Title : Ubuntu Security Update Fixes LibTIFF File Handling Buffer Overflow Vulnerabilities VUPEN ID : VUPEN/ADV-2006-2224 CVE ID : CVE-2006-2193 - CVE-2006-2656
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2006-06-08
Technical Description
Ubuntu has released updated packages to address two vulnerabilities identified in LibTIFF. These flaws could be exploited by attackers to execute arbitrary commands. For additional information, see : VUPEN/ADV-2006-2197
Upgrade to libtiff-tools version 3.6.1-5ubuntu0.5 (for Ubuntu 5.04), version 3.7.3-1ubuntu1.4 (for Ubuntu 5.10), or version 3.7.4-1ubuntu3.1 (for Ubuntu 6.06 LTS). References