rPath Security Advisory: 2006-0142-1
Published: 2006-08-01
Products: rPath Linux 1
Rating: Severe
Exposure Level Classification:
Remote User Deterministic Unauthorized Access
Updated Versions:
libtiff=/suppressed:devel//1/3.8.2-3-0.1
References:
http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3459
http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3460
http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3461
http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3462
http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3463
http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3464
http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3465
https://issues.rpath.com/browse/RPL-558
Description:
Previous versions of the libtiff package are vulnerable to several
vulnerabilities which enable attackers to subvert user accounts
if the users attempt to view intentionally malformed TIFF files.
Mail converted by mhonarc 2.6.15
This archive provided courtesy of JSW4.NET, Internet Hosting Services for Small Business.