Title : Debian Security Update Fixes Libungif4 Buffer Overflow Vulnerabilities VUPEN ID : VUPEN/ADV-2005-2352 CVE ID : CVE-2005-2974 - CVE-2005-3350
Rated as : High Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2005-11-09
Technical Description
Debian has released updated packages to correct two vulnerabilities identified in Libungif4. These flaws could be exploited by remote attackers to execute arbitrary commands or cause a denial of service. For additional information, see : VUPEN/ADV-2005-2295
Debian GNU/Linux old-stable (woody) - Upgrade to version 4.1.0b1-2woody1
Debian GNU/Linux stable (sarge) - Upgrade to version 4.1.3-2sarge1
Debian GNU/Linux unstable (sid) - A fix will be available soon. References