2020-10-24
ALT-BU-2020-4105-1
Branch p9 update bulletin.
Closed vulnerabilities
Published: 2005-10-07
Modified: 2024-11-21
Modified: 2024-11-21
CVE-2005-3178
Buffer overflow in xloadimage 4.1 and earlier, and xli, might allow user-assisted attackers to execute arbitrary code via a long title name in a NIFF file, which triggers the overflow during (1) zoom, (2) reduce, or (3) rotate operations.
Severity: MEDIUM (5.1)
References:
- SCOSA-2005.62
- SCOSA-2005.62
- SCOSA-2005.56
- SCOSA-2005.56
- 20051005 xloadimage buffer overflow.
- 20051005 xloadimage buffer overflow.
- 17087
- 17087
- 17124
- 17124
- 17139
- 17139
- 17140
- 17140
- 17143
- 17143
- 17206
- 17206
- 17273
- 17273
- 17282
- 17282
- 17369
- 17369
- 18050
- 18050
- 18170
- 18170
- 18491
- 18491
- 1015072
- 1015072
- http://support.avaya.com/elmodocs2/security/ASA-2006-013.htm
- http://support.avaya.com/elmodocs2/security/ASA-2006-013.htm
- DSA-858
- DSA-858
- DSA-859
- DSA-859
- GLSA-200510-26
- GLSA-200510-26
- MDKSA-2005:192
- MDKSA-2005:192
- SUSE-SR:2005:024
- SUSE-SR:2005:024
- RHSA-2005:802
- RHSA-2005:802
- FLSA-2006:152923
- FLSA-2006:152923
- 15051
- 15051
- oval:org.mitre.oval:def:10590
- oval:org.mitre.oval:def:10590
Closed vulnerabilities
Published: 2005-08-10
Modified: 2024-11-21
Modified: 2024-11-21
CVE-2005-2536
pstotext before 1.8g does not properly use the "-dSAFER" option when calling Ghostscript to extract plain text from PostScript and PDF files, which allows remote attackers to execute arbitrary commands via a malicious PostScript file.
Severity: HIGH (7.5)
References:
Published: 2006-11-27
Modified: 2024-11-21
Modified: 2024-11-21
CVE-2006-5869
pstotext before 1.9 allows user-assisted attackers to execute arbitrary commands via shell metacharacters in a file name.
Severity: MEDIUM (5.1)
References:
Package nvidia_glx_common updated to version 450.80.02-alt231 for branch p9 in task 260220.
Closed bugs
guess-drm добавляет лишние модули