F…, Turbolinux Home, Turbolinux Multimedia, Turbolinux Personal
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Desktop/10/u pdates/RPMS/cups-libs-1.1.19-26.i586.rpm
Turbolinux Appliance Server Workgroup Edition 1.0
Turbolinux cups-1.1.19-26.i586.rpm
Turbolinux Appliance Server and Workgroup 1.0 Hosting Edition
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/
Turbolinux cups-devel-1.1.19-26.i586.rpm
Turbolinux 8 Workstation
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/
Turbolinux cups-libs-1.1.19-26.i586.rpm
Turbolinux 8 Workstation
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/
Turbolinux Appliance Server Hosting Edition 1.0
Turbolinux cups-1.1.19-26.i586.rpm
Turbolinux Appliance Server and Workgroup 1.0 Hosting Edition
ftp://
参考网址
来源: UBUNTU
名称: USN-168-1
链接:http://www.ubuntulinux.org/support/documentation/usn/usn-168-1
来源: gaim.sourceforge.net
链接:http://gaim.sourceforge.net/security/?id=22
来源: BID
名称: 14531
链接:http://www.securityfocus.com/bid/14531
来源: FEDORA
名称: FLSA:158543
链接:http://www.securityfocus.com/archive/1/archive/1/426078/100/0/threaded
来源: REDHAT
名称: RHSA-2005:627
链接:http://www.redhat.com/support/errata/RHSA-2005-627.html
来源: REDHAT
名称: RHSA-2005:589
链接:http://www.redhat.com/support/errata/RHSA-2005-589.html
来源: SUSE
名称: SUSE-SR:2005:019
链接:http://www.novell.com/linux/security/advisories/2005_19_sr.html