|
Mandriva- Advisories MDKSA-2006:214: Updated gv packages fix buffer overflow vulnerability
Advisories MDKSA-2006:214: Updated gv packages fix buffer overflow vulnerability
Stack-based buffer overflow in the ps_gettext function in ps.c for GNU gv 3.6.2, and possibly earlier versions, allows user-assisted attackers to execute arbitrary code via a PostScript (PS) file with certain headers that contain long comments, as demonstrated using the DocumentMedia header.
Packages have been patched to correct this issue.
http://mandrivausers.org/index.php?showtopic=37088
Array
Sat, 18 Nov 2006 00:18:39 +0000
|