Title : Debian Security Update Fixes Zgv Colour Space Heap Overflow Vulnerability VUPEN ID : VUPEN/ADV-2006-1471 CVE ID : CVE-2006-1060
Rated as : High Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2006-04-24
Technical Description
Debian has released updated packages to address a vulnerability identified in zgv. This flaw could be exploited by attackers to compromise a vulnerable system by convincing a user to open a malicious image file. For additional information, see : VUPEN/ADV-2006-1288
Debian GNU/Linux old-stable (woody) - Upgrade to version 5.5-3woody3
Debian GNU/Linux stable (sarge) - Upgrade to version 5.7-1.4
Debian GNU/Linux unstable (sid) - A fix will be available soon References